Labor Day Flash Sale: 30% off Today Only!

8 hours, 3 minutes remaining!

CompTIA CySA+ CS0-003 (V3) Practice Question

A security analyst discovers several employee laptops encrypted by ransomware. According to the organization's incident-response playbook, the analyst must first determine the scope of the incident. Which action BEST fulfills that requirement?

  • Immediately disconnect the infected laptops from the network to stop propagation.

  • Notify legal counsel about possible breach-reporting obligations.

  • Draft external and internal status updates for leadership and customers.

  • Enumerate all devices and network segments that show signs of the ransomware infection.

CompTIA CySA+ CS0-003 (V3)
Incident Response and Management
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA Cybersecurity Analyst Voucher with Retake
CySA+ / v3 / CS0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot