CISSP Certified Information Systems Security Professional Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

During a late-night alert, a security analyst at a financial institution discovers that a zero-day exploit has successfully infiltrated the core customer data repository, leading to unauthorized access. The system logs indicate anomalous outbound traffic patterns suggesting potential data exfiltration. The organization\'s incident response plan mandates a structured approach to such events. Which of the following actions should the incident response team prioritize as the *immediate* first step to mitigate further damage?

Isolate the affected network segments to prevent lateral movement and further data exfiltration.
Initiate a full system backup of the compromised database to preserve evidence for forensic analysis.
Immediately begin eradicating the identified malicious code from all accessible systems.
Notify all affected customers about the potential data breach as per regulatory requirements.

About the CISSP Certified Information Systems Security Professional Certification

These free practice questions are designed to help you assess your readiness for the CISSP Certified Information Systems Security Professional exam by ISC2. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.