CISM Exam QuestionsBrowse all questions from this exam

CISM Exam - Question 75


When developing a tabletop test plan for incident response testing, the PRIMARY purpose of the scenario should be to:

Show Answer
Correct Answer: B

When developing a tabletop test plan for incident response testing, the primary purpose of the scenario should be to provide participants with situations to ensure understanding of their roles. This allows the team to practice their response to incidents in a controlled environment, ensuring that each member is clear on their responsibilities and can perform their duties effectively. This understanding is crucial for efficient incident response, allowing the team to act quickly and decisively in real-world scenarios.

Discussion

6 comments
Sign in to comment
richck102Option: B
May 18, 2023

B. provide participants with situations to ensure understanding of their roles.

ViperhunterOption: C
Nov 20, 2023

While all the options are relevant to incident response testing, the primary goal of a tabletop exercise is to assess and improve the organization's overall readiness to respond to incidents. The scenario should simulate a realistic incident to evaluate how well the incident response team and other stakeholders can effectively respond, communicate, and coordinate actions in a controlled environment. This helps identify strengths, weaknesses, and areas for improvement in the incident response plan and procedures. The exercise can also provide participants with situations to ensure understanding of their roles (Option B) and challenge the incident response team to solve the problem under pressure (Option D), but the overarching goal is to assess the organization's readiness and improve its ability to respond effectively to incidents.

POWNEDOption: B
Nov 21, 2023

Tabletop exercises are used to clarify roles and responsibilities and to identify additional campus mitigation and preparedness needs. Answer is B

Cyberbug2021Option: B
Nov 21, 2023

The PRIMARY purpose of the scenario in a tabletop test plan for incident response testing is B. provide participants with situations to ensure understanding of their roles. Tabletop exercises are a valuable tool for testing an organization's incident response plan and ensuring that team members understand their roles and responsibilities. By walking through hypothetical incident scenarios, participants can practice their communication, coordination, and decision-making skills under simulated pressure.

Cyberbug2021
Nov 21, 2023

D. Challenge the team to solve the problem under pressure: While tabletop exercises should be challenging, the primary goal is to provide a learning experience for the team, not to create a stressful or adversarial environment.

Cyberbug2021
Nov 21, 2023

C. Give the business a measure of overall readiness: A tabletop exercise can provide some insights into overall readiness, but it is not a comprehensive assessment. Other testing methods, such as penetration tests and vulnerability scans, are also necessary.

AlexJacobsonOption: B
Jan 19, 2024

"The primary purpose of SCENARIO" is what pointed me to B. If it was less direct and more vague asking, for example, "the primary purpose of the tabletop exercise", then C would make more sense.

1899f17Option: C
May 29, 2024

C. give the business a measure of the organization's overall readiness.