Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 350-201 Exam - Topic 10 Question 59 Discussion

The incident response team was notified of detected malware. The team identified the infected hosts, removed the malware, restored the functionality and data of infected systems, and planned a company meeting to improve the incident handling capability. Which step was missed according to the NIST incident handling guide?
A) Contain the malware
B) Install IPS software
C) Determine the escalation path
D) Perform vulnerability assessment

Cisco 350-201 Exam - Topic 10 Question 59 Discussion

Actual exam question for Cisco's 350-201 exam
Question #: 59
Topic #: 10
[All 350-201 Questions]

The incident response team was notified of detected malware. The team identified the infected hosts, removed the malware, restored the functionality and data of infected systems, and planned a company meeting to improve the incident handling capability. Which step was missed according to the NIST incident handling guide?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Rosalind
10 months ago
Escalation path is important, but containment is crucial here.
upvoted 0 times
...
Viva
10 months ago
Installing IPS software should've been a priority too.
upvoted 0 times
...
Alton
10 months ago
Wait, did they really not contain it? That seems off.
upvoted 0 times
...
Hailey
11 months ago
Totally agree, containment is key!
upvoted 0 times
...
Mary
11 months ago
They forgot to contain the malware first!
upvoted 0 times
...
Andra
11 months ago
I wonder if they should have installed IPS software as a preventive measure. That seems like something we discussed in relation to incident response.
upvoted 0 times
...
Lewis
11 months ago
I recall that containment is usually one of the first things you do. If they didn't do that, it could lead to further issues.
upvoted 0 times
...
Fairy
11 months ago
I'm not entirely sure, but I feel like determining the escalation path is also important. We practiced a question like that in class.
upvoted 0 times
...
Miriam
11 months ago
I think they might have missed the containment step. I remember that being a crucial part of the NIST guidelines.
upvoted 0 times
...
Alishia
11 months ago
Okay, let's think this through. "Service Protection" is likely related to the security or protection of a specific service or process. I'm leaning towards option C, but I'll review the other choices just to be sure.
upvoted 0 times
...
Rosamond
11 months ago
Hmm, I'm a bit unsure about this one. The options seem to cover different communication methods, but I'm not sure which one specifically indicates a vibrant, interactive team. I'll have to think this through.
upvoted 0 times
...
Malcolm
11 months ago
I feel like sliders can represent a range, but I don't think they select multiple distinct values simultaneously.
upvoted 0 times
...
Delsie
1 year ago
Malware, schmalware! I'd be more worried about which snacks to bring to the company meeting. Gotta keep the incident response team fueled up, you know?
upvoted 0 times
Erick
1 year ago
C) Determine the escalation path
upvoted 0 times
...
Lavera
1 year ago
B) Install IPS software
upvoted 0 times
...
Trina
1 year ago
A) Contain the malware
upvoted 0 times
...
...
Katy
1 year ago
Ah, the age-old incident response dilemma. I'm leaning towards C as well. Can't forget those all-important escalation protocols, right? Although, a little vulnerability assessment never hurt anyone...
upvoted 0 times
Audry
1 year ago
C) Determine the escalation path
upvoted 0 times
...
Sharen
1 year ago
B) Install IPS software
upvoted 0 times
...
Anissa
1 year ago
A) Contain the malware
upvoted 0 times
...
...
Herschel
1 year ago
This question is a real head-scratcher! I'm going to have to go with C - determining the escalation path. Gotta love those NIST guides, they really cover all the bases.
upvoted 0 times
...
Carey
1 year ago
Hmm, I'm not too sure about this one. I was thinking it might be D - performing a vulnerability assessment, but I could be wrong. Incident response is all about those critical steps, you know?
upvoted 0 times
Lashaunda
1 year ago
D) Perform vulnerability assessment
upvoted 0 times
...
Arlie
1 year ago
C) Determine the escalation path
upvoted 0 times
...
Rosalind
1 year ago
B) Install IPS software
upvoted 0 times
...
Angelo
1 year ago
A) Contain the malware
upvoted 0 times
...
Claudia
1 year ago
D) Perform vulnerability assessment
upvoted 0 times
...
Sheron
1 year ago
C) Determine the escalation path
upvoted 0 times
...
Huey
1 year ago
B) Install IPS software
upvoted 0 times
...
Charlena
1 year ago
A) Contain the malware
upvoted 0 times
...
...
Tina
1 year ago
I think determining the escalation path was also important to ensure proper communication and response.
upvoted 0 times
...
Elouise
1 year ago
I agree with Whitney. Containing the malware is crucial to prevent further spread.
upvoted 0 times
...
Christene
1 year ago
Ooh, this is a tricky one! The NIST guide definitely emphasizes the importance of post-incident activities. Let's see, I think the answer is C - they missed determining the escalation path.
upvoted 0 times
Rosio
1 year ago
Definitely, it's important to have a multi-layered approach to security to protect against different types of threats.
upvoted 0 times
...
Tesha
1 year ago
Installing IPS software could also be beneficial to prevent future incidents from occurring.
upvoted 0 times
...
Gilma
1 year ago
Agreed, it helps ensure that the right people are notified and involved in the response process.
upvoted 0 times
...
Georgiann
1 year ago
I think you're right, determining the escalation path is crucial for effective incident handling.
upvoted 0 times
...
...
Whitney
1 year ago
I think the missed step was to contain the malware.
upvoted 0 times
...

Save Cancel