Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the CompTIA CompTIA CySA+ CS0-003 Questions and answers with CertsForce

Viewing page 5 out of 15 pages
Viewing questions 41-50 out of questions
Questions # 41:

AXSS vulnerability was reported on one of the non-sensitive/non-mission-critical public websites of a company. The security department confirmed the finding and needs to provide a recommendation to the application owner. Which of the following recommendations will best prevent this vulnerability from being exploited? (Select two).

Options:

A.

Implement an IPS in front of the web server.


B.

Enable MFA on the website.


C.

Take the website offline until it is patched.


D.

Implement a compensating control in the source code.


E.

Configure TLS v1.3 on the website.


F.

Fix the vulnerability using a virtual patch at the WAF.


Expert Solution
Questions # 42:

An email hosting provider added a new data center with new public IP addresses. Which of the following most likely needs to be updated to ensure emails from the new data center do not get blocked by spam filters?

Options:

A.

DKIM


B.

SPF


C.

SMTP


D.

DMARC


Expert Solution
Questions # 43:

A security analyst provides the management team with an after-action report for a security incident. Which of the following is the management team most likely to review in order to correct validated issues with the incident response processes?

Options:

A.

Tabletop exercise


B.

Lessons learned


C.

Root cause analysis


D.

Forensic analysis


Expert Solution
Questions # 44:

Which of the following threat-modeling procedures is in the OWASP Web Security Testing Guide?

Options:

A.

Review Of security requirements


B.

Compliance checks


C.

Decomposing the application


D.

Security by design


Expert Solution
Questions # 45:

A new SOC manager reviewed findings regarding the strengths and weaknesses of the last tabletop exercise in order to make improvements. Which of the following should the SOC manager utilize to improve the process?

Options:

A.

The most recent audit report


B.

The incident response playbook


C.

The incident response plan


D.

The lessons-learned register


Expert Solution
Questions # 46:

After a security assessment was done by a third-party consulting firm, the cybersecurity program recommended integrating DLP and CASB to reduce analyst alert fatigue. Which of the following is the best possible outcome that this effort hopes to achieve?

Options:

A.

SIEM ingestion logs are reduced by 20%.


B.

Phishing alerts drop by 20%.


C.

False positive rates drop to 20%.


D.

The MTTR decreases by 20%.


Expert Solution
Questions # 47:

A technician is analyzing output from a popular network mapping tool for a PCI audit:

Question # 47

Which of the following best describes the output?

Options:

A.

The host is not up or responding.


B.

The host is running excessive cipher suites.


C.

The host is allowing insecure cipher suites.


D.

The Secure Shell port on this host is closed


Expert Solution
Questions # 48:

The DevSecOps team is remediating a Server-Side Request Forgery (SSRF) issue on the company ' s public-facing website. Which of the following is the best mitigation technique to address this issue?

Options:

A.

Place a Web Application Firewall (WAF) in front of the web server.


B.

Install a Cloud Access Security Broker (CASB) in front of the web server.


C.

Put a forward proxy in front of the web server.


D.

Implement MFA in front of the web server.


Expert Solution
Questions # 49:

Which Of the following techniques would be best to provide the necessary assurance for embedded software that drives centrifugal pumps at a power Plant?

Options:

A.

Containerization


B.

Manual code reviews


C.

Static and dynamic analysis


D.

Formal methods


Expert Solution
Questions # 50:

A threat intelligence analyst is updating a document according to the MITRE ATT & CK framework. The analyst detects the following behavior from a malicious actor: “The malicious actor will attempt to achieve unauthorized access to the vulnerable system.” In which of the following phases should the analyst include the detection?

Options:

A.

Procedures


B.

Techniques


C.

Tactics


D.

Subtechniques


Expert Solution
Viewing page 5 out of 15 pages
Viewing questions 41-50 out of questions