ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question

During incident response for a SaaS platform, you confirm that an attacker is actively exploiting a zero-day vulnerability on one of your production application servers. The event has been triaged and classified as a high-severity security incident. According to industry-standard incident response phases, which action should be taken next?

  • Isolate the affected server from the network to halt the attack and preserve evidence.

  • Issue an immediate public breach notification to customers and regulators.

  • Conduct a post-incident review meeting to capture lessons learned.

  • Reimage the server and redeploy the application from a trusted code base.

ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Deployment, Operations, Maintenance
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot