CISM Certified Information Security Manager – Question1289

An organization experienced a breach which was successfully contained and remediated. Based on industry regulations, the breach needs to be communicated externally. What should the information security manager do NEXT?

A.
Refer to the incident response plan.
B. Send out a breach notification to all parties involved.
C. Contact the board of directors.
D. Invoke the corporate communications plan.

Correct Answer: D