100-140 exam dumps

100-140 practice question 339 of 390

Cisco Certified Support Technician (CCST) IT Support. Associate level, Cisco. Free question with the correct answer and a full explanation.

100-140 Question 339

Select 3

An end user contacts the IT support team reporting that they received an email claiming to be from the company's IT department, asking them to reset their password by clicking on a link. Upon investigation, you notice that the email address does not match the official IT department email. What should be your next steps?

  1. A

    Instruct the user to immediately reset their password using the provided link.

  2. B

    Advise the user not to click on the link and delete the email.

  3. C

    Report the suspicious email to the security team for further investigation.

  4. D

    Ask the user to forward the email to you for further analysis and tracking.

  5. E

    Ignore the email, as it is likely just spam.

Show answer and explanation

Correct answers: B, C, D

Explanation

Suspicious emails, such as phishing attempts, are a common security threat to end users. It is critical to take appropriate steps to protect the user and the organization. The correct actions include advising the user not to interact with the email, escalating the matter to the security team, and collecting evidence to aid investigation. These actions ensure the threat is contained and further analyzed.

  • A. Incorrect.

    Instructing the user to reset their password using the provided link is incorrect because the email is suspicious and could lead to a phishing attack.

  • B. Correct.

    Advising the user not to click on the link and delete the email is correct as it prevents potential harm from a phishing attempt.

  • C. Correct.

    Reporting the suspicious email to the security team for further investigation is correct as it allows specialized teams to analyze and mitigate any threats.

  • D. Correct.

    Asking the user to forward the email to you for further analysis and tracking is correct because it helps gather evidence and trace the source of the threat.

  • E. Incorrect.

    Ignoring the email is incorrect, as it overlooks a potential security risk and leaves the organization vulnerable to similar attacks.

Timed practice exam

Take a 100-140 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam