nerdexam
PECB

LEAD-IMPLEMENTER · Question #104

Scenario 7: Incident Response at Texas H&H Inc. Once they made sure that the attackers do not have access in their system, the security administrators decided to proceed with the forensic analysis…

The correct answer is C. Yes, in the absence of an information security incident management policy, lessons learned can. See the full explanation below for the reasoning.

Question

Scenario 7: Incident Response at Texas H&H Inc. Once they made sure that the attackers do not have access in their system, the security administrators decided to proceed with the forensic analysis. They concluded that their access security system was not designed tor threat detection, including the detection of malicious files which could be the cause of possible future attacks. Based on these findings. Texas H$H inc, decided to modify its access security system to avoid future incidents and integrate an incident management policy in their Information security policy that could serve as guidance for employees on how to respond to similar incidents. Based on the scenario above, answer the following question:

According to scenario 7, the team prevented a potential attack based on knowledge gained from previous incidents. Is this acceptable?

Options

  • ANo, before responding to an information security incident, an information security incident
  • BNo, every information security incident is different, hence knowledge gained from previous
  • CYes, in the absence of an information security incident management policy, lessons learned can

How the community answered

(54 responses)
  • A
    6% (3)
  • B
    15% (8)
  • C
    80% (43)

Community Discussion

No community discussion yet for this question.

Full LEAD-IMPLEMENTER Practice