ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 81 - SY0-701 discussion

Report
Export

During an investigation, an incident response team attempts to understand the source of an incident. Which of the following incident response activities describes this process?

A.
Analysis
Answers
A.
Analysis
B.
Lessons learned
Answers
B.
Lessons learned
C.
Detection
Answers
C.
Detection
D.
Containment
Answers
D.
Containment
Suggested answer: A

Explanation:

Analysis is the incident response activity that describes the process of understanding the source of an incident. Analysis involves collecting and examining evidence, identifying the root cause, determining the scope and impact, and assessing the threat actor's motives and capabilities. Analysis helps the incident response team to formulate an appropriate response strategy, as well as to prevent or mitigate future incidents. Analysis is usually performed after detection and before containment, eradication, recovery, and lessons learned.Reference=CompTIA Security+ Study Guide with over 500 Practice Test Questions: Exam SY0-701, 9th Edition, Chapter 6, page 223. CompTIA Security+ SY0-701 Exam Objectives, Domain 4.2, page 13.

asked 02/10/2024
Abdulilah Alhousainy
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first