Certified Incident Handler (CIH) Practice Ecam

Disable ads (and more) with a membership for a one time $2.99 payment

Prepare for the Certified Incident Handler (CIH) Exam. Enhance your knowledge with interactive quizzes and detailed insights into cyber incident handling. Boost your exam readiness with our expert-designed questions!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which FedRAMP baseline security control corresponds to impact levels of 26, 18, and 7 for high, moderate, and low risks?

  1. Access Control

  2. Incident Response

  3. System Security Plan

  4. Configuration Management

The correct answer is: Incident Response

The correct answer is Incident Response. In the context of Federal Risk and Authorization Management Program (FedRAMP), Incident Response refers to the capabilities and procedures that an organization must have in place to effectively manage and respond to security incidents that may affect information systems. The impact levels of 26, 18, and 7 correspond to the classification of controls based on the potential damage that a security incident could cause, which is in line with the high, moderate, and low risk categorizations. High-impact scenarios require robust incident response protocols due to the potential for significant disruption or loss. Moderate and low impacts still necessitate defined response protocols, but the complexity and immediacy of response may differ accordingly. Access Control, System Security Plan, and Configuration Management are all critical components of FedRAMP security frameworks but focus on different aspects of security. Access Control deals with limiting access to sensitive information, the System Security Plan outlines the overall security controls, and Configuration Management pertains to maintaining secure configurations of systems. While all these elements are vital to a comprehensive security strategy, they do not specifically address the procedural requirements for responding to incidents in the context of varying impact levels like Incident Response does.