TRUE/FALSE
1. Incident response is strictly an information securityoperation.
2. Large organizations typically have the resources to protecteverything against all threats.
3. Detecting that a security event is occurring or has occurredis an easy matter.
4. Recovery is the returning of the asset into the businessfunction.
5. All data is equally important, and it is equally damaging inthe event of loss.
6. When performing forensics on a computer system you should usethe utilities provided by that system.
7. When analyzing computer storage components, the originalsystem should be analyzed.
8. Relevant evidence must be convincing or measure up withoutquestion.
9. Oral testimony that proves a specific fact is considered realevidence.
10.
OR
OR