QuestionQ45
Incident Response and ManagementAn incident response team discovers a malicious uniform resource locator (URL) associated with a required business process and carries out the following actions:
- Access to the URL has been limited to only the required users by using firewall rules and Cloud Security Group rules.
- Extra monitoring has been enabled for traffic related to that site and the permitted users.
- All application servers requiring access to that site have been patched with the latest security and software updates.
- Application owners have been informed of the severity and the need to remediate the reported issue.
Which of the following best characterizes the overall mitigation being performed by the security team?
Community Discussion