Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilAssociate C|CISO

Domain 4Objective 8

Computer Forensics and Incident Response ACCISO Practice Questions (Page 2)

Part of the Information Security Core Competencies domain, which makes up ~31% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~16–25 in this domain), expect 2–3 from this objective — we provide 62 practice questions to prepare you well beyond it. (estimate)

62questions here
13free pages
11concepts

Questions 6–10

  1. 6foundation · easy

    Which of the following is a common forensic tool used for disk imaging and analysis?

    Select an answer first
  2. 7expert · hard

    A forensic analyst is investigating a system where the user attempted to hide files by deleting them and then running a disk cleanup utility. The analyst has a forensic image. Which technique is most likely to recover the deleted files?

    Select an answer first
  3. 8application · medium

    An investigator is analyzing a forensic image of a suspect's hard drive. The investigator needs to find files that were recently deleted from the Recycle Bin and determine when they were originally created. Which approach is most effective?

    Select an answer first
  4. 9foundation · easy

    What is the purpose of hashing a forensic image?

    Select an answer first
  5. 10foundation · easy

    Which of the following best describes the relationship between incident response and computer forensics?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.