Here are all the actual test exam dumps for IT exams. Most people prepare for the actual exams with our test dumps to pass their exams. So it's critical to choose and actual test pdf to succeed.
Actual exam question for Cyber AB's CMMC-CCP exam Question #: 135 Topic #: 3
While conducting a CMMC Assessment, an individual from the OSC provides documentation to the assessor for review. The documentation states an incident response capability is established and contains information on incident preparation, detection, analysis, containment, recovery, and user response activities. Which CMMC practice is this documentation attesting to?
Understanding CMMC 2.0 Incident Response Practices TheIncident Response (IR) domaininCMMC 2.0 Level 2aligns withNIST SP 800-171, Section 3.6, which defines requirements forestablishing and maintaining an incident response capability. Why "A. IR.L2-3.6.1: Incident Handling" is Correct? The documentation provideddescribes an incident response capability that includes preparation, detection, analysis, containment, recovery, and user response activities. IR.L2-3.6.1specifically requires organizations toestablish an incident handling processcovering: Preparation Detection & Analysis Containment Eradication & Recovery Post-Incident Response Why Other Answers Are Incorrect? B). IR.L2-3.6.2: Incident Reporting (Incorrect) Incident reporting focuses on reporting incidents to external parties (e.g., DoD, DIBNet),which isnot what the provided documentation describes. C). IR.L2-3.6.3: Incident Response Testing (Incorrect) Incident response testing ensures that the response process is regularly tested and evaluated,which isnot the primary focus of the documentation provided. D). IR.L2-3.6.4: Incident Spillage (Incorrect) Incident spillage specifically refers to CUI exposure or handling unauthorized CUI incidents,which isnot the scenario described. Conclusion The correct answer isA. IR.L2-3.6.1: Incident Handling, as the documentationattests to the establishment of an incident response capability. References: CMMC 2.0 Level 2 Practices (NIST SP 800-171, Section 3.6) CMMC Assessment Process (CAP) Guide
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Is the comment made by USERNAME spam or abusive?
Commenting
In order to participate in the comments you need to be logged-in.
You can sign-up / login
(it's free).
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).