At which of the following phases of the SDLC shoukJ security FIRST be involved?
A. Testing
B. Analysis
C. Design
D. Maintenance
E. Implementation
F. Planning
正解:F
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
A security learn implemented a SCM as part for its security-monitoring program there is a requirement to integrate a number of sources Into the SIEM to provide better context relative to the events being processed.
Which of the following BEST describes the result the security learn hopes to accomplish by adding these sources?
A. Machine learning
B. Workflow orchestration
C. Data enrichment
D. Continuous integration
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
An organization discovers motherboards within the environment that appear to have been physically altered during the manufacturing process. Which of the following is the BEST course of action to mitigate the risk of this reoccurring?
A. Work with IT to replace the devices with the known-altered motherboards.
B. Perform an assessment of the firmware to determine any malicious modifications.
C. Conduct a trade study to determine if the additional risk constitutes further action.
D. Coordinate a supply chain assessment to ensure hardware authenticity.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
A security analyst needs to provide a copy of a hard drive for forensic analysis.
Which of the following would allow the analyst to perform the task?
A.

B.

C.

D.

正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
An analyst needs to understand how an attacker compromised a server. Which of the following procedures will best deliver the information that is necessary to reconstruct the steps taken by the attacker?
A. Scan the affected system with an anti-malware tool and check for vulnerabilities with a vulnerability scanner.
B. Clone the entire system and deploy it in a network segment built for tests and investigations while monitoring the system during a certain time frame.
C. Clone the server's hard disk and extract all the binary files, comparing hash signatures with malware databases.
D. Extract the server's system timeline, verifying hashes and network connections during a certain time frame.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
小西** -
御社の問題集CS0-002の解説が充実していて分かりやすく、試験への取り組み方が身についた気がします。自信を持って試験に臨めます。御社の問題集CS0-002の解説が充実していて分かりやすく、試験への取り組み方が身についた気がします。自信を持って試験に臨めます