Question 1 of 30
During a routine network security audit, Sarah, a cybersecurity analyst, discovers unusual outbound traffic originating from a workstation. Upon investigation, she finds that the workstation is infected with a new type of malware. What should Sarah do first to contain the incident?
Disconnect the infected workstation from the network.
Shut down all network services to prevent further spread.
Run a full antivirus scan on the workstation.
Notify the incident response team (IRT).

Preparing for CISCO-300-215-Conducting Forensic Analysis and Incident Response Using Cisco CyberOps Technologies (CBRFIR)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free