Skip to content
CS0-003
Reporting and Communication
hard
Question 5 of 16

Following a major ransomware incident affecting critical infrastructure, the CISO must present a lessons learned briefing to the board of directors. Which metrics would most effectively communicate the security program's effectiveness and improvement needs?

AMean time to detect (MTTD), mean time to respond (MTTR), scope of impact, and specific gaps identified with remediation timelines
BA list of all CVE identifiers that were not patched before the incident
CThe total number of SIEM rules currently configured
DThe vendor names of all security tools currently deployed

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion