CS0-002 Exam Question 131

Which of the following describes why it is important for an organization's incident response team and legal department to meet and discuss communication processes during the incident response process?
  • CS0-002 Exam Question 132

    A user receives a potentially malicious email that contains spelling errors and a PDF document. A security analyst reviews the email and decides to download the attachment to a Linux sandbox for review.
    Which of the following commands would MOST likely indicate if the email is malicious?
  • CS0-002 Exam Question 133

    An organization has recently found some of its sensitive information posted to a social media site.
    An investigation has identified large volumes of data leaving the network with the source traced back to host 192.168.1.13. An analyst performed a targeted Nmap scan of this host with the results shown below:

    Subsequent investigation has allowed the organization to conclude that all of the well-known, standard ports are secure. Which of the following services is the problem?
  • CS0-002 Exam Question 134

    A security analyst is conducting traffic analysis and observes an HTTP POST to a web server.
    The POST header is approximately 1000 bytes in length. During transmission, one byte is delivered every ten seconds. Which of the following attacks is the traffic indicative of?
  • CS0-002 Exam Question 135

    A recent audit included a vulnerability scan that found critical patches released 60 days prior were not applied to servers in the environment. The infrastructure team was able to isolate the issue and determined it was due to a service being disabled on the server running the automated patch management application. Which of the following would be the MOST efficient way to avoid similar audit findings in the future?