Câu 15: SPLK-5003: Splunk Certified Cybersecurity Defense Architect
An alert has generated for a malicious file tied to a previously unknown malware. In order to protect the integrity of the investigation, how can the response team automate collection of evidence?
Nội dung câu hỏi
An alert has generated for a malicious file tied to a previously unknown malware. In order to protect the integrity of the investigation, how can the response team automate collection of evidence?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Pull the file from the system and detonate in a sandbox.
- B. Pull the file directly from the system and store in a vault. — đáp án hiện tại
- C. Send the Indicators of Compromise to the law enforcement agency.
- D. Quarantine and shut down the system.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.
Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.