CompTIA CySA+

Reporting & Communication

42 practice questions with explanations — 15 free to try

PassNova has 42 CompTIA CySA+ practice questions on Reporting & Communication, each with a clear explanation. A 15-question taster is free with no sign-up; the full bank is part of PassNova Premium. Updated for 2026.

Sample questions

Reporting & Communication: example questions & answers

3 worked examples with answers and explanations below. Try 15 CompTIA CySA+ questions free in the browser; the full 42-question Reporting & Communication bank is part of PassNova Premium.

  1. A security team measures the average time from when an incident first occurs to when it is detected. Which metric are they tracking?

    • AAnnual rate of occurrence
    • BRecovery point objective (RPO)
    • CMaximum tolerable downtime (MTD)
    • DMean time to detect (MTTD)

    Answer: Mean time to detect (MTTD) measures how long it takes to discover an incident after it begins, a key performance metric for security operations reporting.

  2. After an incident, the team identifies the underlying flaw that allowed it to happen and recommends preventing recurrence. This part of the report is the:

    • AExecutive bonus summary
    • BMarketing impact statement
    • CVendor renewal schedule
    • DRoot cause analysis

    Answer: Root cause analysis identifies the fundamental reason an incident occurred so that corrective actions can prevent it from happening again.

  3. An analyst must report a confirmed breach to law enforcement, regulators, and affected customers. Maintaining a predefined list of who must be informed and how is part of which plan?

    • ANetwork addressing scheme
    • BCommunication (stakeholder notification) plan
    • CCapacity planning document
    • DSoftware licensing register

    Answer: A communication plan defines stakeholders, escalation paths, and notification methods so the right parties are informed correctly during an incident.

Start practising Reporting & Communication →