Multiple Choice
Which two tasks should an Incident Responder complete when recovering from an incident? (Choose two.)
A) Rejoin healthy endpoints back to the network
B) Blacklist any suspicious files found in the environment
C) Submit any suspicious files to Cynic
D) Isolate infected endpoints to a quarantine network
E) Delete threat artifacts from the environment
Correct Answer:

Verified
Correct Answer:
Verified
Q391: An administrator needs to quickly deploy Windows
Q392: ATP detects a threat phoning home to
Q393: Which automated response action can be performed
Q394: What should an incident responder select to
Q395: An asset's Status value unexpectedly changes to
Q397: Which attribute is required when configuring the
Q398: Which industry-standard type of policy, providing computer
Q399: Which scanning technology is unable to provide
Q400: An information security officer has detected an
Q401: A software company needs to protect its