Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Cybersecurity Technician

Domain 7Objective 1

Incident Response CCT Practice Questions (Page 5)

Part of the Incident Response and Computer Forensics domain, which makes up ~10% of our current practice bank.

50questions here
10free pages
8concepts

Questions 21–25

  1. 21expert · hard

    A company discovers that an employee's credentials were used to access a sensitive database from a foreign IP address. The employee is currently on vacation and denies any involvement. The database contains customer personal data. The company must decide whether to notify affected customers and regulators. What is the MOST important factor in this decision?

    Select an answer first
  2. 22application · medium

    After a data breach, the incident response team must report to the CEO and to the IT security team. The CEO needs a high-level overview of business impact, while the security team needs technical details. How should the incident report be structured?

    Select an answer first
  3. 23foundation · easy

    What is the first step in a standard operating procedure for responding to a suspected malware infection on a critical server?

    Select an answer first
  4. 24foundation · easy

    Which incident response phase involves implementing short-term fixes to stop the spread of an active threat?

    Select an answer first
  5. 25foundation · easy

    Which action is a key component of the standard response procedure for a confirmed data breach involving customer personal data?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCT” is a trademark of its owner, used for identification only.