Quiz 15 Question 2 of 20

After a ransomware incident, your SOC completes a lessons learned review and identifies several corrective actions, including patching gaps and EDR policy changes. Which addition to the final report most directly makes follow-up accountable?

Select an answer to reveal the explanation.

Motivation