Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

ECCouncil Certified SOC Analyst (CSA v2) 312-39 Question # 27 Topic 3 Discussion

ECCouncil Certified SOC Analyst (CSA v2) 312-39 Question # 27 Topic 3 Discussion

312-39 Exam Topic 3 Question 27 Discussion:
Question #: 27
Topic #: 3

The SOC team is investigating a phishing attack that targeted multiple employees. During the Containment Phase, they need to determine how users interacted with the malicious email: whether they opened it, clicked links, downloaded attachments, or entered credentials. This information is critical to assessing impact and preventing further compromise. Which specific activity helps the SOC team understand user interactions with the phishing email?


A.

Monitoring and containment validation


B.

Malware infection check


C.

User action verification


D.

Blocking command-and-control (C2) and email traffic


Get Premium 312-39 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.