Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

CompTIA SecurityX Certification Exam CAS-005 Question # 68 Topic 7 Discussion

CompTIA SecurityX Certification Exam CAS-005 Question # 68 Topic 7 Discussion

CAS-005 Exam Topic 7 Question 68 Discussion:
Question #: 68
Topic #: 7

Protected company data was recently exfiltrated. The SOC did not find any indication of a network or outside physical intrusion, and the DLP systems reported no unusual activity. The incident response team determined a text file was encrypted and reviews the following log excerpt:

CAS-005 Question 68

Which of the following is the most appropriate action for the team to take?


A.

Review the email security settings for proper configurations.


B.

Investigate whether the employee had access to the data that was leaked.


C.

Scan attachments with a third-party virus scan to independently confirm the results.


D.

Analyze the hardware for undetected supply chain vulnerabilities that may have been exploited.


Get Premium CAS-005 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.