ExamGecko
Question list
Search
Search

Question 103 - CISM discussion

Report
Export

Which of the following is the BEST method to protect against emerging advanced persistent threat (APT) actors?

A.
Providing ongoing training to the incident response team
Answers
A.
Providing ongoing training to the incident response team
B.
Implementing proactive systems monitoring
Answers
B.
Implementing proactive systems monitoring
C.
Implementing a honeypot environment
Answers
C.
Implementing a honeypot environment
D.
Updating information security awareness materials
Answers
D.
Updating information security awareness materials
Suggested answer: B

Explanation:

= Proactive systems monitoring is the best method to protect against emerging APT actors because it can help detect and respond to anomalous or malicious activities on the network, such as unauthorized access, data exfiltration, malware infection, or command and control communication. Proactive systems monitoring can also help identify the source, scope, and impact of an APT attack, as well as provide evidence for forensic analysis and remediation. Proactive systems monitoring can include tools such as intrusion detection and prevention systems (IDPS), security information and event management (SIEM) systems, network traffic analysis, endpoint detection and response (EDR), and threat intelligence feeds.

Reference= CISM Review Manual 15th Edition, page 201-2021; CISM Practice Quiz, question 922

asked 01/10/2024
Bipindra Shrestha
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first