SY0-701 Exam Question 1

The CIRT is reviewing an incident that involved a human resources recruiter exfiltration sensitive company data. The CIRT found that the recruiter was able to use HTTP over port 53 to upload documents to a web server. Which of the following security infrastructure devices could have identified and blocked this activity?
  • SY0-701 Exam Question 2

    Which of the following is the best way to consistently determine on a daily basis whether security settings on servers have been modified?
  • SY0-701 Exam Question 3

    Which of the following should a security administrator adhere to when setting up a new set of firewall rules?
  • SY0-701 Exam Question 4

    A security analyst is creating base for the server team to follow when hardening new devices for deployment.
    Which of the following beet describes what the analyst is creating?
  • SY0-701 Exam Question 5

    Which of the following alert types is the most likely to be ignored over time?