In which scenario would it be beneficial for an organization to eradicate a threat from the environment by deleting it?
A) The Incident Response team is identifying the scope of the infection and is gathering a list of infected systems.
B) The Incident Response team is reviewing detections in the risk logs and assigning a High-Security Antivirus and Antispyware policy in the Symantec Endpoint Protection Manager (SEPM) .
C) The Incident Response team completed their analysis of the threat and added it to a blacklist.
D) The Incident Response team is analyzing the file to determine if it is a threat or a false positive.
Correct Answer:
Verified
Q113: Which service is the minimum prerequisite needed
Q114: What should an Incident Responder do to
Q115: Which endpoint detection method allows for information
Q116: Refer to the exhibit. An Incident Responder
Q117: An Incident Responder needs to remediate a
Q119: Which National Institute of Standards and Technology
Q120: Why is it important for an Incident
Q121: Which policies are required for the quarantine
Q122: When does Real Time Link Following scan
Q123: An organization has five (5) shops with
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents