Valid SY0-701 Dumps shared by ExamDiscuss.com for Helping Passing SY0-701 Exam! ExamDiscuss.com now offer the newest SY0-701 exam dumps, the ExamDiscuss.com SY0-701 exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com SY0-701 dumps with Test Engine here:
Which of the following phases of the incident response process attempts to minimize disruption?
Correct Answer: B
Containmentis the phase wherean organization attempts to minimize the damage caused by a security incident. This may involve isolating affected systems, blocking malicious traffic, or temporarily shutting down compromised services to prevent further impact. Recovery (A)focuses on restoring normal operations after an incident. Preparation (C)involves planning and readiness before an incident occurs. Analysis (D)involvesinvestigating the root causeand assessing the damage. Reference:CompTIA Security+ SY0-701 Official Study Guide, Security Operations domain.