A Chief Executive Officer (CEO) is concerned about the company's intellectual property being leaked to competitors. The security team performed an extensive review but did not find any indication of an outside breach. The data sets are currently encrypted using the Triple Data Encryption Algorithm. Which of the following courses of action is appropriate?
A. Use data tokenization on sensitive fields, reencrypt the data sets using AES-256, and then create an MD5 hash.
B. Limit all access to the sensitive data based on geographic access requirements with strict role-based access controls.
C. Ensure the data is correctly classified and labeled, and that DLP rules are appropriate to prevent disclosure.
D. Enable data masking and reencrypt the data sets using AES-256.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
While monitoring the information security notification mailbox, a security analyst notices several emails were repotted as spam. Which of the following should the analyst do FIRST?
A. Ask the sender to stop sending messages.
B. Review the message in a secure environment.
C. Block the sender In the email gateway.
D. Delete the email from the company's email servers.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
A manager asks a security analyst lo provide the web-browsing history of an employee. Which of the following should the analyst do first?
A. Download the browsing history, encrypt it. and hash it
B. Obtain permission to perform the search.
C. Obtain the employee's network ID to form the query.
D. Obtain the web-browsing history from the proxy.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
Which of the following describes the difference between intentional and unintentional insider threats'?
A. Their behavior will be different
B. The risk factor will be the same
C. Their access levels will be different
D. The rate of occurrence will be the same
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
An organization supports a large number of remote users. Which of the following is the best option to protect the data on the remote users' laptops?
A. Require employees to sign an NDA.
B. Use whole disk encryption.
C. Implement a DLP solution.
D. Require the use of VPNs.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
Yonekura -
Pass4Testの問題集CS0-002、12日間の学習で合格できました。