CS0-002 Exam Question 116

An organization prohibits users from logging in to the administrator account. If a user requires elevated permissions. the user's account should be part of an administrator group, and the user should escalate permission only as needed and on a temporary basis. The organization has the following reporting priorities when reviewing system activity:
* Successful administrator login reporting priority - high
* Failed administrator login reporting priority - medium
* Failed temporary elevated permissions - low
* Successful temporary elevated permissions - non-reportable
A security analyst is reviewing server syslogs and sees the following:
Which of the following events is the HIGHEST reporting priority?
  • CS0-002 Exam Question 117

    Which of the following session management techniques will help to prevent a session identifier from being stolen via an XSS attack?
  • CS0-002 Exam Question 118

    A company's marketing emails are either being found in a spam folder or not being delivered at all. The security analyst investigates the issue and discovers the emails in question are being sent on behalf of the company by a third party in1marketingpartners.com Below is the exiting SPP word:

    Which of the following updates to the SPF record will work BEST to prevent the emails from being marked as spam or blocked?
    A)

    B)

    C)

    D)
  • CS0-002 Exam Question 119

    A remote code execution vulnerability was discovered in the RDP. An organization currently uses RDP for remote access to a portion of its VDI environment. The analyst verified network-level authentication is enabled Which of the following is the BEST remediation for this vulnerability?
  • CS0-002 Exam Question 120

    Which of the following is the BEST security practice to prevent ActiveX controls from running malicious code on a user's web application?