ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 230 - SY0-601 discussion

Report
Export

Which of the following procedures would be performed after the root cause of a security incident has been identified to help avoid future incidents from occurring?

A.
Walk-throughs
Answers
A.
Walk-throughs
B.
Lessons learned
Answers
B.
Lessons learned
C.
Attack framework alignment
Answers
C.
Attack framework alignment
D.
Containment
Answers
D.
Containment
Suggested answer: B

Explanation:

After the root cause of a security incident has been identified, it is important to take the time to analyze what went wrong and how it could have been prevented. This process is known as “lessons learned” and allows organizations to identify potential improvements to their security processes and protocols. Lessons learned typically involve a review of the incident and the steps taken to address it, a review of the security systems and procedures in place, and an analysis of any potential changes that can be made to prevent similar incidents from occurring in the future.

asked 02/10/2024
Tracy Nicholas
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first