Chapter 7. Identifying Incident Impact and Assembling a Forensic Toolkit
This chapter covers the following topics:
3.0 Cyber Incident Response
3.1 Given a scenario, distinguish threat data or behavior to determine the impact of an incident.
Threat Classification: Covers known threats vs. unknown threats, zero-day attacks, and advanced persistent threats.
Factors Contributing to Incident Severity and Prioritization: Describes the factors used to classify incidents, such as downtime, recovery time, data integrity, and system process criticality. ...
Get CompTIA Cybersecurity Analyst (CySA+) Cert Guide now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.