CS0-002 Exam Question 56

During a routine network scan, a security administrator discovered an unidentified service running on a new embedded and unmanaged HVAC controller, which is used to monitor the company's datacenter:

The enterprise monitoring service requires SNMP and SNMPTRAP connectivity to operate.
Which of the following should the security administrator implement to harden the system?
  • CS0-002 Exam Question 57

    A security analyst is conducting a post-incident log analysis to determine which indicators can be used to detect further occurrences of a data exfiltration incident. The analyst determines backups were not performed during this time and reviews the following:

    Which of the following should the analyst review to find out how the data was exfilltrated?
  • CS0-002 Exam Question 58

    A production web server is experiencing performance issues. Upon investigation, new unauthorized applications have been installed and suspicious traffic was sent through an unused port. Endpoint security is not detecting any malware or virus. Which of the following types of threats would this MOST likely be classified as?
  • CS0-002 Exam Question 59

    A security analyst has received reports of very slow, intermittent access to a public-facing corporate server. Suspecting the system may be compromised, the analyst runs the following commands:

    Based on the output from the above commands, which of the following should the analyst do NEXT to further the investigation?
  • CS0-002 Exam Question 60

    It is important to parameterize queries to prevent: