Free 212-89 sample questions
Real questions from the Certified Incident Handler (ECIH) practice bank, with the correct answer and an explanation for each one. No junk, no filler.
Try them in the simulator Same questions, with study, timed and flashcard modes.
Showing 20 of 40 free sample questions.
A malware code that infects computer files, corrupts or deletes the data in them and requires a host file to propagate is called:
Risk is defined as the probability of the occurrence of an incident. Risk formulation generally begins with the likeliness of an event’s occurrence, the harm it may cause and is usually denoted as Risk - Z(events)X (Probability of occurrence)/?
An organization faced an information security incident where a disgruntled employee passed sensitive access control information to a competitor. The organization s incident response manager, upon investigation, found that the incident must be handled within a few hours on the same day to maintain business continuity and market competitiveness. How would you categorize such information security incident?
The process of rebuilding and restoring the computer systems affected by an incident to normal operational stage including all the processes, policies and tools is known as:
Computer viruses are malicious software programs that infect computers and corrupt or delete the data on them. Identify the virus type that specifically infects Microsoft Word files?
Policies are designed to protect the organizational resources on the network by establishing the set rules and procedures. Which of the following policies authorizes a group of users to perform a set of actions on a set of resources?
Which of the following is an incident tracking, reporting and handling tool:
Incident management team provides support to all users in the organization that are affected by the threat or attack. The organization’s internal auditor is part of the incident response team. Identify one of the responsibilities of the internal auditor as part of the incident response team:
Any information of probative value that is either stored or transmitted in a digital form during a computer crime is called:
An incident is analyzed for its nature, intensity and its effects on the network and systems. Which stage of the incident response and handling process involves auditing the system and network log files?
Incident Response Plan requires
20 more free samples are waiting
Create a free account to unlock the whole 212-89 sample bank, or get full access to all 350 practice questions in the simulator.