Cisco Certified Support Technician (CCST) Cybersecurity 100-160 Question # 9 Topic 1 Discussion

Cisco Certified Support Technician (CCST) Cybersecurity 100-160 Question # 9 Topic 1 Discussion

100-160 Exam Topic 1 Question 9 Discussion:
Question #: 9
Topic #: 1

A SOC analyst notices repeated failed login attempts from a foreign IP address followed by a successful login to a privileged account. What is the most appropriate next step?


A.

Reset the affected user’s password and investigate the scope of compromise.


B.

Block all foreign IP addresses from accessing the network.


C.

Run a full vulnerability scan of the corporate network.


D.

Ignore the event unless it happens again.


Get Premium 100-160 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.