
Dell NIST Cybersecurity Framework v2.0
Domain 6Objective 3
Gain Knowledge on Analyzing Incidents with a Focus on Controls. NIST-CYBERSECURITY-FRAMEWORK-2 Practice Questions (Page 3)
Part of the NIST Framework: RESPOND Function domain, which accounts for 8% of the NIST-CYBERSECURITY-FRAMEWORK-2 exam.
32questions here
7free pages
7concepts
8%of the exam
Questions 11–15
- 11
An incident response team has confirmed a data breach involving customer credit card information. The team needs to communicate the findings to the legal department, public relations, and executive leadership. What is the most important consideration for this communication?
Select an answer first - 12
During an incident, an analyst discovers that an attacker has established persistence on a compromised host by creating a new local user account. The analyst needs to contain the incident while preserving evidence. Which control is most appropriate?
Select an answer first - 13
An analyst is reviewing network traffic and notices a series of DNS queries to a domain that is known to be associated with malware. The analyst also sees that a workstation is sending data to an IP address in a foreign country. Which indicators of compromise are present? (Select all that apply.)
Select an answer first - 14
Which of the following is an example of effective communication of analysis results?
Select an answer first - 15
An incident response team is analyzing a compromised server. They need to preserve evidence for potential legal action while also continuing to monitor the attacker's activities. Which control is most appropriate to achieve both objectives?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “NIST-CYBERSECURITY-FRAMEWORK-2” is a trademark of its owner, used for identification only.