CompTIA CASP+ (CAS-003) — Question 339

Legal authorities notify a company that its network has been compromised for the second time in two years. The investigation shows the attackers were able to use the same vulnerability on different systems in both attacks. Which of the following would have allowed the security team to use historical information to protect against the second attack?

Answer options

Correct answer: B

Explanation

The correct answer is B, as 'Lessons learned' involves analyzing past incidents to improve security measures and prevent future breaches. The other options, while relevant to security management, do not specifically focus on applying historical incident data to enhance defenses against similar attacks.