200-201 Exam Question 46

One of the objectives of information security is to protect the CIA of information and systems. What does CIA mean in this context?
  • 200-201 Exam Question 47

    A security analyst reviews the firewall and observes the large number of frequent events. The analyst starts the packet capture with the Wireshark and identifies that TCP port reuse was detected incorrectly as a TCP split-handshake attack by the firewall. How must an impact from this event be categorized?
  • 200-201 Exam Question 48

    Refer to the exhibit.

    An engineer is reviewing a Cuckoo report of a file. What must the engineer interpret from the report?
  • 200-201 Exam Question 49

    An employee reports that someone has logged into their system and made unapproved changes, files are out of order, and several documents have been placed in the recycle bin. The security specialist reviewed the system logs, found nothing suspicious, and was not able to determine what occurred. The software is up to date; there are no alerts from antivirus and no failed login attempts. What is causing the lack of data visibility needed to detect the attack?
  • 200-201 Exam Question 50


    Refer to the exhibit. An employee received an email from an unknown sender with an attachment and reported it as a phishing attempt. An engineer uploaded the file to Cuckoo for further analysis. What should an engineer interpret from the provided Cuckoo report?