Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco Exam 350-201 Topic 10 Question 59 Discussion

Actual exam question for Cisco's 350-201 exam
Question #: 59
Topic #: 10
[All 350-201 Questions]

The incident response team was notified of detected malware. The team identified the infected hosts, removed the malware, restored the functionality and data of infected systems, and planned a company meeting to improve the incident handling capability. Which step was missed according to the NIST incident handling guide?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Katy
3 days ago
Ah, the age-old incident response dilemma. I'm leaning towards C as well. Can't forget those all-important escalation protocols, right? Although, a little vulnerability assessment never hurt anyone...
upvoted 0 times
...
Herschel
7 days ago
This question is a real head-scratcher! I'm going to have to go with C - determining the escalation path. Gotta love those NIST guides, they really cover all the bases.
upvoted 0 times
...
Carey
14 days ago
Hmm, I'm not too sure about this one. I was thinking it might be D - performing a vulnerability assessment, but I could be wrong. Incident response is all about those critical steps, you know?
upvoted 0 times
Charlena
2 days ago
A) Contain the malware
upvoted 0 times
...
...
Tina
21 days ago
I think determining the escalation path was also important to ensure proper communication and response.
upvoted 0 times
...
Elouise
24 days ago
I agree with Whitney. Containing the malware is crucial to prevent further spread.
upvoted 0 times
...
Christene
24 days ago
Ooh, this is a tricky one! The NIST guide definitely emphasizes the importance of post-incident activities. Let's see, I think the answer is C - they missed determining the escalation path.
upvoted 0 times
Georgiann
5 days ago
I think you're right, determining the escalation path is crucial for effective incident handling.
upvoted 0 times
...
...
Whitney
1 months ago
I think the missed step was to contain the malware.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77