Pass the CompTIA CompTIA CySA+ CS0-003 Questions and answers with CertsForce

Viewing page 5 out of 13 pages
Viewing questions 41-50 out of questions
Questions # 41:

Which of the following is described as a method of enforcing a security policy between cloud customers and cloud services?

Options:

A.

CASB


B.

DMARC


C.

SIEM


D.

PAM


Expert Solution
Questions # 42:

A technician identifies a vulnerability on a server and applies a software patch. Which of the following should be the next step in the remediation process?

Options:

A.

Testing


B.

Implementation


C.

Validation


D.

Rollback


Expert Solution
Questions # 43:

Which of the following is the best metric for an organization to focus on given recent investments in SIEM, SOAR, and a ticketing system?

Options:

A.

Mean time to detect


B.

Number of exploits by tactic


C.

Alert volume


D.

Quantity of intrusion attempts


Expert Solution
Questions # 44:

A SOC analyst observes reconnaissance activity from an IP address. The activity follows a pattern of short bursts toward a low number of targets. An open-source review shows that the IP has a bad reputation. The perimeter firewall logs indicate the inbound traffic was allowed. The destination hosts are high-value assets with EDR agents installed. Which of the following is the best action for the SOC to take to protect against any further activity from the source IP?

Options:

A.

Add the IP address to the EDR deny list.


B.

Create a SIEM signature to trigger on any activity from the source IP subnet detected by the web proxy or firewalls for immediate notification.


C.

Implement a prevention policy for the IP on the WAF


D.

Activate the scan signatures for the IP on the NGFWs.


Expert Solution
Questions # 45:

A team of analysts is developing a new internal system that correlates information from a variety of sources analyzes that information, and then triggers notifications according to company policy Which of the following technologies was deployed?

Options:

A.

SIEM


B.

SOAR


C.

IPS


D.

CERT


Expert Solution
Questions # 46:

Which of the following is the best framework for assessing how attackers use techniques over an infrastructure to exploit a target’s information assets?

Options:

A.

Structured Threat Information Expression


B.

OWASP Testing Guide


C.

Open Source Security Testing Methodology Manual


D.

Diamond Model of Intrusion Analysis


Expert Solution
Questions # 47:

Security analysts review logs on multiple servers on a daily basis. Which of the following implementations will give the best central visibility into the events occurring throughout the corporate environment without logging in to the servers individually?

Options:

A.

Deploy a database to aggregate the logging.


B.

Configure the servers to forward logs to a SIEM-


C.

Share the log directory on each server to allow local access,


D.

Automate the emailing of logs to the analysts.


Expert Solution
Questions # 48:

A cybersecurity analyst is tasked with scanning a web application to understand where the scan will go and whether there are URIs that should be denied access prior to more in-depth scanning. Which of following best fits the type of scanning activity requested?

Options:

A.

Uncredentialed scan


B.

Discqyery scan


C.

Vulnerability scan


D.

Credentialed scan


Expert Solution
Questions # 49:

An analyst is evaluating the following vulnerability report:

Question # 49

Which of the following vulnerability report sections provides information about the level of impact on data confidentiality if a successful exploitation occurs?

Options:

A.

Payloads


B.

Metrics


C.

Vulnerability


D.

Profile


Expert Solution
Questions # 50:

Which Of the following techniques would be best to provide the necessary assurance for embedded software that drives centrifugal pumps at a power Plant?

Options:

A.

Containerization


B.

Manual code reviews


C.

Static and dynamic analysis


D.

Formal methods


Expert Solution
Viewing page 5 out of 13 pages
Viewing questions 41-50 out of questions