CS0-002 Exam Question 76
A security analyst is attempting to utilize the blowing threat intelligence for developing detection capabilities:

In which of the following phases is this APT MOST likely to leave discoverable artifacts?

In which of the following phases is this APT MOST likely to leave discoverable artifacts?
CS0-002 Exam Question 77
A security analyst for a large pharmaceutical company was given credentials from a threat intelligence resources organisation for Internal users, which contain usernames and valid passwords for company accounts.
Which of the following is the FIRST action the analyst should take as part of security operations monitoring?
Which of the following is the FIRST action the analyst should take as part of security operations monitoring?
CS0-002 Exam Question 78
A security analyst needs to reduce the overall attack surface.
Which of the following infrastructure changes should the analyst recommend?
Which of the following infrastructure changes should the analyst recommend?
CS0-002 Exam Question 79
A new security manager was hired to establish a vulnerability management program. The manager asked for a corporate strategic plan and risk register that the project management office developed. The manager conducted a tools and skill sets inventory to document the plan. Which of the following is a critical task for the establishment of a successful program?
CS0-002 Exam Question 80
A system's authority to operate (ATO) is set to expire in four days. Because of other activities and limited staffing, the organization has neglected to start reauthentication activities until now. The cybersecurity group just performed a vulnerability scan with the partial set of results shown below:

Based on the scenario and the output from the vulnerability scan, which of the following should the security team do with this finding?

Based on the scenario and the output from the vulnerability scan, which of the following should the security team do with this finding?
