Incident response Flashcards

1
Q

_____ is an incident response lifecycle phase pertaining to finding the root cause of an incident. For example, a user clicking a malicious link in an email is a root cause for a potentially larger problem.

A

Eradication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

______ is a stage in the incident response lifecycle. In this stage, the goal is to limit the scope and reach of the event. One approach in _____ is to isolate infected systems.

A

Containment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

_____ is a stage in the incident response lifecycle. This stage ensures the threat no longer exists and all systems are brought back to a secure state.

A

Recovery

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

With a _____ exercise, staff will “ghost” the same procedures as they would in a disaster, without actually creating disaster conditions or applying or changing anything.

A

tabletop

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

______ provide basic awareness and training for disaster recovery team members, these exercises describe the contents of disaster recovery plans and other plans, and the roles and responsibilities outlined in those plans.

A

Walkthroughs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

______ exercises are action-based sessions where employees can validate all plans by performing scenario-based activities in a simulated environment.

A

Functional

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

______ exercises are action-based sessions that reflect real situations. These exercises are held onsite and use real equipment and real personnel as much as possible.

A

Full-scale

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

_______ is a collection of processes that enable an organization to maintain normal business operations in the face of some adverse event

A

Continuity of Operations (COOP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly