Question 1 of 30
Consider a scenario where a critical server in a financial institution experiences an unauthorized data exfiltration event. The incident response team is activated. Which of the following actions, when prioritized within the incident response plan, best reflects the foundational principles of ISO/IEC 27035:2023 for effective incident management?
Immediate isolation of affected systems to prevent further data loss, followed by a systematic eradication of the threat and a structured recovery of services, culminating in a detailed post-incident analysis to identify root causes and improve future responses.
Promptly notifying all relevant regulatory bodies, such as those overseeing financial data privacy, and initiating a broad communication campaign to inform all stakeholders about the breach.
Focusing primarily on restoring affected services to their pre-incident state as quickly as possible, with secondary attention given to identifying the exact method of intrusion.
Conducting an extensive forensic investigation to pinpoint every single compromised system and data element before any containment or recovery actions are taken.

Preparing for ISO/IEC 27035:2023 - Information security incident management Foundation? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free