QuestionQ7

Managing and Mitigating Cyber Risk

You work as an Incident handler at Mariotrixt.Inc. You have followed the Incident handling process to address events and incidents. You identify a Denial of Service attack (DOS) from a network connected to your internal enterprise network. Which phase of the Incident handling process should you follow next to handle this incident?

  • A Containment
  • B Preparation
  • C Recovery
  • D Identification
Explanation

After an incident has been identified, containment is the next response activity to limit its scope and impact. Preparation precedes incident detection, while recovery follows containment and eradication.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!