Free 512-50 Exam Braindumps (page: 50)

Page 49 of 102

Your incident response plan should include which of the following?

  1. Procedures for litigation
  2. Procedures for reclamation
  3. Procedures for classification
  4. Procedures for charge-back

Answer(s): C



You currently cannot provide for 24/7 coverage of your security monitoring and incident response duties and your company is resistant to the idea of adding more full-time employees to the payroll.
Which combination of solutions would help to provide the coverage needed without the addition of more dedicated staff? (choose the best answer):

  1. Deploy a SEIM solution and have current staff review incidents first thing in the morning
  2. Contract with a managed security provider and have current staff on recall for incident response
  3. Configure your syslog to send SMS messages to current staff when target events are triggered
  4. Employ an assumption of breach protocol and defend only essential information resources

Answer(s): B



To get an Information Security project back on schedule, which of the following will provide the MOST help?

  1. Upper management support
  2. More frequent project milestone meetings
  3. Stakeholder support
  4. Extend work hours

Answer(s): A



How often should the Statements of Standards for Attestation Engagements-16 (SSAE16)/International Standard on Assurance Engagements 3402 (ISAE3402) report of your vendors be reviewed?

  1. Quarterly
  2. Semi-annually
  3. Bi-annually
  4. Annually

Answer(s): D






Post your Comments and Discuss EC-Council 512-50 exam with other Community members:

512-50 Discussions & Posts