Security Incident Investigation Quiz
Quiz covering Security and Deployment Issues
Security Incident Investigation Quiz
5 questions | Pass: 70% | Earn 25 points
Questions in this quiz
A preview of the 5 questions covered. Start the quiz above to answer them, check your score, and read the explanations.
- 1
During a security incident, what is the primary purpose of creating a forensic image of a compromised drive before analysis?
- 2
You notice an unusual spike in outbound traffic from a web server to an unknown IP address. What is the most appropriate first step in the incident response process?
- 3
Which of the following is considered a 'volatile' data source that should be collected first during an incident investigation?
- 4
While investigating a compromise, you find an entry in the web server access logs showing a 'POST' request to a hidden PHP script with base64 encoded parameters. What does this suggest?
- 5
You are performing a post-mortem analysis on a Linux server. The attacker used 'timestomping' to hide their activity. Which forensic technique is most effective at identifying this manipulation?
- Development Environment Setup
- Development Environment Setup Quiz5q
- Staging and Production Environments
- Staging and Production Environments Quiz5q
- Environment Variables and Secrets
- Environment Variables and Secrets Quiz5q
- Feature Flags and Rollouts
- Feature Flags and Rollouts Quiz5q
- Immutable Infrastructure
- Immutable Infrastructure Quiz5q
Enjoying the courses?
Everything stays free. Pro shows fewer ads, doubles the points you earn on every lesson and quiz so you progress twice as fast, unlocks half of every practice exam — plus full case studies — with the Learn & Exam study modes, and lets you read each lesson on one page.
- ✓ Fewer advertisements
- ✓ 2× points per lesson & quiz
- ✓ 50% of every exam unlocked
- ✓ Learn & Exam modes
- ✓ Distraction-free lessons