🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 11 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

An e-commerce company recently contained and eradicated a malware outbreak that spread laterally across its flat network. During the post-incident lessons-learned meeting, the incident response team recommends several actions. Which proposed activity best exemplifies the "implementing new countermeasures" step of the post-incident phase?

  • Adjust the incident severity matrix to trigger immediate executive notification for future malware detections.

  • Deploy internal segmentation firewalls and revise network ACLs to block lateral movement between user and server VLANs.

  • Update the incident report with a detailed timeline of events and remediation actions taken.

  • Conduct a tabletop drill to test the updated ransomware playbook with key business stakeholders.

ISC2 Systems Security Certified Practitioner (SSCP)
Incident Response and Recovery
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot