Incident Follow-Up

5 minutes 5 Questions

Incident follow-up is a critical, yet often overlooked, part of the incident response process. This step consists of analyzing the root causes and contributing factors of the security incident to identify areas for improvement and prevent future incidents. During follow-up, lessons learned from the…

Test mode:
CompTIA Security+ - Incident Follow-Up Example Questions

Test your knowledge of Incident Follow-Up

Question 1

A company has recently experienced a data breach. An investigation concludes that a malicious insider gained unauthorized access to sensitive customer data. Which of the following controls should be put in place to mitigate the risk of similar incidents occurring in the future?

Question 2

A security analyst discovered that an attacker accessed an administrator account and remotely modified server configurations. Which of the following actions should the company take in response to this incident?

Question 3

A company is conducting security audit after a successful phishing attack. The IT team discovers that multiple employees re-use the same weak passwords on multiple platforms. What should the company do to prevent the future occurrence of such a problem?

More Incident Follow-Up questions
2 questions (total)