Security Incident Management

Security Incident Management

Professional Development

11 Qs

quiz-placeholder

Similar activities

Cybersecurity Quiz 1

Cybersecurity Quiz 1

Professional Development

10 Qs

SEC+ Ch.11 Review Test

SEC+ Ch.11 Review Test

Professional Development

15 Qs

SOF Day 2 Review

SOF Day 2 Review

Professional Development

11 Qs

Cyber Security Quiz

Cyber Security Quiz

Professional Development

10 Qs

Implementing Cloud Security

Implementing Cloud Security

Professional Development

10 Qs

Gordon's Review: Mod 2 RMF & CSF, Intro to Cybersecurity

Gordon's Review: Mod 2 RMF & CSF, Intro to Cybersecurity

Professional Development

12 Qs

SE Master

SE Master

Professional Development

8 Qs

SOF Day 1 Review

SOF Day 1 Review

Professional Development

12 Qs

Security Incident Management

Security Incident Management

Assessment

Quiz

Computers

Professional Development

Medium

Created by

Paul Paglinawan

Used 1+ times

FREE Resource

11 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

10 sec • 1 pt

What is the FIRST step in Security Incident Handling?

Containment

Monitoring & Detection

Eradication

Post-Incident Review

2.

MULTIPLE CHOICE QUESTION

10 sec • 1 pt

Which is NOT a recommended containment measure?

Rebooting all systems immediately

Blocking malicious IP addresses

Isolating infected machines & user accounts

Changing passwords of compromised accounts

3.

MULTIPLE CHOICE QUESTION

10 sec • 1 pt

What is the PRIMARY goal of the "Eradication" phase?

Reboot all systems

Inform clients that a breach has occurred

Remove the malware

Remove all security threats & backdoors

4.

MULTIPLE CHOICE QUESTION

5 sec • 1 pt

Which team is MOST LIKELY to respond first to a security incident?

NSOC

HR

Marketing

HOO

5.

MULTIPLE CHOICE QUESTION

30 sec • 3 pts

What should ALWAYS be done after recovering from an incident?

Patch vulnerabilities

Monitor for re-infection

Perform a post-incident review

All of the above

6.

MULTIPLE CHOICE QUESTION

10 sec • 1 pt

What is the purpose of Incident IO in our incident response process?

Monitors server temperatures

Detects malware and removes it

Automates incident alerting & tracking

Encrypts sensitive files for security

7.

MULTIPLE CHOICE QUESTION

10 sec • 1 pt

In which situation should a security incident be reported to regulatory bodies?

If a minor server restart fails

If customer data is exposed

If IT staff accidentally deletes a non-critical file

If an employee loses their access badge

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?