Question 1 of 30
The efficiency study reveals that a significant number of minor security alerts are being generated by a new cloud-based application. While investigating a cluster of these alerts, a security analyst discovers evidence of unauthorized data exfiltration, though the full scope and impact are not yet determined. The analyst is concerned that initiating the formal incident reporting process immediately will disrupt ongoing application development and potentially lead to negative scrutiny from senior management regarding the new application\'s security posture. What is the most appropriate course of action for the security analyst?
Immediately initiate the formal incident reporting process as per organizational policy, documenting all known details and potential implications, and continue the investigation to gather more information for subsequent updates.
Continue investigating the incident independently to determine the full scope and root cause before formally reporting it, to present a complete picture to management.
Attempt to resolve the data exfiltration issue discreetly without formal reporting, assuming it is a contained anomaly that will not recur.
Report only the fact that minor security alerts are being generated by the application, omitting the discovery of data exfiltration until its full impact is quantified.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free