Question 1 of 30
The investigation demonstrates a potential data exfiltration event impacting sensitive customer information. As the CISO, you are tasked with assessing the compliance implications of this incident. Which of the following approaches best aligns with regulatory requirements and professional ethical standards for conducting this compliance assessment?
Immediately initiate a formal incident response protocol with a clearly defined scope, implement strict evidence preservation and chain of custody procedures, and conduct a systematic analysis of relevant logs and system data.
Begin a broad, immediate sweep of all accessible user and system logs across the entire network to identify any unusual activity, without initially defining a specific scope or evidence handling protocol.
Prioritize the analysis of individual user activity logs to pinpoint specific employees who may have been involved, while deferring formal evidence preservation until the initial findings are confirmed.
Focus on interviewing key personnel to gather anecdotal evidence about the incident before commencing any technical data collection or formal documentation.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free