CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 102 Topic 11 Discussion

CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 102 Topic 11 Discussion

CS0-003 Exam Topic 11 Question 102 Discussion:
Question #: 102
Topic #: 11

A report contains IoC and TTP information for a zero-day exploit that leverages vulnerabilities in a specific version of a web application. Which of the following actions should a SOC analyst take first after receiving the report?


A.

Implement a vulnerability scan to determine whether the environment is at risk.


B.

Block the IP addresses and domains from the report in the web proxy and firewalls.


C.

Verify whether the information is relevant to the organization.


D.

Analyze the web application logs to identify any suspicious or malicious activity.


Get Premium CS0-003 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.