Summer Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

Why is it important to have a clear and well documented incident response plan?

A.

It increases storage for logs and incident events.

B.

It provides additional methods to identify users.

C.

It increases code deployment efficiency.

D.

It reduces the time required to contain and identify a breach.

Which event would generate a false positive alert?

A.

A firewall categorizes a benign application as malicious.

B.

A network sensor is unable to identify a custom application.

C.

A network tunnel accidentally switches from one route to another.

D.

An employee attempts to access an unauthorized application.

What is the purpose of a routed protocol?

A.

To create connections with the highest fidelity

B.

To identify the fastest method for data transmission

C.

To establish the method used to transport data

D.

To identify the path for forwarding a packet

What is a function of least privilege in Identity and Access Management (IAM)?

A.

Providing temporary access to resources for all users

B.

Granting users permission to all resources in the network

C.

Ensuring network users have the same access level for simplicity

D.

Allowing users the minimum permissions necessary to perform their jobs

What can improve security operations center (SOC) effectiveness?

A.

Prioritizing reactive threat response over proactive threat hunting

B.

Integrating threat intelligence feeds with security technology

C.

Focusing visibility on only network traffic

D.

Concentrating on internal data without using threat intelligence

Which activity is a core component of the Improve function in security operations?

A.

Deploying new security tools and technologies

B.

Performing routine hardware upgrades

C.

Updating incident response plans based on lessons learned

D.

Training users on basic cybersecurity awareness

How does antivirus software contribute to endpoint security?

A.

By enforcing strong password security policies for user account access

B.

By filtering unsolicited commercial email from a user’s inbox

C.

By scanning files and programs for known malware signatures

D.

By creating secure, isolated environments for untested applications

In which cloud service model does a company use hardware resources from a cloud service provider?

A.

Platform as a service (PaaS)

B.

Software as a service (SaaS)

C.

Network as a service (NaaS)

D.

Infrastructure as a service (IaaS)

A hub operates on which OSI layer?

A.

Layer 1

B.

Layer 2

C.

Layer 3

D.

Layer 4

Which technique is used by attackers during the Installation phase of the cyber attack lifecycle to maintain persistent and undetected access to a compromised system?

A.

Using rootkits to hide malicious activity in the operating system

B.

Exploiting known vulnerabilities in web applications

C.

Launching brute force attacks on user accounts

D.

Sending spear phishing emails to gain additional credentials