CS0-003 Exam Question 1

A company's security team is updating a section of the reporting policy that pertains to inappropriate use of resources (e.g., an employee who installs cryptominers on workstations in the office). Besides the security team, which of the following groups should the issue be escalated to first in order to comply with industry best practices?
  • CS0-003 Exam Question 2

    During a cybersecurity incident, one of the web servers at the perimeter network was affected by ransomware. Which of the following actions should be performed immediately?
  • CS0-003 Exam Question 3

    The Chief Information Security Officer wants to eliminate and reduce shadow IT in the enterprise.
    Several high-risk cloud applications are used that increase the risk to the organization. Which of the following solutions will assist in reducing the risk?
  • CS0-003 Exam Question 4

    A recent zero-day vulnerability is being actively exploited, requires no user interaction or privilege escalation, and has a significant impact to confidentiality and integrity but not to availability.
    Which of the following CVE metrics would be most accurate for this zero-day threat?
  • CS0-003 Exam Question 5

    A technician is analyzing output from a popular network mapping tool for a PCI audit:

    Which of the following best describes the output?