Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CFR-310 All Questions

View all questions & answers for the CFR-310 exam

Exam CFR-310 topic 1 question 83 discussion

Actual exam question from CertNexus's CFR-310
Question #: 83
Topic #: 1
[All CFR-310 Questions]

A company help desk is flooded with calls regarding systems experiencing slow performance and certain Internet sites taking a long time to load or not loading at all. The security operations center (SOC) analysts who receive these calls take the following actions:
- Running antivirus scans on the affected user machines
- Checking department membership of affected users
- Checking the host-based intrusion prevention system (HIPS) console for affected user machine alerts
- Checking network monitoring tools for anomalous activities
Which of the following phases of the incident response process match the actions taken?

  • A. Identification
  • B. Preparation
  • C. Recovery
  • D. Containment
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
044f354
1 month, 3 weeks ago
Selected Answer: A
A. Identification Explanation: The actions described—running antivirus scans, checking department membership, reviewing HIPS alerts, and monitoring network activity—are all part of the identification phase. In this phase, the goal is to determine whether an incident has occurred, the scope of the issue, and which systems are affected. Incorrect Responses: B. Preparation: This involves setting up tools and processes before an incident, not responding to an ongoing issue. C. Recovery: This phase comes after the incident has been contained and eradicated, focusing on restoring systems and services. D. Containment: This involves stopping the spread of the issue or mitigating its impact, which hasn't occurred yet in the actions described.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...