A vulnerability manager analyzes suspicious data after scanning a database. Which of the following should the manager do to prioritize the remediation tasks?
A. Perform an assessment in the command line and determine if there are true or false positives.
B. Conduct further analysis and send the findings report to the incident response team.
C. Apply compensating controls and advise an analyst to document the problem in a risk register.
D. Identify the impact level and create a ticket that includes the time frame for fixing the issue.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
During an incident, analysts need to rapidly investigate by the investigation and leadership teams. Which of the following best describes how PII should be safeguarded during an incident?
A. Implement data encryption and create a standardized procedure for deleting data that is no longer needed.
B. Implement data encryption and close the data so only the company has access.
C. Ensure permissions are limited in the investigation team and encrypt the data.
D. Ensure that permissions are open only to the company.
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
An analyst has been asked to validate the potential risk of a new ransomware campaign that the Chief Financial Officer read about in the newspaper. The company is a manufacturer of a very small spring used in the newest fighter jet and is a critical piece of the supply chain for this aircraft. Which of the following would be the best threat intelligence source to learn about this new campaign?
A. Cybersecuritv incident response team
B. Deep/dark web
C. Information sharing organization
D. Blogs/forums
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
A security analyst has found the following suspicious DNS traffic while analyzing a packet capture:
* DNS traffic while a tunneling session is active.
* The mean time between queries is less than one second.
* The average query length exceeds 100 characters.
Which of the following attacks most likely occurred?
A. DNS poisoning
B. DNS zone transfer
C. DNS exfiltration
D. DNS spoofing
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
An incident responder was able to recover a binary file through the network traffic. The binary file was also found in some machines with anomalous behavior. Which of the following processes most likely can be performed to understand the purpose of the binary file?
A. Traffic analysis
B. Machine isolation
C. Reverse engineering
D. File debugging
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
A security analyst performs forensic analysis of a user's computer. The analyst immediately orders the user to leave the computer powered on and not interact with it until further notice. Which of the following best describes the reason for the analyst's orders?
A. To validate that the security tools are installed and up to date
B. To preserve artifacts related to the incident
C. To ensure there is a legal hold on the computer
D. To prevent loss of sensitive data due to misuse
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
1110 お客様のコメント
クリック」





Shihono -
CompTIAの問題集は、重要な用語や概念は、より深く理解できるようにイラスト図解しているところだ好きです。