Exam Topic Highlights
Stakeholder identification and communication: Identifying and engaging the right stakeholders at the right time is crucial for reducing delays, confusion, and harm. Internal stakeholders such as technical staff, management, legal counsel, and public relations are key to managing the incident. External stakeholders, including customers, service providers, law enforcement, regulatory bodies, and government agencies, ensure a coordinated response, compliance, legal protection, and reputation management.
Incident declaration and escalation: This involves identifying incidents and notifying the appropriate teams to trigger the incident response process, including containment, eradication, and recovery. In the NIST IR life cycle, this occurs during the detection and analysis phase. Delays or unclear escalation pathways can lead to extended damage and regulatory non-compliance. Key aspects include defining criteria for declaration, understanding escalation pathways...