Skip to content
CS0-003
Incident Response Management
medium
Question 2 of 20

A security analyst is building an incident response playbook for ransomware events. Which element is most critical to include for business continuity purposes?

ADocumented backup and recovery procedures with tested restoration timelines
BA list of all antivirus vendor contact numbers
CProcedures for updating SIEM correlation rules post-incident
DSocial media monitoring guidelines

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion