212-89 Exam Question 36
The Linux command used to make binary copies of computer media and as a disk imaging tool if given a raw
disk device as its input is:
disk device as its input is:
212-89 Exam Question 37
The free, open source, TCP/IP protocol analyzer, sniffer and packet capturing utility standard across many industries and educational institutions is known as:
212-89 Exam Question 38
The type of relationship between CSIRT and its constituency have an impact on the services provided by the CSIRT. Identify the level of the authority that enables members of CSIRT to undertake any necessary actions on behalf of their constituency?
212-89 Exam Question 39
According to the Evidence Preservation policy, a forensic investigator should make at least ..................... image
copies of the digital evidence.
copies of the digital evidence.
212-89 Exam Question 40
US-CERT and Federal civilian agencies use the reporting timeframe criteria in the federal agency reporting
categorization. What is the timeframe required to report an incident under the CAT 4 Federal Agency category?
categorization. What is the timeframe required to report an incident under the CAT 4 Federal Agency category?
