QuestionQ683

Risk Response and Reporting

A user has contacted the risk practitioner about malware spreading laterally throughout the organization’s corporate network. Which of the following is the risk practitioner’s BEST course of action?

  • A Update the risk register.
  • B Notify the cybersecurity incident response team.
  • C Perform a root cause analysis.
  • D Review all log files generated during the period of malicious activity.
Explanation

Lateral malware propagation is an active security incident that requires prompt escalation to the cybersecurity incident response team so it can coordinate containment and limit further damage. Risk-register updates, root-cause analysis, and broad log review can support follow-up and investigation, but must not delay incident response.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!