ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 145 - CS0-003 discussion

Report
Export

A company's security team is updating a section of the reporting policy that pertains to inappropriate use of resources (e.g., an employee who installs cryptominers on workstations in the office). Besides the security team, which of the following groups should the issue be escalated to first in order to comply with industry best practices?

A.
Help desk
Answers
A.
Help desk
B.
Law enforcement
Answers
B.
Law enforcement
C.
Legal department
Answers
C.
Legal department
D.
Board member
Answers
D.
Board member
Suggested answer: C

Explanation:

The correct answer is C. Legal department.

According to the CompTIA Cybersecurity Analyst (CySA+) certification exam objectives, one of the tasks for a security analyst is to “report and escalate security incidents to appropriate stakeholders and authorities” 1. This includes reporting any inappropriate use of resources, such as installing cryptominers on workstations, which may violate the company’s policies and cause financial and reputational damage. The legal department is the most appropriate group to escalate this issue to first, as they can advise on the legal implications and actions that can be taken against the employee.

The legal department can also coordinate with other groups, such as law enforcement, help desk, or board members, as needed. The other options are not the best choices to escalate the issue to first, as they may not have the authority or expertise to handle the situation properly.

asked 02/10/2024
Shantal Aviles
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first