CompTIA PBQ 8 Incident Response Security+ CySA+ CASP+ SecurityX

Поділитися
Вставка
  • Опубліковано 18 січ 2025

КОМЕНТАРІ • 7

  • @jrsimeon02
    @jrsimeon02 2 місяці тому +2

    Q1: Network Intrusion 7/7
    Q2: Data Breach 5/7
    Q3: Ransomware Attack 6/7
    Q4: Insider Threat: 6/7
    Total: 24/28 86%

  • @TejendraPatel-w2w
    @TejendraPatel-w2w 5 місяців тому +1

    For the insider threat question, the prompt says the insider has legitimate access, therefore, implying the insider is misusing their access. I don't understand how enforcing strict password policies or implementing RBAC would help given that the insider has legitimate access. The question could be worded differently to support those two actions IMHO. I have my sec+ 701 exam soon and your PBQ videos are very helpful!

    • @jrsimeon02
      @jrsimeon02 2 місяці тому

      I suppose the question interprets legitimate access and authorized access as different.

  • @96vintxge
    @96vintxge 6 місяців тому

    For the second question, why would you not encrypt data immediately? Wouldn't that help with future data breaches?

    • @tylermisyak6445
      @tylermisyak6445 5 місяців тому +1

      Preventing future data breaches is part of the Post Incident Activity Phase, which is the last phase in the IRC, so encrypting data would not be done immediately.

  • @LeoCagape
    @LeoCagape 5 місяців тому

    Thank you!

  • @ironsilk6634
    @ironsilk6634 6 місяців тому

    cool