
EC-CouncilAssociate C|CISO
Domain 4Objective 8
Computer Forensics and Incident Response ACCISO Practice Questions (Page 9)
Part of the Information Security Core Competencies domain, which makes up ~31% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~16–25 in this domain), expect 2–3 from this objective — we provide 62 practice questions to prepare you well beyond it. (estimate)
62questions here
13free pages
11concepts
Questions 41–45
- 41
A company's security team has just detected a data breach involving customer records. The team must respond. Which activity is part of the incident response process?
Select an answer first - 42
A security analyst observes multiple failed login attempts to a critical database server from a single external IP, followed by a successful login. The analyst must classify the incident and decide the immediate response. Which classification and action is most appropriate?
Select an answer first - 43
What is the primary goal of computer forensics in the context of incident response?
Select an answer first - 44
In the context of incident response, what is the primary role of computer forensics?
Select an answer first - 45
What is the function of a write-blocker in forensic imaging?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.