3.0 Incident Response and Management Flashcards

1
Q

Cyber kill chains

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Diamond Model of Intrusion Analysis

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

MITRE ATT&CK

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Open Source Security Testing Methodology Manual (OSS TMM)

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

OWASP Testing Guide

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

IoC

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Chain of custody

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Validating data integrity

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Preservation

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Legal hold

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Data and log analysis

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Containment, eradication, and recovery

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Scope

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Impact

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Isolation

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Remediation

A
17
Q

Re-imaging

A
18
Q

Compensating controls

A
19
Q

Preparation

A
20
Q

Incident response plan

A
21
Q

Tools

A
22
Q

Playbooks

A
23
Q

Tabletop

A
24
Q

Training

A
25
Q

Business continuity (BC)/disaster recovery (DR)

A
26
Q

Post incident activity

A
27
Q

Forensic analysis

A
28
Q

Root cause analysis

A
29
Q

Lessons learned

A