COMPTIA · Server+ (SK0-005)

IT & Computer Science

Server+ PBQ Lab: SOC Investigation and Incident Response War Room

By QH

In this Security+ PBQ lab, the learner steps into a SOC war-room investigation after several noisy alerts fire across endpoint, identity, email, firewall, and DLP systems. The challenge is to correlate evidence, identify the true compromise chain, preserve useful forensic data, contain the correct host and user session, and avoid broad or destructive response actions that make the incident harder to prove. This lab tests incident response, log correlation, threat hunting, endpoint evidence, identity containment, and scoped remediation under realistic alert noise.

Published Jun 16, 2026 · Updated Jun 16, 2026

1questions
100%pass score
100%Platform simulator (PBQ)

How do you want to study?

Topics covered

This quiz

Uncategorized1 (100%)

Uncategorized1 question

Discussion

No posts yet. Be the first to start the conversation.

Log in to post a comment.