CISA Certified Information Systems Auditor – Question1232

The operations team of an organization has reported an IS security attack. Which of the following should be the NEXT step for the security incident response team?

A.
Document lessons learned.
B. Prioritize resources for corrective action.
C. Perform a damage assessment.
D. Report results to management.

Correct Answer: B