Question 1 of 30
Upon reviewing security logs, a cybersecurity analyst detects unusual outbound network traffic patterns from a server containing sensitive customer information. The analyst suspects a potential data breach. Considering the organization operates under stringent data privacy regulations, what is the most prudent course of action to investigate this anomaly while upholding compliance?
Initiate a targeted forensic investigation focusing on the affected server, employing data minimization techniques and strict access controls to collect only necessary evidence, and consult with legal counsel regarding notification obligations.
Immediately conduct a comprehensive, system-wide forensic dump of all servers in the network to ensure no data is missed, regardless of its direct relevance to the initial anomaly.
Halt all investigative activities until explicit consent is obtained from every customer whose data might be on the affected server, to avoid any potential privacy violations.
Delegate the entire investigation to an external cybersecurity firm without providing them with specific guidance on data privacy regulations or internal data handling policies.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free