ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 247 - CAS-004 discussion

Report
Export

During a phishing exercise, a few privileged users ranked high on the failure list. The enterprise would like to ensure that privileged users have an extra security-monitoring control in place. Which of the following Is the MOST

likely solution?

A.
A WAF to protect web traffic
Answers
A.
A WAF to protect web traffic
B.
User and entity behavior analytics
Answers
B.
User and entity behavior analytics
C.
Requirements to change the local password
Answers
C.
Requirements to change the local password
D.
A gap analysis
Answers
D.
A gap analysis
Suggested answer: B

Explanation:

User and entity behavior analytics (UEBA) is the best solution to monitor and detect unusual or malicious activity by privileged users who failed the phishing exercise. UEBA uses machine learning and behavioral analytics to establish a baseline of normal activity and identify anomalies that indicate potential threats. UEBA can help detect compromised credentials, insider threats, and advanced persistent threats that may evade traditional security solutions.The other options are either irrelevant or less effective for the given scenario.

asked 02/10/2024
Ludovic HEZON
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first