CS0-003 Exam Question 171

Which of the following is most appropriate to use with SOAR when the security team would like to automate actions across different vendor platforms?
  • CS0-003 Exam Question 172

    A company recently removed administrator rights from all of its end user workstations. An analyst uses CVSSv3.1 exploitability metrics to prioritize the vulnerabilities for the workstations and produces the following information:

    Which of the following vulnerabilities should be prioritized for remediation?
  • CS0-003 Exam Question 173

    The security operations team is required to consolidate several threat intelligence feeds due to redundant tools and portals. Which of the following will best achieve the goal and maximize results?
  • CS0-003 Exam Question 174

    To minimize the impact of a security incident in a heavily regulated company, a cybersecurity analyst has configured audit settings in the organization's cloud services. Which of the following security controls has the analyst configured?
  • CS0-003 Exam Question 175

    An analyst views the following log entries:

    The organization has a partner vendor with hosts in the 216.122.5.x range. This partner vendor is required to have access to monthly reports and is the only external vendor with authorized access. The organization prioritizes incident investigation according to the following hierarchy: unauthorized data disclosure is more critical than denial of service attempts.
    which are more important than ensuring vendor data access.
    Based on the log files and the organization ' s priorities, which of the following hosts warrants additional investigation?