CS0-002 Exam Question 121
Due to new regulations, a company has decided to institute an organizational vulnerability management program and assign the function to the security team. Which of the following frameworks would BEST support the program? (Choose two.)
CS0-002 Exam Question 122
A security analyst notices PII has been copied from the customer database to an anonymous FTP server in the DMZ. Firewall logs indicate the customer database has not been accessed from anonymous FTP server.
Which of the following departments should make a decision about pursuing further investigation?
(Choose two.)
Which of the following departments should make a decision about pursuing further investigation?
(Choose two.)
CS0-002 Exam Question 123
A financial institution's business unit plans to deploy a new technology in a manner that violates existing information security standards. Which of the following actions should the Chief Information Security Officer (CISO) take to manage any type of violation?
CS0-002 Exam Question 124
Which of the following incident response components can identify who is the llaison between multiple lines of business and the pubic?
CS0-002 Exam Question 125
A security analyst is conducting a post-incident log analysis to determine which indicators can be used to detect further occurrences of a data exfiltration incident. The analyst determines backups were not performed during this time and reviews the following:

Which of the following should the analyst review to find out how the data was exfilltrated?

Which of the following should the analyst review to find out how the data was exfilltrated?
