🔥 3-day streak
Cisco CCNP Cybersecurity CBRCOR (350-201)16 / 147
Question 16 of 147
A SOC analyst receives an alert that a large volume of files from the company's SaaS-based file-sharing platform was downloaded and then shared externally by a single user account over a two-hour window. The security team suspects data exfiltration. Which action should the analyst take FIRST to investigate this potential cloud data loss event?
Reviewed for accuracy · Report an issueNext question