D340 Cyber Defense and Countermeasures - Set 4 - Part 2
Test your knowledge of technical writing concepts with these practice questions. Each question includes detailed explanations to help you understand the correct answers.
Question 21: What is the incident commander's primary responsibility?
Question 22: Why should incident communications use out-of-band channels when compromise is suspected?
Question 23: What determines whether an incident must be reported to regulators?
Question 24: Why should legal counsel be involved early in a significant incident?
Question 25: What is the recommended approach to communicating with affected customers?
Question 26: Why is it problematic to understate an incident's impact publicly?
Question 27: What is a ransomware incident's distinguishing operational challenge?
Question 28: Why do authorities generally discourage paying ransoms?
Question 29: What is double extortion in ransomware?
Question 30: Why does double extortion reduce the protective value of backups alone?
Question 31: What is a business impact analysis (BIA) used to determine?
Question 32: What does a recovery time objective (RTO) specify?
Question 33: What does a recovery point objective (RPO) specify?
Question 34: What is resilience in a cyber defense context?
Question 35: What is the purpose of a disaster recovery site?
Question 36: What distinguishes a hot site from a cold site?
Question 37: Why must recovery plans be tested rather than merely documented?
Question 38: What is a tabletop exercise best suited to evaluating?
Question 39: What is a full failover test intended to validate?
Question 40: Why should incident response plans include third-party dependencies?
Don't Want to Study?
Save Time on Studies, Spend More with Family & Friends! Pay-After-you-Pass!
Get Exam Support