CS0-002 Exam Question 41

A security analyst is scanning the network to determine if a critical security patch was applied to all systems in an enterprise. The Organization has a very low tolerance for risk when it comes to resource availability. Which of the following is the BEST approach for configuring and scheduling the scan?
  • CS0-002 Exam Question 42

    A company uses a managed IDS system, and a security analyst has noticed a large volume of brute force password attacks originating from a single IP address. The analyst put in a ticket with the IDS provider, but no action was taken for 24 hours, and the attacks continued. Which of the following would be the BEST approach for the scenario described?
  • CS0-002 Exam Question 43

    While analyzing logs from a WAF, a cybersecurity analyst finds the following:

    Which of the following BEST describes what the analyst has found?
  • CS0-002 Exam Question 44

    A security analyst scans the company's external IP range and receives the following results from one of the hosts:

    Which of the following best represents the security concern?
  • CS0-002 Exam Question 45

    A security analyst is investigating a reported phishing attempt that was received by many users throughout the company The text of one of the emails is shown below:

    Office 365 User.
    It looks like you account has been locked out Please click this <a href=Tittp7/accountfix-office356 com/login php">link</a> and follow the pfompts to restore access Regards.
    Security Team
    Due to the size of the company and the high storage requirements, the company does not log DNS requests or perform packet captures of network traffic, but rt does log network flow data Which of the following commands will the analyst most likely execute NEXT?