A security team conducts a lessons-learned meeting after struggling to determine who should conduct the next steps following a security event. Which of the following should the team create to address this issue?
An incident response plan (IRP) is a document that defines the roles and responsibilities, procedures, and guidelines for responding to a security incident. It helps the security team to act quickly and effectively, minimizing the impact and cost of the incident. An IRP should specify who should conduct the next steps following a security event, such as containment, eradication, recovery, and analysis12. Reference: CompTIA CySA+ CS0-003 Certification Study Guide, page 362; 6 Incident Response Steps to Take After a Security Event, section 2.
Rebbecca
11 months agoHerminia
11 months agoBrandon
11 months agoRebbecca
12 months agoHerminia
12 months agoMarica
1 years agoAn
1 years agoInes
1 years agoJenise
12 months agoLaurena
12 months agoCharlena
12 months agoLavonda
12 months agoJustine
1 years agoSamira
1 years agoAdelle
1 years ago