D340 Cyber Defense and Countermeasures - Set 4 - Part 2

Test your knowledge of technical writing concepts with these practice questions. Each question includes detailed explanations to help you understand the correct answers.

Question 21: What is the incident commander's primary responsibility?

Question 22: Why should incident communications use out-of-band channels when compromise is suspected?

Question 23: What determines whether an incident must be reported to regulators?

Question 24: Why should legal counsel be involved early in a significant incident?

Question 25: What is the recommended approach to communicating with affected customers?

Question 26: Why is it problematic to understate an incident's impact publicly?

Question 27: What is a ransomware incident's distinguishing operational challenge?

Question 28: Why do authorities generally discourage paying ransoms?

Question 29: What is double extortion in ransomware?

Question 30: Why does double extortion reduce the protective value of backups alone?

Question 31: What is a business impact analysis (BIA) used to determine?

Question 32: What does a recovery time objective (RTO) specify?

Question 33: What does a recovery point objective (RPO) specify?

Question 34: What is resilience in a cyber defense context?

Question 35: What is the purpose of a disaster recovery site?

Question 36: What distinguishes a hot site from a cold site?

Question 37: Why must recovery plans be tested rather than merely documented?

Question 38: What is a tabletop exercise best suited to evaluating?

Question 39: What is a full failover test intended to validate?

Question 40: Why should incident response plans include third-party dependencies?


Complete the Captcha to view next question set.


Quick View

Don't Want to Study?

Save Time on Studies, Spend More with Family & Friends! Pay-After-you-Pass!

Get Exam Support