
CrowdStrikeCertified Cloud Specialist (CCCS)
Domain 7Objective 1
7.1 Identify Recommended Remediation Steps for Findings and Detections CCCS Practice Questions (Page 4)
Part of the Remediating and Reporting Issues domain, which makes up ~9% of our current practice bank.
22questions here
5free pages
3concepts
Questions 16–20
- 16
A security analyst sees a detection for a suspicious PowerShell command on a single Windows workstation. The command is attempting to download a file from a known malicious URL. The user is still logged on and active. What is the recommended first remediation step?
Select an answer first - 17
A security team has two detections: one on a domain controller and one on a workstation. Both are medium severity. Which should be prioritized for remediation?
Select an answer first - 18
A finding indicates that a host has a vulnerability that could allow remote code execution. The host is internet-facing. What is the recommended remediation step?
Select an answer first - 19
A detection shows that a host is beaconing to a command-and-control (C2) server. The host is a critical production server that cannot be isolated. What is the recommended remediation step?
Select an answer first - 20
A detection identifies a file as malware on a user's laptop. The file is not critical to business operations. What is the recommended remediation step for this finding?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CrowdStrike. “CCCS” is a trademark of its owner, used for identification only.