CS0-002 Exam Question 121

Which of the following would MOST likely be included in the incident response procedure after a security breach of customer PII?
  • CS0-002 Exam Question 122

    During a review of SIEM alerts, a securrty analyst discovers the SIEM is receiving many alerts per day from the file-integrity monitoring toot about files from a newly deployed application that should not change. Which of the following steps should the analyst complete FIRST to respond to the issue7
  • CS0-002 Exam Question 123

    An organization recently discovered that spreadsheet files containing sensitive financial data were improperly stored on a web server. The management team wants to find out if any of these files were downloaded by pubic users accessing the server. The results should be written to a text file and should induce the date. time, and IP address associated with any spreadsheet downloads. The web server's log file Is named webserver log, and the report We name should be accessreport.txt. Following is a sample of the web servefs.log file:
    2017-0-12 21:01:12 GET /index.htlm - @4..102.33.7 - return=200 1622
    Which of the following commands should be run if an analyst only wants to include entries in which spreadsheet was successfully downloaded?
  • CS0-002 Exam Question 124

    Data spillage occurred when an employee accidentally emailed a sensitive file to an external recipient.
    Which of the following controls would have MOST likely prevented this incident?
  • CS0-002 Exam Question 125

    The Chief Information Security Officer (CISO) of a large financial institution is seeking a solution that will block a predetermined set of data points from being transferred or downloaded by employees. The CISO also wants to track the data assets by name, type, content, or data profile.
    Which of the following BEST describes what the CIS wants to purchase?