200-201 Exam Question 51

Which two elements are assets in the role of attribution in an investigation? (Choose two.)
  • 200-201 Exam Question 52

    Refer to the exhibit.

    What does the output indicate about the server with the IP address 172.18.104.139?
  • 200-201 Exam Question 53

    Refer to the exhibit.

    What is the potential threat identified in this Stealthwatch dashboard?
  • 200-201 Exam Question 54

    An engineer is working on a ticket for an incident from the incident management team A week ago. an external web application was targeted by a DDoS attack Server resources were exhausted and after two hours it crashed. An engineer was able to identify the attacker and technique used Three hours after the attack, the server was restored and the engineer recommended implementing mitigation by Blackhole filtering and transferred the incident ticket back to the IR team According to NIST SP800-61, at which phase of the incident response did the engineer finish work?
  • 200-201 Exam Question 55

    Refer to the exhibit.

    Which type of log is displayed?