CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 38: CAS-004: CompTIA Advanced Security Practitioner (CASP+) CAS-004

A security analyst notices a number of SIEM events that show the following activity: Which of the following response actions should the analyst take FIRST?

Nội dung câu hỏi

A security analyst notices a number of SIEM events that show the following activity: Which of the following response actions should the analyst take FIRST?

Minh họa câu hỏi

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Disable powershell.exe on all Microsoft Windows endpoints.
  2. B. Restart Microsoft Windows Defender.
  3. C. Configure the forward proxy to block 40.90.23.154. — đáp án hiện tại
  4. D. Disable local administrator privileges on the endpoints.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề