nerdexam
EC-Council

212-89 · Question #86

A US Federal Agency network was the target of a DoS attack that prevented and impaired the normal authorized functionality of the networks. According to agency's reporting timeframe guidelines, this…

The correct answer is B. CAT 2. In the context of US Federal Agencies, incidents are categorized based on their impact on operations, assets, or individuals. A DoS attack that prevents or impairs the authorized functionality of networks and is still ongoing without successful mitigation efforts typically…

Incident Handling and Response Management

Question

A US Federal Agency network was the target of a DoS attack that prevented and impaired the normal authorized functionality of the networks. According to agency's reporting timeframe guidelines, this incident should be reported within 2 h of discovery/detection if the successful attack is still ongoing and the agency is unable to successfully mitigate the activity. Which incident category of US Federal Agency does this incident belong to?

Options

  • ACAT 6
  • BCAT 2
  • CCAT 1
  • DCAT 5

How the community answered

(65 responses)
  • A
    6% (4)
  • B
    91% (59)
  • C
    2% (1)
  • D
    2% (1)

Explanation

In the context of US Federal Agencies, incidents are categorized based on their impact on operations, assets, or individuals. A DoS attack that prevents or impairs the authorized functionality of networks and is still ongoing without successful mitigation efforts typically falls under Category 2 (CAT 2). This category is designated for incidents that have a significant impact, requiring immediate reporting and response. The reporting timeframe of within 2 hours as mentioned aligns with the urgency associated with CAT 2 incidents, emphasizing the need for swift action to address the attack and restore normal operations.

Topics

#incident categorization#DoS attack#US federal reporting#incident reporting timeframe

Community Discussion

No community discussion yet for this question.

Full 212-89 Practice