CS0-003 Exam Question 116
A web application team notifies a SOC analyst that there are thousands of HTTP/404 events on the public-facing web server. Which of the following is the next step for the analyst to take?
CS0-003 Exam Question 117
A security analyst reviews the following results of a Nikto scan:

Which of the following should the security administrator investigate next?

Which of the following should the security administrator investigate next?
CS0-003 Exam Question 118
A payroll department employee was the target of a phishing attack in which an attacker impersonated a department director and requested that direct deposit information be updated to a new account. Afterward, a deposit was made into the unauthorized account. Which of the following is one of the first actions the incident response team should take when they receive notification of the attack?
CS0-003 Exam Question 119
Which of the following is often used to keep the number of alerts to a manageable level when establishing a process to track and analyze violations?
CS0-003 Exam Question 120
A systems administrator is reviewing the output of a vulnerability scan.
INSTRUCTIONS
Review the information in each tab.
Based on the organization ' s environment architecture and remediation standards, select the server to be patched within 14 days and select the appropriate technique and mitigation.




INSTRUCTIONS
Review the information in each tab.
Based on the organization ' s environment architecture and remediation standards, select the server to be patched within 14 days and select the appropriate technique and mitigation.





