CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 40: Google Cloud Professional Security Operations Engineer

You are a security analyst at an organization that uses Google Security Operations (SecOps). You notice suspicious login attempts on several user accounts. You need to determine whether these attempts are part of a coordinated attack as quickly as possible. What action should you take first?

Nội dung câu hỏi

You are a security analyst at an organization that uses Google Security Operations (SecOps). You notice suspicious login attempts on several user accounts. You need to determine whether these attempts are part of a coordinated attack as quickly as possible. What action should you take first?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Enable default curated detections to automatically block suspicious IP addresses.
  2. B. Use UDM Search to query historical logs for recent IOCs associated with the suspicious login attempts.
  3. C. Remove user accounts that have repeated invalid login attempts.
  4. D. Look for correlations across impacted users in the Risk Analytics dashboard. — đáp án hiện tại

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề