During a post-incident review, the team identifies that the initial detection time was significantly longer than expected due to missing log sources in the SIEM. How should this finding be addressed in the lessons learned report?
More Reporting and Communication Questions
16 questions
Full CompTIA CySA+ Practice Test
All topics covered
All CompTIA CySA+ Questions
Browse by topic
Related Questions
What is the primary purpose of a vulnerability management report provided to executive stakeholders?...
Which term describes the measurable values used to evaluate how effectively an organization is achie...
After a significant security incident, the incident response team must formally notify senior leader...
A security analyst must communicate the results of a vulnerability assessment to a non-technical bus...
A compliance report for a financial services organization indicates a vulnerability remediation inhi...
Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy
Discussion
Be the first to share your understanding of this concept
Sign in to join the discussion