
Palo Alto NetworksCertified Cloud Security Professional
Domain 1Objective 4
1.4 Explain the Function of Incident Categorization and Prioritization CLOUD-SECURITY-PROFESSIONAL Practice Questions (Page 6)
Part of the Security Operations Center (SOC) Fundamentals domain, which accounts for 10% of the CLOUD-SECURITY-PROFESSIONAL exam.
29questions here
6free pages
6concepts
10%of the exam
Questions 26–29
- 26
Which of the following is a common criterion used to categorize incidents?
Select an answer first - 27
A SOC has two incidents. Incident A is a ransomware infection on a file server that is actively encrypting files. Incident B is a data exfiltration of a customer database that occurred over the past week and was only just detected. The SOC has a single incident response team. Which incident should be prioritized and why?
Select an answer first - 28
A SOC has two incidents: one is a ransomware infection on a file server that is actively encrypting files, and the other is a low-severity port scan on a public-facing web server. The team has limited staff and can only work one incident at a time. Which incident should be prioritized and why?
Select an answer first - 29
A SOC analyst categorizes an incident as 'Data Exfiltration' involving a customer database. The analyst then assigns it a priority of 'High' because the database contains sensitive personal information. How does categorization inform prioritization in this scenario?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CLOUD-SECURITY-PROFESSIONAL
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “CLOUD-SECURITY-PROFESSIONAL” is a trademark of its owner, used for identification only.