
Dell NIST Cybersecurity Framework v2.0
Domain 6Objective 3
Gain Knowledge on Analyzing Incidents with a Focus on Controls. NIST-CYBERSECURITY-FRAMEWORK-2 Practice Questions (Page 4)
Part of the NIST Framework: RESPOND Function domain, which accounts for 8% of the NIST-CYBERSECURITY-FRAMEWORK-2 exam.
32questions here
7free pages
7concepts
8%of the exam
Questions 16–20
- 16
What is the purpose of correlating data from multiple sources during incident analysis?
Select an answer first - 17
An organization is responding to a ransomware incident. The incident response team needs to preserve evidence while also containing the spread. The affected systems are virtual machines on a hypervisor. Which approach best balances evidence preservation with containment?
Select an answer first - 18
During an incident, an analyst discovers that a server containing proprietary source code was accessed by an unauthorized user. The analyst must assess the impact on the organization. Which factor is most important to consider when determining the impact?
Select an answer first - 19
After analyzing a malware infection, an analyst has identified the entry vector, the files affected, and the command-and-control server. The analyst must document the findings. What is the most important element to include in the documentation?
Select an answer first - 20
What does assessing the impact of an incident primarily involve?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “NIST-CYBERSECURITY-FRAMEWORK-2” is a trademark of its owner, used for identification only.