1. What are the two main types of containment strategies?
Short-term containment provides immediate isolation—such as disconnecting a system from the network—to stop ongoing damage. Long-term containment maintains stability while enabling deeper investigation, often using patches or temporary network segmentation until systems are rebuilt.