Quiz 12 Question 6 of 20

During a supply-chain credential compromise, your SOC confirms an attacker reused a service-account credential from a SaaS vendor to access hybrid workloads. The SaaS tenant is outside your direct administrative control. What is the required incident response process step?

Select an answer to reveal the explanation.

Motivation