Which of the following lines from this output most likely indicates that attackers could quickly use brute force and determine the negotiated secret session key?
A. TLS_DHE_RSA_WITH_AES_128_CBC_SHA 128 DH (1024 bits)
B. TLS_RSA_WITH_DES_CBC_SHA 56
C. TLS_RSA_WITH_AES_256_CBC_SHA 256
D. TLS_DHE_RSA_WITH_AES_256_GCM_SHA256 DH (2048 bits)
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
A company's application development has been outsourced to a third-party development team. Based on the SLA.
The development team must follow industry best practices for secure coding.
Which of the following is the BEST way to verify this agreement?
A. User acceptance testing
B. Input validation
C. Security regression testing
D. Application fuzzing
E. Stress testing
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Which of the following is an advantage of continuous monitoring as a way to help protect an enterprise?
A. Continuous monitoring leverages open-source tools, thereby reducing cost to the organization.
B. Continuous monitoring responds to active Intrusions without requiring human assistance.
C. Continuous monitoring blocks malicious activity by connecting to real-lime threat feeds.
D. Continuous monitoring uses automation to identify threats and alerts in real time
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
A security analyst is reviewing the following Internet usage trend report:

Which of the following usernames should the security analyst investigate further?
A. User 3
B. User 4
C. User1
D. User 2
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
A company has alerted planning the implemented a vulnerability management procedure. However, to security maturity level is low, so there are some prerequisites to complete before risk calculation and prioritization. Which of the following should be completed FIRST?
A. A business Impact analysis
B. A system assessment
C. Communication of the risk factors
D. A risk identification process
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
An organization is required to be able to consume multiple threat feeds simultaneously and to provide actionable intelligence to various teams. The organization would also like to be able to leverage the intelligence to enrich security event dat a. Which of the following functions would most likely help the security analyst meet the organization's requirements?
A. Detection and monitoring
B. Risk management
C. Incident response
D. Vulnerability management
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
1057 お客様のコメント
クリック」





Kurihara -
CS0-002を買って読んでみました。これで合格点は取れます。問題部分だけの暗記でもいけるレベルです。CompTIAは信頼できます。