ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 118 - CS0-003 discussion

Report
Export

A cybersecurity team lead is developing metrics to present in the weekly executive briefs. Executives are interested in knowing how long it takes to stop the spread of malware that enters the network.

Which of the following metrics should the team lead include in the briefs?

A.
Mean time between failures
Answers
A.
Mean time between failures
B.
Mean time to detect
Answers
B.
Mean time to detect
C.
Mean time to remediate
Answers
C.
Mean time to remediate
D.
Mean time to contain
Answers
D.
Mean time to contain
Suggested answer: D

Explanation:

Mean time to contain is the metric that the cybersecurity team lead should include in the weekly executive briefs, as it measures how long it takes to stop the spread of malware that enters the network. Mean time to contain is the average time it takes to isolate and neutralize an incident or a threat, such as malware, from the time it is detected. Mean time to contain is an important metric for evaluating the effectiveness and efficiency of the incident response process, as well as the potential impact and damage of the incident or threat. A lower mean time to contain indicates a faster and more successful response, which can reduce the risk and cost of the incident or threat. Mean time to contain can also be compared with other metrics, such as mean time to detect or mean time to remediate, to identify gaps or areas for improvement in the incident response process.

asked 02/10/2024
G C
48 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first