Exam Name: | CompTIA CySA+ Certification Exam (CS0-002) | ||
Exam Code: | CS0-002 Dumps | ||
Vendor: | CompTIA | Certification: | CompTIA CySA+ |
Questions: | 372 Q&A's | Shared By: | edison |
Which of the following is the best method to ensure secure boot UEFI features are enabled to prevent boot malware?
The incident response team is working with a third-party forensic specialist to investigate the root cause of a recent intrusion An analyst was asked to submit sensitive network design details for review The forensic specialist recommended electronic delivery for efficiency but email was not an approved communication channel to send network details Which of the following BEST explains the importance of using a secure method of communication during incident response?
A manufacturing company uses a third-party service provider for Tier 1 security support. One of the requirements is that the provider must only source talent from its own country due to geopolitical and national security interests. Which of the following can the manufacturing company implement to ensure the third-party service provider meets this requirement?
A security analyst is concerned about sensitive data living on company file servers following a zero-day attack that nearly resulted in a breach of millions of customer records. The after action report indicates a lack of controls around the file servers that contain sensitive data. Which of the following DLP considerations would best help the analyst to classify and address the sensitive data on the file servers?