Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Chief Information Security Officer

Domain 4Objective 8

Computer Forensics and Incident Response CCISO Practice Questions (Page 6)

Part of the Information Security Core Competencies domain, which makes up ~33% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~20–33 in this domain), expect 3–4 from this objective — we provide 60 practice questions to prepare you well beyond it. (estimate)

60questions here
12free pages
13concepts

Questions 26–30

  1. 26foundation · easy

    What is the primary goal of containment strategies during an incident?

    Select an answer first
  2. 27expert · hard

    A company's incident response team is in the containment phase of a ransomware attack. They have isolated the affected systems, but the ransomware is still spreading to other parts of the network. The CISO must decide whether to continue containment or move to eradication. What is the best course of action?

    Select an answer first
  3. 28foundation · easy

    What is a key component of a comprehensive incident response report?

    Select an answer first
  4. 29foundation · easy

    Which procedure is essential for preserving digital evidence?

    Select an answer first
  5. 30expert · hard

    A global company's SOC detects two incidents simultaneously: (1) a ransomware infection on a single file server in a branch office, and (2) a phishing campaign targeting the CEO's email account. The CISO must prioritize the response. Which incident should be handled FIRST?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.