Question 81

According to the Evidence Preservation policy, a forensic investigator should make at least ..................... image copies of the digital evidence.
  • Question 82

    Francis received a spoof email asking for his bank information. He decided to use a tool to analyze the email headers.
    Which of the following should he use?
  • Question 83

    Eric is an incident responder and is working on developing incident-handling plans and procedures. As part of this process, he is performing an analysis on the organizational network to generate a report and develop policies based on the acquired results.
    Which of the following tools will help him in analyzing his network and the related traffic?
  • Question 84

    Which of the following is a term that describes the combination of strategies and services intended to restore data, applications, and other resources to the public cloud or dedicated service providers?
  • Question 85

    James has been appointed as an incident handling and response (IH&R) team lead and he was assigned to build an IH&R plan along with his own team in the company.
    Identify the IH&R process step James is currently working on.