Question 36

Which of the following is a reason why proper handling and reporting of existing evidence are important for the investigation and reporting phases of an incident response?
  • Question 37

    An organization recently changed its BC and DR plans. Which of the following would best allow for the incident response team to test the changes without any impact to the business?
  • Question 38

    Which of the following characteristics ensures the security of an automated information system is the most effective and economical?
  • Question 39

    Which of the following documents sets requirements and metrics for a third-party response during an event?
  • Question 40

    A technician is analyzing output from a popular network mapping tool for a PCI audit:

    Which of the following best describes the output?