CS0-003 Exam Question 11

Which of the following statements best describes the MITRE ATT&CK framework?
  • CS0-003 Exam Question 12

    Security analysts review logs on multiple servers on a daily basis. Which of the following implementations will give the best central visibility into the events occurring throughout the corporate environment without logging in to the servers individually?
  • CS0-003 Exam Question 13

    A company has the following security requirements:
    . No public IPs
    All data secured at rest
    . No insecure ports/protocols
    After a cloud scan is completed, a security analyst receives reports that several misconfigurations are putting the company at risk. Given the following cloud scanner output:

    Which of the following should the analyst recommend be updated first to meet the security requirements and reduce risks?
  • CS0-003 Exam Question 14

    A company brings in a consultant to make improvements to its website. After the consultant leaves. a web developer notices unusual activity on the website and submits a suspicious file containing the following code to the security team:

    Which of the following did the consultant do?
  • CS0-003 Exam Question 15

    The SOC received a threat intelligence notification indicating that an employee's credentials were found on the dark web. The user's web and log-in activities were reviewed for malicious or anomalous connections, data uploads/downloads, and exploits. A review of the controls confirmed multifactor authentication was enabled. Which of the following should be done first to mitigate impact to the business networks and assets?