EC-Council 212-89 Exam (page: 6)
EC-Council Certified Incident Handler
Updated on: 25-Dec-2025

Viewing Page 6 of 34

In the Control Analysis stage of the NIST’s risk assessment methodology, technical and none technical control methods are classified into two categories. What are these two control categories?

  1. Preventive and Detective controls
  2. Detective and Disguised controls
  3. Predictive and Detective controls
  4. Preventive and predictive controls

Answer(s): A



Which of the following incident recovery testing methods works by creating a mock disaster, like fire to identify the reaction of the procedures that are implemented to handle such situations?

  1. Scenario testing
  2. Facility testing
  3. Live walk-through testing
  4. Procedure testing

Answer(s): D



An incident is analyzed for its nature, intensity and its effects on the network and systems. Which stage of the incident response and handling process involves auditing the system and network log files?

  1. Incident recording
  2. Reporting
  3. Containment
  4. Identification

Answer(s): D



Which among the following CERTs is an Internet provider to higher education institutions and various other research institutions in the Netherlands and deals with all cases related to computer security incidents in which a customer is involved either as a victim or as a suspect?

  1. NET-CERT
  2. DFN-CERT
  3. Funet CERT
  4. SURFnet-CERT

Answer(s): D



One of the main objectives of incident management is to prevent incidents and attacks by tightening the physical security of the system or infrastructure. According to CERT’s incident management process, which stage focuses on implementing infrastructure improvements resulting from postmortem reviews or other process improvement mechanisms?

  1. Protection
  2. Preparation
  3. Detection
  4. Triage

Answer(s): A



Viewing Page 6 of 34



Share your comments for EC-Council 212-89 exam with other users:

Priscila 7/22/2022 9:59:00 AM

i find the xengine test engine simulator to be more fun than reading from pdf.
GERMANY