200-201 exam dumps

200-201 practice question 242 of 405

Cisco Cybersecurity Associate. Associate level, Cisco. Free question with the correct answer and a full explanation.

200-201 Question 242

Single answer

A security analyst is reviewing the logs of a company’s file server and notices that a non-critical configuration file has been accessed multiple times by an unauthorized user. Upon further investigation, it is confirmed that no sensitive data was accessed and the configuration file does not impact business operations. Which option best describes the impact of this incident?

  1. A

    This incident has no impact since no sensitive data was compromised or operations were affected.

  2. B

    This incident has a high impact due to unauthorized access to the file server.

  3. C

    This incident has a moderate impact because it involved unauthorized access, even if the accessed file was non-critical.

  4. D

    This incident has a low impact because the file was accessed without permission, but there are no operational consequences.

Show answer and explanation

Correct answer: D

Explanation

The correct answer is 'low impact' because while any unauthorized access could represent a security concern, the accessed file was non-critical, no sensitive data was involved, and there were no operational disruptions. Understanding the level of impact is crucial in prioritizing an incident response.

  • A. Incorrect.

    Incorrect. While sensitive data or operations were not impacted, unauthorized access itself should be considered, even if the impact is minimal.

  • B. Incorrect.

    Incorrect. The incident does not qualify as high impact since the accessed file is non-critical and there are no operational consequences.

  • C. Incorrect.

    Incorrect. Moderate impact would apply if the incident posed a potential risk to sensitive data or business operations, which is not the case here.

  • D. Correct.

    Correct. The incident has a low impact because unauthorized access occurred, but the file is non-critical and there are no operational or data security consequences.

Timed practice exam

Take a 200-201 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam