Security Operations Question #181

Following a phishing attack, which aspect of the internal incident report is most critical for organizational learning and long-term communication?

A. Listing the usernames and IP addresses involved in the unauthorized access.
B. Providing a list of potentially affected users and contact info.
C. Detailing the technical specifications of the compromised account.
D. Documenting lessons learned and preventive measures to be implemented.
Domain Concept: Security Operations

This scenario evaluates management-level decision making in Security Operations. In CISSP exam scenarios, evaluate answers through executive governance, risk assessment, life safety, and due diligence before implementing technical controls.

💡 View the Answer & Detailed Explanation

The correct answer to this scenario-based question requires an understanding of the CISSP Managerial Mindset. Register to view our in-depth explanation and access 1100+ adaptive questions completely free.

Fuel the Mission ☕

Keep the vault updated and the servers running.

$
Secure Payment via PayPal

Verified Excellence

Spread the Word

If you like us, share us with your peers.

Scroll to Top