ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 71 - CS0-003 discussion

Report
Export

A cybersecurity analyst notices unusual network scanning activity coming from a country that the company does not do business with. Which of the following is the best mitigation technique?

A.
Geoblock the offending source country
Answers
A.
Geoblock the offending source country
B.
Block the IP range of the scans at the network firewall.
Answers
B.
Block the IP range of the scans at the network firewall.
C.
Perform a historical trend analysis and look for similar scanning activity.
Answers
C.
Perform a historical trend analysis and look for similar scanning activity.
D.
Block the specific IP address of the scans at the network firewall
Answers
D.
Block the specific IP address of the scans at the network firewall
Suggested answer: A

Explanation:

Geoblocking is the best mitigation technique for unusual network scanning activity coming from a country that the company does not do business with, as it can prevent any potential attacks or data breaches from that country. Geoblocking is the practice of restricting access to websites or services based on geographic location, usually by blocking IP addresses associated with a certain country or region. Geoblocking can help reduce the overall attack surface and protect against malicious actors who may be trying to exploit vulnerabilities or steal information. The other options are not as effective as geoblocking, as they may not block all the possible sources of the scanning activity, or they may not address the root cause of the problem. Official

Reference:

https://www.blumira.com/geoblocking/

https://www.avg.com/en/signal/geo-blocking

asked 02/10/2024
Renier Janse van Rensburg
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first