CBRCOR Exam QuestionsBrowse all questions from this exam

CBRCOR Exam - Question 110


A security engineer discovers that a spreadsheet containing confidential information for nine of their employees was fraudulently posted on a competitor's website.

The spreadsheet contains names, salaries, and social security numbers. What is the next step the engineer should take in this investigation?

Show Answer
Correct Answer: A

The first step in responding to the discovery of confidential information being posted on a competitor's website should be to determine if there is internal knowledge of this incident. Identifying whether the information was leaked internally can help understand the breach's origin and scope, and allows for the immediate containment of further data exposure by plugging any internal security gaps or dealing with the personnel involved.

Discussion

3 comments
Sign in to comment
DrVoIP
Feb 18, 2023

D. Engage the legal department to explore action against the competitor that posted the spreadsheet. The unauthorized disclosure of confidential information poses a significant risk to an organization, and the legal department should be involved immediately to determine if any legal action can be taken against the competitor. Additionally, the security engineer should also investigate how the spreadsheet was leaked and determine if any internal personnel had a role in the incident. - ChatGPT

TrainingTeamOption: A
Oct 21, 2024

Upon discovering confidential information posted on a competitor's website, the next step is to determine if there is internal knowledge of this incident. This involves investigating within the organization to find out if any employees were aware of or involved in the data breach. Understanding the source of the leak is essential for addressing the issue and preventing future occurrences5.

27ea763Option: A
Jan 23, 2025

A. There is a need to investigate if it was an internal leak.