EMC NIST Cybersecurity Framework 2023 - D-CSF-SC-23 Exam Practice Test
What defines who is accountable for contacting operational teams, managers, and others affected by a localized, safety critical event?
Correct Answer: C
Vote an answer
Your firewall blocked several machines on your network from connecting to a malicious IP address.
After reviewing the logs, the CSIRT discovers all Microsoft Windows machines on the network have been affected based on a newly published CVE. Based on the IRP, what should be done immediately?
After reviewing the logs, the CSIRT discovers all Microsoft Windows machines on the network have been affected based on a newly published CVE. Based on the IRP, what should be done immediately?
Correct Answer: A
Vote an answer
You have been asked by your organization to:
- Assist in developing an organizational understanding for managing cybersecurity risk to systems, people, assets, data, and capabilities
- Outline appropriate safeguards to ensure delivery of critical infrastructure services to limit or contain the impact of a potential cybersecurity event
- Define the appropriate activities to identify the occurrence of a cybersecurity event by enabling timely discovery
- Determine the appropriate business outcome by planning, communicating, analyzing, mitigating, and improving the process
- Identify the appropriate activities to maintain plans for resilience and restore capabilities or services impaired due to a cybersecurity incident Based on these details, what would be the correct sequence of steps to take?
- Assist in developing an organizational understanding for managing cybersecurity risk to systems, people, assets, data, and capabilities
- Outline appropriate safeguards to ensure delivery of critical infrastructure services to limit or contain the impact of a potential cybersecurity event
- Define the appropriate activities to identify the occurrence of a cybersecurity event by enabling timely discovery
- Determine the appropriate business outcome by planning, communicating, analyzing, mitigating, and improving the process
- Identify the appropriate activities to maintain plans for resilience and restore capabilities or services impaired due to a cybersecurity incident Based on these details, what would be the correct sequence of steps to take?
Correct Answer: C
Vote an answer
Which category addresses the detection of unauthorized code in software?
Correct Answer: B
Vote an answer
Consider the following situation:
- A complete service outage has occurred, affecting critical services
- Users are unable to perform their tasks
- Customers are unable to conduct business
- Financial impact is beyond the highest allowed threshold
What is the correct classification level for this situation?
- A complete service outage has occurred, affecting critical services
- Users are unable to perform their tasks
- Customers are unable to conduct business
- Financial impact is beyond the highest allowed threshold
What is the correct classification level for this situation?
Correct Answer: D
Vote an answer
What three steps are required to complete a Business Impact Analysis?
Correct Answer: C
Vote an answer
What categories are specifically contained within the Identify function?
Correct Answer: A
Vote an answer