
Dell NIST Cybersecurity Framework v2.0
Domain 6Objective 4
Comprehend the Reporting and Communication Aspects of Incident Response. NIST-CYBERSECURITY-FRAMEWORK-2 Practice Questions (Page 5)
Part of the NIST Framework: RESPOND Function domain, which accounts for 8% of the NIST-CYBERSECURITY-FRAMEWORK-2 exam.
27questions here
6free pages
6concepts
8%of the exam
Questions 21–25
- 21
An organization's incident response plan specifies communication protocols for different types of incidents. Which protocol is typically used for a low-severity incident that does not require immediate action?
Select an answer first - 22
A financial services firm detects a potential insider threat involving unauthorized access to customer accounts. The incident response team is determining which stakeholders to notify. Which stakeholder should be notified FIRST?
Select an answer first - 23
During a multi-organization incident response exercise, a company needs to share indicators of compromise (IOCs) with a trusted partner organization. The IOCs include IP addresses and file hashes. Which method is MOST appropriate for sharing this information securely?
Select an answer first - 24
An incident response team is sharing threat intelligence with a partner organization. The partner requests the full raw logs from the affected systems. The team's legal counsel advises that the logs contain personal data. What is the MOST appropriate action?
Select an answer first - 25
An employee discovers a potential security incident and needs to report it according to the organization's incident response plan. Which action best aligns with standard incident reporting procedures?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “NIST-CYBERSECURITY-FRAMEWORK-2” is a trademark of its owner, used for identification only.