Weekend Sale Special - 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: big75certs

CompTIA CS0-004 Questions Answers

Page: 5 / 6
Total 82 questions

CompTIA Cybersecurity Analyst CySA+ V4 (New Version) Questions and Answers

Question 17

A security architect reviews a report from a third-party incident response consultant and observes the following:

Which of the following frameworks did the consultant use to perform analysis?

Options:

A.

Spoofing, tampering, repudiation, information disclosure, denial of service, elevation of privilege (STRIDE)

B.

MITRE ATT & CK

C.

Diamond Model of Intrusion Analysis

D.

National Institute of Standards and Technology (NIST) Cybersecurity Framework

E.

Cyber Kill Chain

Question 18

An analyst reviews the following log entries:

Which of the following conclusions should the analyst reach? (Choose two.)

Options:

A.

Host ws-57 is performing a network scan against dc-1.

B.

Domain Controller dc-1 is performing a network scan against ws-57.

C.

Host ws-57 delivered a phishing email via Simple Mail Transfer Protocol.

D.

Host ws-57 is communicating on a service using a non-standard port.

E.

Domain Controller dc-1 is infected with ransomware and initiating connections with ws-57.

F.

Domain Controller dc-1 is communicating using a non-standard port.

Question 19

A security analyst analyzes the output of a web application access log for a company based in the United States.

Given the following output:

Which of the following users should be investigated first?

Options:

A.

jschott

B.

dmann

C.

mschultz

D.

tlindy

Question 20

Which of the following describes the main benefits of MITRE ATT & CK Navigator?

Options:

A.

Replicating adversary behavior and blocking gaps in defenses

B.

Monitoring adversary behavior and performing malware reverse engineering

C.

Responding to adversary behavior and building security defense tools

D.

Understanding adversary behavior and identifying gaps in defenses

Page: 5 / 6
Total 82 questions