ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 411 - CAS-004 discussion

Report
Export

A security administrator needs to implement a security solution that will

* Limit the attack surface in case of an incident

* Improve access control for external and internal network security.

* Improve performance with less congestion on network traffic

Which of the following should the security administrator do?

A.
Integrate threat intelligence feeds into the FIM
Answers
A.
Integrate threat intelligence feeds into the FIM
B.
Update firewall rules to match new IP addresses in use
Answers
B.
Update firewall rules to match new IP addresses in use
C.
Configure SIEM dashboards to provide alerts and visualizations
Answers
C.
Configure SIEM dashboards to provide alerts and visualizations
D.
Deploy DLP rules based on updated Pll formatting
Answers
D.
Deploy DLP rules based on updated Pll formatting
Suggested answer: B

Explanation:

Updating firewall rules to match new IP addresses in use will help to limit the attack surface in case of an incident by ensuring only legitimate traffic is allowed. It can also improve access control for external and internal network security by ensuring that only authorized entities can access certain resources, and may improve network performance by reducing unnecessary traffic (less congestion).

asked 02/10/2024
Wissam Aoun
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first