ExamGecko
Question list
Search
Search

Related questions

Question 1116 - CISA discussion

Report
Export

The FIRST step in an incident response plan is to:

A.
validate the incident.
Answers
A.
validate the incident.
B.
notify the head of the IT department.
Answers
B.
notify the head of the IT department.
C.
isolate systems impacted by the incident.
Answers
C.
isolate systems impacted by the incident.
D.
initiate root cause analysis.
Answers
D.
initiate root cause analysis.
Suggested answer: A

Explanation:

The first step in an incident response plan is typically preparation12. However, among the options provided, validating the incident would be the first step.This involves confirming that a security event is actually an incident3. It's important to verify the event to avoid wasting resources on false positives.

Incident Response Plan: Frameworks and Steps - CrowdStrike

What is Incident Response? Plan and Steps | Microsoft Security

What Are the Phases of an Incident Response Plan? - ISC2 Blog

asked 18/09/2024
Zakaria Boujli
28 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first