SC-200 Respond to security incidents • Set 17
SC-200 Respond to security incidents Practice Test 17 — 15 questions with explanations. Free, no signup.
You are responding to a ransomware incident in Microsoft Defender XDR. You have identified that the malware encrypted files on several devices and then deleted the volume shadow copies. Which of the following actions should you take first to contain the incident?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.