CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 10: 312-39V2: Certified SOC Analyst (CSA) v2

A Security Operations Center (SOC) analyst receives a high-priority alert indicating unusual user activity. An employee account is attempting to access company resources from a different country and outside of their normal working hours. This behavior raises concerns about potential account compromise or unauthorized…

Nội dung câu hỏi

A Security Operations Center (SOC) analyst receives a high-priority alert indicating unusual user activity. An employee account is attempting to access company resources from a different country and outside of their normal working hours. This behavior raises concerns about potential account compromise or unauthorized access to automate the initial response and quickly restrict access while further investigating the incident, which SOAR Playbook would be relevant to adapt and implement?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Deprovisioning Users SOAR Playbook — đáp án hiện tại
  2. B. Phishing Investigations SOAR Playbook
  3. C. Alert Enrichment SOAR Playbook
  4. D. Malware Containment SOAR Playbook

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề