EC-CouncilEC-Council
312-49 · Question #497
312-49 Question #497: Real Exam Question with Answer & Explanation
Sign in or unlock 312-49 to reveal the answer and full explanation for question #497. The question stem and answer options stay visible for context.
Submitted by khalil_dz· Apr 18, 2026Computer Forensics Investigation Process
Question
Company ABC has employed a firewall, IDS, Antivirus, Domain Controller, and SIEM. The company's domain controller goes down. From which system would you begin your investigation?
Options
- ADomain Controller
- BFirewall
- CSIEM
- DIDS
Unlock 312-49 to see the answer
You've previewed enough free 312-49 questions. Unlock 312-49 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#SIEM#Incident Response#Log Management#Investigation Start Point