CS0-003 Exam Question 161

A security analyst wants to implement new monitoring controls in order to find abnormal account activity for traveling employees. Which of the following techniques would deliver the expected results?
  • CS0-003 Exam Question 162

    A systems administrator receives several reports about emails containing phishing links. The hosting domain is always different, but the URL follows a specific pattern of characters. Which of the following is the best way for the administrator to find more messages that were not reported?
  • CS0-003 Exam Question 163

    ID
    Source
    Destination
    Protocol
    Service
    1
    172.16.1.1
    172.16.1.10
    ARP
    AddrResolve
    2
    172.16.1.10
    172.16.1.20
    TCP 135
    RPC Kerberos
    3
    172.16.1.10
    172.16.1.30
    TCP 445
    SMB WindowsExplorer
    4
    172.16.1.30
    5.29.1.5
    TCP 443
    HTTPS Browser.exe
    5
    11.4.11.28
    172.16.1.1
    TCP 53
    DNS Unknown
    6
    20.109.209.108
    172.16.1.1
    TCP 443
    HTTPS WUS
    7
    172.16.1.25
    bank.backup.com
    TCP 21
    FTP FileZilla
    Which of the following represents the greatest concerns with regard to potential data exfiltration? (Select two.)
  • CS0-003 Exam Question 164

    A cybersecurity analyst is recording the following details
    * ID
    * Name
    * Description
    * Classification of information
    * Responsible party
    In which of the following documents is the analyst recording this information?
  • CS0-003 Exam Question 165

    A development team is preparing to roll out a beta version of a web application and wants to quickly test for vulnerabilities, including SQL injection, path traversal, and cross-site scripting. Which of the following tools would the security team most likely recommend to perform this test?