ISC2 Certified Cloud Security Professional (CCSP) Practice Question
During routine monitoring, a cloud provider's SOC detects and logs an unauthorized access attempt against a tenant's virtual machine. The organization follows an ITIL-aligned incident management process. Which action should the operations team take next to handle the event efficiently and limit any spread to other tenants?
Open a change request to schedule an emergency patch deployment across the entire hypervisor cluster.
Classify and prioritize the incident, then apply initial containment actions in line with established response procedures.
Conduct a detailed post-mortem to identify the root cause and document lessons learned.
Notify regulators and the public relations team to prepare an external breach disclosure statement.
In the ITIL incident management workflow, once an incident is identified and logged, the next step is to classify (categorize) and prioritize it so that appropriate resources are assigned and the correct urgency is applied. Part of this step is an initial triage that often includes short-term containment measures (for example, isolating the affected VM or subnet) to prevent the incident from impacting additional systems or tenants. Performing a post-mortem, initiating a broad change request, or notifying external parties are important, but they occur later-after the incident has been contained, investigated, and resolved.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is ITIL-aligned incident management?
Open an interactive chat with Bash
Why is containment prioritized in incident response?
Open an interactive chat with Bash
How does prioritization help in incident management?
Open an interactive chat with Bash
What does ITIL mean in incident management?
Open an interactive chat with Bash
What is the purpose of containment actions during an incident?
Open an interactive chat with Bash
Why is prioritization important during incident response?
Open an interactive chat with Bash
ISC2 Certified Cloud Security Professional (CCSP)
Cloud Security Operations
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .