GIAC Enterprise Incident Response - GEIR Exam Practice Test

Which Linux command allows you to modify file permissions?
Response:
Correct Answer: C
What is an essential element when developing a playbook for managing ransomware attacks in an enterprise?
Response:
Correct Answer: D
What is the term used for extracting specific data points from cloud logs to identify security incidents?
Response:
Correct Answer: A
Select the macOS features that assist in recovery and backup.
(Multiple Correct Answers)
Response:
Correct Answer: A,C
Which file system is commonly used in Linux and known for its robustness?
Response:
Correct Answer: C
Select the types of logs that would be most helpful in scoping a data exfiltration incident.
Response:
Correct Answer: A,B,C
Which of the following is a characteristic of cloud computing scalability?
Response:
Correct Answer: A
Which of the following are common data sources in an enterprise environment that can aid in incident scoping?
Response:
Correct Answer: A,B,C,E