A company is expanding its threat surface program and allowing individuals to security test the company’s internet-facing application. The company will compensate researchers based on the vulnerabilities discovered. Which of the following best describes the program the company is setting up?
Answer : B
Which of the following threat actors is the most likely to use large financial resources to attack critical systems located in other countries?
Answer : C
Which of the following enables the use of an input field to run commands that can view or manipulate data?
Answer : D
Employees in the research and development business unit receive extensive training to ensure they understand how to best protect company data. Which of the following is the type of data these employees are most likely to use in day-to-day work activities?
Answer : B
A company has begun labeling all laptops with asset inventory stickers and associating them with employee IDs. Which of the following security benefits do these actions provide? (Choose two.)
Answer : AF
A technician wants to improve the situational and environmental awareness of existing users as they transition from remote to in-office work. Which of the following is the best option?
Answer : C
A newly appointed board member with cybersecurity knowledge wants the board of directors to receive a quarterly report detailing the number of incidents that impacted the organization. The systems administrator is creating a way to present the data to the board of directors. Which of the following should the systems administrator use?
Answer : D
A systems administrator receives the following alert from a file integrity monitoring tool:
The hash of the cmd.exe file has changed.
The systems administrator checks the OS logs and notices that no patches were applied in the last two months. Which of the following most likely occurred?
Answer : D
Which of the following roles, according to the shared responsibility model, is responsible for securing the company’s database in an IaaS model for a cloud environment?
Answer : A
A client asked a security company to provide a document outlining the project, the cost, and the completion time frame. Which of the following documents should the company provide to the client?
Answer : D
A security team is reviewing the findings in a report that was delivered after a third party performed a penetration test. One of the findings indicated that a web application form field is vulnerable to cross-site scripting. Which of the following application security techniques should the security analyst recommend the developer implement to prevent this vulnerability?
Answer : C
Which of the following must be considered when designing a high-availability network? (Choose two).
Answer : AD
A technician needs to apply a high-priority patch to a production system. Which of the following steps should be taken first?
Answer : C
Which of the following describes the reason root cause analysis should be conducted as part of incident response?
Answer : D
Which of the following is the most likely outcome if a large bank fails an internal PCI DSS compliance assessment?
Answer : B
Have any questions or issues ? Please dont hesitate to contact us