CISSP Practice Question – Security Operations (Incident Response & Forensics Maturity)
Which of the following actions BEST balances regulatory obligations with evidence integrity and due diligence?
A. Release preliminary findings immediately, clearly labeled as “provisional,” and continue full forensic analysis.
B. Delay all external communication until the full investigation is complete and validated.
C. Provide regulators with a high-level incident acknowledgment, outline the investigation timeline, and commit to an official report after evidence validation.
D. Provide sanitized technical logs to regulators immediately while withholding full forensic images until legal review.
2
14 comments
Vincent Primiani
7
CISSP Practice Question – Security Operations (Incident Response & Forensics Maturity)
CISSP Study Group
skool.com/cybersecurity-study-group
Share resources, get advice, and connect with peers studying cybersecurity. Join our CISSP study group and connect with fellow professionals today!
Leaderboard (30-day)
Powered by