Fortinet FCSS - Security Operations 7.4 Analyst FCSS_SOC_AN-7.4 Question # 2 Topic 1 Discussion

Fortinet FCSS - Security Operations 7.4 Analyst FCSS_SOC_AN-7.4 Question # 2 Topic 1 Discussion

FCSS_SOC_AN-7.4 Exam Topic 1 Question 2 Discussion:
Question #: 2
Topic #: 1

According to the National Institute of Standards and Technology (NIST) cybersecurity framework, incident handling activities can be divided into phases.

In which incident handling phase do you quarantine a compromised host in order to prevent an adversary from using it as a stepping stone to the next phase of an attack?


A.

Containment


B.

Analysis


C.

Eradication


D.

Recovery


Get Premium FCSS_SOC_AN-7.4 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.