Incident Response Procedure for Security Breach of Customer PII | CompTIA CySA+ Exam

Incident Response Procedure for Security Breach of Customer PII

Question

Which of the following would MOST likely be included in the incident response procedure after a security breach of customer PII?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

B.

In the incident response procedure after a security breach of customer PII (personally identifiable information), the most likely team that would be included is the internal network operations center (NOC). The NOC is responsible for monitoring and managing the network infrastructure and would be the primary team to investigate and respond to any security incidents.

Human resources may be involved in the response procedure to address any personnel-related issues, such as disciplinary actions or notifying employees who may have been affected by the breach. However, their involvement would likely be secondary to the NOC's.

Public relations and marketing may also be involved in the response procedure, but their focus would be more on managing the company's public image and communicating with customers and the media about the breach, rather than addressing the technical aspects of the incident.

In summary, while all of the answer choices could potentially play a role in incident response after a security breach of customer PII, the internal network operations center would be the team most likely to be included in the response procedure.