CS0-002 Exam Question 31

A security analyst is reviewing vulnerability scans from an organization's internet-facing web services. The following is from an output file called ssl-test_webapps.comptia.org:


Which of the following lines from this output most likely indicates that attackers could quickly use brute force and determine the negotiated secret session key?
  • CS0-002 Exam Question 32

    A security analyst performed a targeted system vulnerability scan to obtain critical information. After the output result, the analyst used the OVAL XML language to review and calculate the discovered risk. Which of the following types of scans did the security analyst perform?
  • CS0-002 Exam Question 33

    A vulnerability assessment solution is hosted in the cloud This solution will be used as an accurate inventory data source for both the configuration management database and the governance nsk and compliance tool An analyst has been asked to automate the data acquisition Which of the following would be the BEST way to acqutre the data'
  • CS0-002 Exam Question 34

    During routine monitoring a security analyst identified the following enterpnse network traffic:
    Packet capture output:

    Which of the following BEST describes what the security analyst observed?
  • CS0-002 Exam Question 35

    A security analyst is reviewing a new Internet portal that will be used for corporate employees to obtain their pay statements. Corporate policy classifies pay statement information as confidential, and it must be protected by MFA.
    Which of the following would best fulfill the MFA requirement while keeping the portal accessible from the internet?