問題1
The vulnerability management team must scan the cloud environment to establish security baselines.
Which of the following assessment tools should the team use to perform this task?
The vulnerability management team must scan the cloud environment to establish security baselines.
Which of the following assessment tools should the team use to perform this task?
正確答案: D
問題2
A security operations center manager is concerned that after action reporting is not being completed in a timely manner.
Which of the following will allow the manager to quantify this concern?
A security operations center manager is concerned that after action reporting is not being completed in a timely manner.
Which of the following will allow the manager to quantify this concern?
正確答案: B
說明:(僅 NewDumps 成員可見)
問題3
Which of the following is the main concept behind the use of an attack methodology framework?
Which of the following is the main concept behind the use of an attack methodology framework?
正確答案: D
說明:(僅 NewDumps 成員可見)
問題4
A security architect works with a client on security operations center (SOC) capabilities. The security architect wants to ensure the log correlation and investigation activities are accurate across the infrastructure.
Which of the following is the best for the client to implement?
A security architect works with a client on security operations center (SOC) capabilities. The security architect wants to ensure the log correlation and investigation activities are accurate across the infrastructure.
Which of the following is the best for the client to implement?
正確答案: D
說明:(僅 NewDumps 成員可見)
問題5
A vulnerability analyst conducts a security assessment on the Remote Desktop Protocol (RDP) security posture within the environment.
The analyst issues the following command for the assessment: nmap -p 3389 --script rdp* 10.0.0.0/24 The analyst receives responses, which are divided into one of the two categories, from 13 out of the 254 hosts:

Which of the following conclusions can the analyst make about the output on Category 2?
A vulnerability analyst conducts a security assessment on the Remote Desktop Protocol (RDP) security posture within the environment.
The analyst issues the following command for the assessment: nmap -p 3389 --script rdp* 10.0.0.0/24 The analyst receives responses, which are divided into one of the two categories, from 13 out of the 254 hosts:

Which of the following conclusions can the analyst make about the output on Category 2?
正確答案: A
說明:(僅 NewDumps 成員可見)
問題6
Which of the following describes the main benefits of MITRE ATT & CK Navigator?
Which of the following describes the main benefits of MITRE ATT & CK Navigator?
正確答案: D
說明:(僅 NewDumps 成員可見)
問題7
Despite removing malware from some of the affected hosts, several of an organization's internal resources are still unavailable two weeks after the discovery of a major incident.
Which of the following best describes this phase?
Despite removing malware from some of the affected hosts, several of an organization's internal resources are still unavailable two weeks after the discovery of a major incident.
Which of the following best describes this phase?
正確答案: E
說明:(僅 NewDumps 成員可見)
問題8
A security operations center (SOC) manager reviews a document signed by the Chief Financial Officer (CFO), the sales director, and a customer to decide whether a contract breach occurred.
Which of the following best describes the document that includes key performance indicators (KPIs)?
A security operations center (SOC) manager reviews a document signed by the Chief Financial Officer (CFO), the sales director, and a customer to decide whether a contract breach occurred.
Which of the following best describes the document that includes key performance indicators (KPIs)?
正確答案: D
說明:(僅 NewDumps 成員可見)
問題9
Which of the following contains stakeholder contact information for incident response reporting?
Which of the following contains stakeholder contact information for incident response reporting?
正確答案: B
說明:(僅 NewDumps 成員可見)