Câu 20: 312-39V2: Certified SOC Analyst (CSA) v2
The SOC team at GlobalTech has just finished patching a critical vulnerability exploited during a ransomware attack. The team is now restoring 2.3TB of encrypted data from their Veeam backup system, rebuilding 23 compromised workstations identified through SIEM logs and re-enabling network access for the finance depar…
Nội dung câu hỏi
The SOC team at GlobalTech has just finished patching a critical vulnerability exploited during a ransomware attack. The team is now restoring 2.3TB of encrypted data from their Veeam backup system, rebuilding 23 compromised workstations identified through SIEM logs and re-enabling network access for the finance department after validating the systems are clean. Which of the following Incident Response phase is this?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Post-incident Activities
- B. Containment
- C. Eradication
- D. Recovery — đáp án hiện tại
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.