🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 10 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

During a quarterly incident-response tabletop exercise, a security administrator wants to verify that the team can meet the plan's requirement to escalate a suspected ransomware infection to the CISO and legal counsel within 30 minutes of detection. Which exercise activity will BEST test whether this escalation path is understood and can be executed on time?

  • Have each participant verbally step through the incident scenario while recording, in real time, whom they would notify and the exact time those communications would occur

  • Distribute a post-exercise questionnaire asking participants whether they understood the 30-minute escalation requirement

  • Run a simulated ransomware attack in a sandbox and evaluate the technical containment actions without involving legal or executive staff

  • Analyze past incident tickets to calculate the average elapsed time between detection and management notification

ISC2 Systems Security Certified Practitioner (SSCP)
Security Concepts and Practices
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot