CS0-003 Exam Question 116

A web application team notifies a SOC analyst that there are thousands of HTTP/404 events on the public-facing web server. Which of the following is the next step for the analyst to take?
  • CS0-003 Exam Question 117

    A security analyst reviews the following results of a Nikto scan:

    Which of the following should the security administrator investigate next?
  • CS0-003 Exam Question 118

    A payroll department employee was the target of a phishing attack in which an attacker impersonated a department director and requested that direct deposit information be updated to a new account. Afterward, a deposit was made into the unauthorized account. Which of the following is one of the first actions the incident response team should take when they receive notification of the attack?
  • CS0-003 Exam Question 119

    Which of the following is often used to keep the number of alerts to a manageable level when establishing a process to track and analyze violations?
  • CS0-003 Exam Question 120

    A systems administrator is reviewing the output of a vulnerability scan.
    INSTRUCTIONS
    Review the information in each tab.
    Based on the organization ' s environment architecture and remediation standards, select the server to be patched within 14 days and select the appropriate technique and mitigation.