Which approach includes post-mortem analysis including risk and legal assessments after an incident?

Study for the EC-Council Network Defense Essentials Test. Utilize flashcards and multiple-choice questions, with each question accompanied by hints and explanations. Prepare effectively for your examination!

Multiple Choice

Which approach includes post-mortem analysis including risk and legal assessments after an incident?

Explanation:
Post-incident learning, including post-mortem analysis of what happened and reviewing risk exposure and legal implications, is the retrospective approach. This mindset looks back after an incident to understand root causes, assess the legal and risk ramifications, and update controls, policies, and incident response plans to prevent recurrence. A proactive approach focuses on stopping incidents before they occur by strengthening defenses and detection; a preventive approach emphasizes preventing incidents through protective measures; deterrence controls aim to discourage attackers rather than analyze the aftermath. The described activity aligns with looking back to learn and improve, which is retrospective.

Post-incident learning, including post-mortem analysis of what happened and reviewing risk exposure and legal implications, is the retrospective approach. This mindset looks back after an incident to understand root causes, assess the legal and risk ramifications, and update controls, policies, and incident response plans to prevent recurrence. A proactive approach focuses on stopping incidents before they occur by strengthening defenses and detection; a preventive approach emphasizes preventing incidents through protective measures; deterrence controls aim to discourage attackers rather than analyze the aftermath. The described activity aligns with looking back to learn and improve, which is retrospective.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy