ISC2 Systems Security Certified Practitioner (SSCP) Practice Question
Your company is migrating on-premises workloads to AWS and wants to strengthen its computer security incident-response capabilities in accordance with NIST SP 800-61 Rev. 2. During the Preparation phase, the CISO asks you to ensure new cloud operations engineers can rapidly recognize and escalate potential AWS security incidents. Which action best meets this requirement while aligning with both AWS and NIST best practices?
Deploy all production workloads across multiple Availability Zones to ensure high availability and rapid failover.
Configure AWS Backup to create daily encrypted snapshots of critical EBS volumes and store them in a separate account.
Enable Amazon GuardDuty across all accounts and forward its findings to a centralized Security Hub dashboard.
Schedule recurring gameday exercises that simulate security breaches in the AWS accounts and require engineers to follow documented runbooks through detection, analysis, and escalation steps.
In the NIST SP 800-61 Preparation phase, organizations establish and maintain incident-response policies, defined roles, and-critically-training and exercises that ensure personnel can detect and report incidents. Running periodic, realistic gameday or tabletop exercises in live AWS environments lets staff practice using CloudTrail, GuardDuty findings, IAM roles, communication channels, and runbooks under controlled conditions. This hands-on rehearsal builds proficiency and confirms that responders can detect, analyze, and escalate incidents. Enabling detective controls, configuring backups, or deploying multi-AZ architectures improve security or resilience but do not deliver the required incident-response training.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are gameday exercises in AWS?
Open an interactive chat with Bash
How does CloudTrail help in incident response?
Open an interactive chat with Bash
What is NIST SP 800-61 Rev. 2 and its Preparation phase?
Open an interactive chat with Bash
ISC2 Systems Security Certified Practitioner (SSCP)
Incident Response and Recovery
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .