Courseiva
mediumMultiple SelectObjective-mapped

SSCP Practice Question: Which TWO of the following are essential steps in…

Which TWO of the following are essential steps in a security incident response process according to the SSCP common body of knowledge? (Select the two best answers.)

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Eradication

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Vulnerability scanning

    Why it's wrong here

    Vulnerability scanning is a proactive measure, not part of incident response.

  • Penetration testing

    Why it's wrong here

    Penetration testing is a security assessment, not incident response.

  • Eradication

    Why this is correct

    Eradication involves removing the incident artifacts and is a key phase.

  • Identification

    Why this is correct

    Identification is the first step in the incident response lifecycle.

  • Risk assessment

    Why it's wrong here

    Risk assessment is part of risk management, not incident response.

About these practice questions

Courseiva writes every SSCP question from scratch — 920 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This SSCP practice question is part of Courseiva's free ISC2 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SSCP exam.