CompTIA CySA+ CS0-003 Practice Question
During the response to a security incident, a cybersecurity analyst must ensure that the appropriate parties are aware of the situation for a coordinated response. Which of the following best illustrates proper stakeholder identification and communication?
Exclusively updating the IT team about the incident, assuming they will handle every aspect of the incident response.
Delaying communication to stakeholders until after an initial assessment is completed to avoid causing unnecessary alarm.
Notifying internal leadership, IT team, legal department, and customer relations personnel of the incident and the intended response steps.
Informing only the legal department, as they will determine the necessity of involving other stakeholders based on the legal implications of the incident.