Study. uk . com
  1. Home
  2. All questions
  3. Question 494

CompTIA Security+ study material · question 494 of 611

Which sequence lists the four phases of the NIST incident response lifecycle?

  1. Prepare, categorize, assess, monitor
  2. Preparation; detection and analysis; containment, eradication and recovery; post-incident activity
  3. Identify, protect, detect, respond
  4. Detection, containment, eradication, recovery
Show the answer

Answer: B. Preparation; detection and analysis; containment, eradication and recovery; post-incident activity

The last option lists Cybersecurity Framework functions and the fourth lists Risk Management Framework steps.

Source: NIST SP 800-61 Rev. 2 (NIST) — SP 800-61 Rev. 2 § 3 Handling an Incident

Challenge yourself on this topic → Study as cards