A SIEM tool fires an alert about a VPN connection attempt from an unusual location. The incident response team validates that an attacker has installed a remote access tool on a user's laptop while traveling. The attacker has the user's credentials and is attempting to connect to the network.
What is the next step in handling the incident?
Youlanda
1 months agoClorinda
9 days agoGoldie
10 days agoCary
14 days agoSkye
2 months agoJohnna
19 days agoCarman
1 months agoLauran
2 months agoAlesia
2 months agoShay
2 days agoGlendora
8 days agoRodolfo
9 days agoYvonne
13 days agoChantell
18 days agoBarrett
2 months agoDominque
2 months agoDick
2 months agoMammie
2 months agoLaquita
2 months agoFranklyn
2 months agoSvetlana
3 months agoCorazon
3 months ago