SYO-501 Exam Question 91
A security analyst just discovered that developers have access to production systems that are used for deployment and troubleshooting One developer, who recently left the company abused this access to obtain sensitive information Which of the following is the BEST account management strategy to prevent this from reoccurring?
SYO-501 Exam Question 92
A security administrator is analyzing a user report in which the computer exhibits odd network- related outages. The administrator, however, does not see any suspicious process running. A prior technician's notes indicate the machine has been remediated twice, but the system still exhibits odd behavior. Files were deleted from the system recently.
Which of the following is the MOST likely cause of this behavior?
Which of the following is the MOST likely cause of this behavior?
SYO-501 Exam Question 93
A system's administrator has finished configuring firewall ACL to allow access to a new web server.

The security administrator confirms form the following packet capture that there is network traffic from the internet to the web server:

The company's internal auditor issues a security finding and requests that immediate action be taken. With which of the following is the auditor MOST concerned?

The security administrator confirms form the following packet capture that there is network traffic from the internet to the web server:

The company's internal auditor issues a security finding and requests that immediate action be taken. With which of the following is the auditor MOST concerned?
SYO-501 Exam Question 94
The Chief Information Officer (CIO) has determined the company's new PKI will not use OCSP. The purpose of OCSP still needs to be addressed. Which of the following should be implemented?
SYO-501 Exam Question 95
A security analyst is checking log files and finds the following entries:

Which of the following is MOST likely happening?

Which of the following is MOST likely happening?