Question 1 of 29
System analysis indicates a potential data breach has occurred within a financial services organization. The initial assessment suggests that sensitive customer information, including personally identifiable information (PII) and potentially some financial account details, may have been accessed. The IT security team is eager to immediately isolate and restore affected systems to prevent further damage. However, the compliance officer is concerned about the organization\'s obligations under various data protection regulations. Which of the following approaches best balances the immediate need for incident containment with regulatory compliance?
Immediately activate the incident response plan, prioritizing a thorough assessment of the breach's scope and the types of data compromised, followed by timely notification to affected individuals and regulatory bodies as mandated by applicable laws (e.g., GDPR, CCPA, PCI-DSS).
Focus solely on isolating and restoring affected systems to prevent further unauthorized access, deferring any data breach assessment or notification until the technical remediation is fully complete.
Proceed with immediate system restoration without a detailed assessment of the data types involved, assuming that standard IT security protocols are sufficient to address any regulatory concerns.
Delay all notifications to regulatory bodies and affected individuals until a comprehensive forensic investigation has identified the exact root cause and confirmed the full extent of the data exfiltration.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free