exam questions

Exam 212-89 All Questions

View all questions & answers for the 212-89 exam

Exam 212-89 topic 1 question 28 discussion

Actual exam question from ECCouncil's 212-89
Question #: 28
Topic #: 1
[All 212-89 Questions]

An incident is analyzed for its nature, intensity and its effects on the network and systems. Which stage of the incident response and handling process involves auditing the system and network log files?

  • A. Incident recording
  • B. Reporting
  • C. Containment
  • D. Identification
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Asafa
2 months, 2 weeks ago
Selected Answer: D
The stage of the incident response and handling process that involves auditing the system and network log files is Identification. During this stage, the focus is on detecting and understanding the nature of the incident by analyzing logs, alerts, and other data sources to determine what happened, how it happened, and its potential impact. This step is critical for confirming whether an incident has occurred and gathering initial evidence.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago