INCIDENCE RESPONSE PROCESS: What is the first step in the incident response process?
CyberSecurity Training-Quiz

Quiz
•
Information Technology (IT)
•
Professional Development
•
Hard
Christopher Lynch
FREE Resource
19 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Preparation
Identification
Containment
Eradication
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
A company detects unusual outbound network traffic that could indicate data exfiltration. What should be done next?
Identify and confirm the incident by analyzing logs and alerts.
Ignore the traffic as it might be a false alarm.
Immediately shut down all network operations.
Contact the internet service provider to block the traffic.
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Employees report receiving emails from a compromised internal account requesting sensitive data. What should be done next?
Yes, because it indicates a potential account takeover and requires immediate containment.
No, because it might be a false alarm and can be ignored.
Yes, because it is a common occurrence and does not require immediate action.
No, because it is not related to cybersecurity threats.
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
INCIDENCE RESPONSE PROCESS Scenario: A ransomware infection has locked multiple workstations. The IT team is unsure whether to shut down affected systems. What should they do?
Shut down the affected systems immediately.
Disconnect the affected systems from the network.
Wait for instructions from higher authorities.
Attempt to decrypt the files themselves.
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Scenario: A malware outbreak spreads across the network. What actions should be taken?
Isolate affected systems and update antivirus software.
Ignore the outbreak and continue normal operations.
Unplug all network cables immediately.
Contact the media to report the outbreak.
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
INCIDENCE RESPONSE PROCESS Containment and Mitigation Scenario: A phishing attack compromised employee credentials. The attacker is attempting to access sensitive data. What should be done?
Notify the IT department and change all passwords immediately.
Ignore the attack and continue working.
Share credentials with the attacker to monitor their actions.
Wait for the attacker to make the next move.
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Scenario: The IT team detects unauthorized administrative access on a critical server. What steps should be taken?
Investigate the source of access and revoke permissions
Ignore the access as it might be a false alarm
Immediately shut down the server
Notify all users about the breach
Create a free account and access millions of resources
Similar Resources on Quizizz
15 questions
Nusantara Knowledge Forum

Quiz
•
Professional Development
20 questions
Bootcamp Quiz 4-CSS

Quiz
•
Professional Development
15 questions
DIGITAL INITIATIVES IN EDUCATION

Quiz
•
Professional Development
21 questions
IT Troubleshooting Quiz

Quiz
•
Professional Development
20 questions
Frontend - CTO Cup

Quiz
•
Professional Development
15 questions
Mastering AI Safari For Everyday Use

Quiz
•
Professional Development
21 questions
Network Switch and VLAN Quiz

Quiz
•
Professional Development
15 questions
Week 20 Quizzz

Quiz
•
Professional Development
Popular Resources on Quizizz
15 questions
Multiplication Facts

Quiz
•
4th Grade
20 questions
Math Review - Grade 6

Quiz
•
6th Grade
20 questions
math review

Quiz
•
4th Grade
5 questions
capitalization in sentences

Quiz
•
5th - 8th Grade
10 questions
Juneteenth History and Significance

Interactive video
•
5th - 8th Grade
15 questions
Adding and Subtracting Fractions

Quiz
•
5th Grade
10 questions
R2H Day One Internship Expectation Review Guidelines

Quiz
•
Professional Development
12 questions
Dividing Fractions

Quiz
•
6th Grade