問題1
An analyst is researching potential indicators of compromise (IoCs) on a server and receives the following output:

Which of following best describes the potential IoC?
An analyst is researching potential indicators of compromise (IoCs) on a server and receives the following output:

Which of following best describes the potential IoC?
正確答案: B
說明:(僅 NewDumps 成員可見)
問題2
An analyst receives an alert that a user clicked on a malicious link. The analyst verifies that the link is malicious and was intended to capture credentials. The analyst verifies that the user visited the website, but no evidence indicates that the credentials were used. The analyst recommends that the user take remedial training and closes the case. Which of the following steps in the incident response process did the analyst neglect?
An analyst receives an alert that a user clicked on a malicious link. The analyst verifies that the link is malicious and was intended to capture credentials. The analyst verifies that the user visited the website, but no evidence indicates that the credentials were used. The analyst recommends that the user take remedial training and closes the case. Which of the following steps in the incident response process did the analyst neglect?
正確答案: C
說明:(僅 NewDumps 成員可見)
問題3
As part of a quality assurance test, a developer wants to examine how the code behaves after an application has been fully compiled and is running. Which of the following best describes the type of testing that the developer should perform?
As part of a quality assurance test, a developer wants to examine how the code behaves after an application has been fully compiled and is running. Which of the following best describes the type of testing that the developer should perform?
正確答案: C
說明:(僅 NewDumps 成員可見)
問題4
A security operations center analyst is using the command line to display specific traffic. The analyst uses the following command:
$tshark -r file.pcap -Y "http or udp"
Which of the following will the command line display?
A security operations center analyst is using the command line to display specific traffic. The analyst uses the following command:
$tshark -r file.pcap -Y "http or udp"
Which of the following will the command line display?
正確答案: D
說明:(僅 NewDumps 成員可見)
問題5
Which of the following explains why a company might reprioritize a vulnerability score? (Choose two.)
Which of the following explains why a company might reprioritize a vulnerability score? (Choose two.)
正確答案: A,D
說明:(僅 NewDumps 成員可見)
問題6
Before merging with a software company, the acquiring company's legal team requires a detailed software scan to determine if all code base is using open-source or paid licensed libraries. The vulnerability management analyst needs to provide this report. Which of the following scan methods will best meet this requirement?
Before merging with a software company, the acquiring company's legal team requires a detailed software scan to determine if all code base is using open-source or paid licensed libraries. The vulnerability management analyst needs to provide this report. Which of the following scan methods will best meet this requirement?
正確答案: B
說明:(僅 NewDumps 成員可見)
問題7
A security operations center analyst receives an alert from the security information and event management system. The analyst quickly reviews the alert and sees a workstation infected with malware. The analyst then uses the endpoint detection and response tool to isolate the workstation from the network. Which of the following best describes the steps that occurred in this scenario?
A security operations center analyst receives an alert from the security information and event management system. The analyst quickly reviews the alert and sees a workstation infected with malware. The analyst then uses the endpoint detection and response tool to isolate the workstation from the network. Which of the following best describes the steps that occurred in this scenario?
正確答案: A
說明:(僅 NewDumps 成員可見)
問題8
A managed service provider manages servers in customer-assigned Internet Protocol spaces. The provider discovers that these servers are not included in scheduled network scans, but the provider cannot scan the servers without the customers' explicit permission. Which of the following scanning methods should the provider use to scan these individual servers?
A managed service provider manages servers in customer-assigned Internet Protocol spaces. The provider discovers that these servers are not included in scheduled network scans, but the provider cannot scan the servers without the customers' explicit permission. Which of the following scanning methods should the provider use to scan these individual servers?
正確答案: D
說明:(僅 NewDumps 成員可見)
問題9
Given the following report:

Which of the following vulnerabilities should be prioritized for immediate remediation?
Given the following report:

Which of the following vulnerabilities should be prioritized for immediate remediation?
正確答案: C
說明:(僅 NewDumps 成員可見)