CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 59: CAS-004: CompTIA Advanced Security Practitioner (CASP+) CAS-004

A home automation company just purchased and installed tools for its SOC to enable incident identification and response on software the company develops. The company would like to prioritize defenses against the following attack scenarios: ✑ Unauthorized insertions into application development environments ✑ Authorize…

Nội dung câu hỏi

A home automation company just purchased and installed tools for its SOC to enable incident identification and response on software the company develops. The company would like to prioritize defenses against the following attack scenarios: ✑ Unauthorized insertions into application development environments ✑ Authorized insiders making unauthorized changes to environment configurationsWhich of the following actions will enable the data feeds needed to detect these types of attacks on development environments? (Choose two.)

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Perform static code analysis of committed code and generate summary reports.
  2. B. Implement an XML gateway and monitor for policy violations.
  3. C. Monitor dependency management tools and report on susceptible third-party libraries.
  4. D. Install an IDS on the development subnet and passively monitor for vulnerable services.
  5. E. Model user behavior and monitor for deviations from normal. — đáp án hiện tại
  6. F. Continuously monitor code commits to repositories and generate summary logs. — đáp án hiện tại

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề