Exam objective
Core 2 4.0: Incident Response, Privacy, Licensing, and Compliance
Incident Response, Privacy, Licensing, and Compliance for A+
This A+ topic supplies technician-level guidance for handling incidents and privacy/licensing/compliance items you will encounter during support. It focuses on operational judgment: preserving evidence, creating preservation copies, documenting and escalating incidents, recognizing license boundaries, distinguishing confidentiality and acceptable-use agreements, identifying regulated-data categories, and recognizing compliance triggers such as splash screens.
Start first lesson6 lessons in this topic
Common mistakes to avoid
- "Imaging the drive is enough": Imaging is important but capturing volatile memory and network state first may preserve evidence that disappears on shutdown.
- "I should always contact police": Technicians should follow escalation procedures; direct contact with law enforcement is typically handled by management or legal.
- "If I have a serial key, I can install anywhere": Keys are governed by license terms; volume/enterprise licensing may be required for corporate deployments.
- "All confidentiality is an NDA": Informal confidentiality expectations do not equal a signed NDA; a signed agreement creates enforceable obligations.