List of questions
Related questions
Question 291 - CS0-003 discussion
A security analyst has received an incident case regarding malware spreading out of control on a customer's network. The analyst is unsure how to respond. The configured EDR has automatically obtained a sample of the malware and its signature. Which of the following should the analyst perform next to determine the type of malware, based on its telemetry?
A.
Cross-reference the signature with open-source threat intelligence.
B.
Configure the EDR to perform a full scan.
C.
Transfer the malware to a sandbox environment.
D.
Log in to the affected systems and run necstat.
Your answer:
0 comments
Sorted by
Leave a comment first