nerdexam
CompTIACompTIA

220-1202 · Question #16

220-1202 Question #16: Real Exam Question with Answer & Explanation

Sign in or unlock 220-1202 to reveal the answer and full explanation for question #16. The question stem and answer options stay visible for context.

Submitted by brentm· Mar 30, 2026Security

Question

A small office reported a phishing attack that resulted in a malware infection. A technician is investigating the incident and has verified the following: - All endpoints are updated and have the newest EDR signatures. - Logs confirm that the malware was quarantined by EDR on one system. - The potentially infected machine was reimaged. Which of the following actions should the technician take next?

Options

  • AInstall network security tools to prevent downloading infected files from the internet.
  • BDiscuss the cause of the issue and educate the end user about security hygiene.
  • CFlash the firmware of the router to ensure the integrity of network traffic.
  • DSuggest alternate preventative controls that would include more advanced security software.

Unlock 220-1202 to see the answer

You've previewed enough free 220-1202 questions. Unlock 220-1202 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Incident response#Phishing#Malware#User education
Full 220-1202 PracticeBrowse All 220-1202 Questions