QuestionQ46
Forensics Investigation and Malware AnalysisTechSolutions, a software development firm, identified a possible data leak after an external security researcher reported locating sensitive customer data in a public code repository. Level 1 SOC analysts verified that the data was present and escalated the incident. Level 2 analysts have been tracing the leak’s source and determined that the data was uploaded from an internal network account. The incident response team has been notified, and the CISO is requesting a comprehensive incident analysis, including the data breach’s scope and the event timeline. The overwhelmed SOC manager must decide who to assign to the in-depth investigation.
To accurately establish the timeline, extent, and root cause of the data leak, which SOC role is essential for gathering and analyzing the digital evidence?
- A Forensic Analyst
- B Threat Intelligence Analyst
- C Subject Matter Expert
- D SOC Manager
Community Discussion