Q: 13
[Introduction to Incident Handling and Response]
Matt is an incident handler working for one of the largest social network companies, which was
affected by malware. According to the company’s reporting timeframe guidelines, a malware
incident should be reported within 1 h of discovery/detection after its spread across the company.
Which category does this incident belong to?
Options
Discussion
Probably B, had something like this in a mock exam.
Its A unless they define "spread" as isolated workstations, then maybe D.
Its A, that short 1 hour window and companywide spread makes it critical in most frameworks.
A
Be respectful. No spam.