ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 148 - SY0-701 discussion

Report
Export

Which of the following incident response activities ensures evidence is properly handied?

A.
E-discovery
Answers
A.
E-discovery
B.
Chain of custody
Answers
B.
Chain of custody
C.
Legal hold
Answers
C.
Legal hold
D.
Preservation
Answers
D.
Preservation
Suggested answer: B

Explanation:

Chain of custody is the process of documenting and preserving the integrity of evidence collected during an incident response. It involves recording the details of each person who handled the evidence, the time and date of each transfer, and the location where the evidence was stored. Chain of custody ensures that the evidence is admissible in legal proceedings and can be traced back to its source. E-discovery, legal hold, and preservation are related concepts, but they do not ensure evidence is properly handled.Reference:CompTIA Security+ Study Guide: Exam SY0-701, 9th Edition, page 487;NIST SP 800-61: 3.2. Evidence Gathering and Handling

asked 02/10/2024
Johnny Oostdijk
24 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first