Question 1 of 29
Upon reviewing the initial alerts indicating a potential data breach involving customer personally identifiable information (PII), a security analyst needs to determine the most appropriate next step to manage the incident effectively and compliantly. Which of the following actions best aligns with professional incident response and regulatory requirements?
Initiate the incident response plan, conduct a comprehensive impact assessment to determine the scope and nature of the breach, and immediately engage legal and compliance teams to ascertain notification obligations.
Focus solely on isolating affected systems and eradicating the threat to prevent further data loss, deferring any communication or assessment of notification requirements until the technical situation is fully resolved.
Immediately draft a public statement to manage media inquiries and control the narrative, while conducting a minimal impact assessment to identify only the most critical systems affected.
Attempt to contain the breach internally without involving external legal counsel or regulatory bodies, hoping to resolve the issue discreetly and avoid public disclosure.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free