An organization is updating its incident response playbooks to better integrate end-user security awareness reporting with human risk management oversight. Place the following operational steps in the correct chronological sequence from initial detection by an employee to the continuous improvement of the security awareness program.
- 1An employee identifies an unfamiliar email containing a suspicious link and clicks the integrated phishing reporting button.
- 2Automated security tools analyze the email headers and execute the link in an isolated sandbox environment.
- 3The Security Operations Center (SOC) purges matching malicious emails from all enterprise mailboxes.
- 4Security awareness managers analyze reporting telemetry to update targeted role-based training scenarios.
Cevap
The correct sequence begins with the employee reporting the suspicious message via the phishing button, followed by automated technical analysis of the email payload, enterprise-wide mailbox purging by the security operations team, and finally utilizing reporting metrics to update role-based security awareness scenarios.
The correct operational sequence moves from initial end-user detection and reporting, through automated analysis and SOC-driven enterprise containment, to utilizing telemetry to optimize the security awareness program.
Adım Adım Çözüm
Anahtar Kavram
Security Awareness Reporting Workflow and Human Risk Management