nerdexam
Cisco

300-215 · Question #46

A threat intelligence report identifies an outbreak of a new ransomware strain spreading via phishing emails that contain malicious URLs. A compromised cloud service provider, XYZCloud, is managing th

Sign in or unlock 300-215 to reveal the answer and full explanation for question #46. The question stem and answer options stay visible for context.

Submitted by krish.m· Mar 6, 2026Incident Response Processes

Question

A threat intelligence report identifies an outbreak of a new ransomware strain spreading via phishing emails that contain malicious URLs. A compromised cloud service provider, XYZCloud, is managing the SMTP servers that are sending the phishing emails. A security analyst reviews the potential phishing emails and identifies that the email is coming from XYZCloud. The user has not clicked the embedded malicious URL. What is the next step that the security analyst should take to identify risk to the organization?

Options

  • AReset the reporting user's account and enable multifactor authentication.
  • BCreate a detailed incident report and share it with top management.
  • CFind any other emails coming from the IP address ranges that are managed by XYZCloud.
  • DDelete email from user mailboxes and update the incident ticket with lessons learned.

Unlock 300-215 to see the answer

You've previewed enough free 300-215 questions. Unlock 300-215 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#phishing#threat intelligence#incident response#risk identification
Full 300-215 Practice