3.0 Incident Response and Management Flashcards

1
Q

Cyber kill chains

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Diamond Model of Intrusion Analysis

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

MITRE ATT&CK

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Open Source Security Testing Methodology Manual (OSS TMM)

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

OWASP Testing Guide

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

IoC

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Chain of custody

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Validating data integrity

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Preservation

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Legal hold

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Data and log analysis

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Containment, eradication, and recovery

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Scope

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Impact

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Isolation

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Remediation

17
Q

Re-imaging

18
Q

Compensating controls

19
Q

Preparation

20
Q

Incident response plan

21
Q

Tools

22
Q

Playbooks

23
Q

Tabletop

24
Q

Training

25
Q

Business continuity (BC)/disaster recovery (DR)

26
Q

Post incident activity

27
Q

Forensic analysis

28
Q

Root cause analysis

29
Q

Lessons learned