nerdexam
CompTIA

CS0-003 · Question #132

An analyst is responding to an incident within a cloud infrastructure. Based on the logs and traffic analysis, the analyst thinks a container has been compromised. Which of the following should the an

Sign in or unlock CS0-003 to reveal the answer and full explanation for question #132. The question stem and answer options stay visible for context.

Submitted by anna_se· Mar 6, 2026Incident Response and Management

Question

An analyst is responding to an incident within a cloud infrastructure. Based on the logs and traffic analysis, the analyst thinks a container has been compromised. Which of the following should the analyst do FIRST?

Options

  • APerform threat hunting in other areas of the cloud infrastructure
  • BContact law enforcement to report the incident
  • CPerform a root cause analysis on the container and the service logs
  • DIsolate the container from production using a predefined policy template

Unlock CS0-003 to see the answer

You've previewed enough free CS0-003 questions. Unlock CS0-003 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#incident response#containment#cloud security#container security
Full CS0-003 Practice