ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 296 - CS0-003 discussion

Report
Export

Following an attack, an analyst needs to provide a summary of the event to the Chief Information Security Officer. The summary needs to include the who-what-when information and evaluate the effectiveness of the plans in place. Which of the following incident management life cycle processes does this describe?

A.
Business continuity plan
Answers
A.
Business continuity plan
B.
Lessons learned
Answers
B.
Lessons learned
C.
Forensic analysis
Answers
C.
Forensic analysis
D.
Incident response plan
Answers
D.
Incident response plan
Suggested answer: B

Explanation:

The lessons learned process is the final stage of the incident management life cycle, where the incident team reviews the incident and evaluates the effectiveness of the response and the plans in place. The lessons learned report should include the who-what-when information and any recommendations for improvement123

Reference: 1: What is incident management? Steps, tips, and best practices 2: 5 Steps of the Incident Management Lifecycle | RSI Security 3: Navigating the Incident Response Life Cycle: A Comprehensive Guide

asked 02/10/2024
Marcin Piotrowski
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first