QuestionQ48

Threat Intelligence in Incident Response

Clark, a digital forensic expert, was tasked with investigating malicious activity on an organization's network. The organization supplied Clark with all information related to the incident. During the process, he evaluated the incident's impact on the organization, the reasons for and source of the incident, the steps needed to address it, the investigation team needed to handle the case, investigative procedures, and the possible outcome of the forensic process.

Identify the type of analysis Clark performed in this scenario.

  • A Traffic analysis
  • B Log analysis
  • C Case analysis
  • D Data analysis
Explanation

Case analysis evaluates an incident as a whole, including its organizational impact, cause and source, required investigative resources and procedures, response needs, and expected forensic outcome.

Community Discussion

No comments yet. Be the first to start the discussion!