Security Operations Question #245

Your company has detected suspicious activity and a potential breach on the network. What is the FIRST step you should take to respond to this incident?

A. Implement containment measures.
B. Collect evidence for forensic analysis.
C. Check firewall logs for unusual activity.
D. Inform the technical team and general management.
Domain Concept: Security Operations

This scenario evaluates management-level decision making in Security Operations. In CISSP exam scenarios, evaluate answers through executive governance, risk assessment, life safety, and due diligence before implementing technical controls.

💡 View the Answer & Detailed Explanation

The correct answer to this scenario-based question requires an understanding of the CISSP Managerial Mindset. Register to view our in-depth explanation and access 1100+ adaptive questions completely free.

Fuel the Mission ☕

Keep the vault updated and the servers running.

$
Secure Payment via PayPal

Verified Excellence

Spread the Word

If you like us, share us with your peers.

Scroll to Top