82.7k views
5 votes
Which of the following is the BEST action to foster a consistent and auditable incident response process?

1) Incent new hires to constantly update the document with external knowledge.
2) Publish the document in a central repository that is easily accessible to the organization.
3) Restrict eligibility to comment on the process to subject matter experts of each IT silo.
4) Rotate CIRT members to foster a shared responsibility model in the organization.

1 Answer

4 votes

Final answer:

The BEST action to establish a consistent incident response process is by publishing the document in a central repository accessible to the whole organization. This centralization ensures transparency, the latest updates, and the dissemination of information.

Step-by-step explanation:

The question asks for the BEST action to foster a consistent and auditable incident response process. The most effective way to ensure a consistent and auditable process is by publishing the document in a central repository that is easily accessible to the organization. This approach promotes transparency, allows for streamlined updates and revisions, and facilitates easier sharing of knowledge across the organization. While involving new hires, restricting eligibility to comment, and rotating CIRT members can contribute to the process in different ways, the centralization of the incident response document ensures that everyone is on the same page and can access the most up-to-date information at any time.

User Dybzon
by
8.0k points