CompTIA SY0-701 Practice Test - Questions Answers, Page 42
List of questions
Question 411
Which of the following phases of the incident response process attempts to minimize disruption?
Question 412
During a recent log review, an analyst discovers evidence of successful injection attacks. Which of the following will best address this issue?
Question 413
The physical security team at a company receives reports that employees are not displaying their badges. The team also observes employees tailgating at controlled entrances. Which of the following topics will the security team most likely emphasize in upcoming security training?
Question 414
An employee used a company's billing system to issue fraudulent checks. The administrator is looking for evidence of other occurrences of this activity. Which of the following should the administrator examine?
Question 415
Which of the following data states applies to data that is being actively processed by a database server?
Question 416
Which of the following is the most relevant reason a DPO would develop a data inventory?
Question 417
Which of the following definitions best describes the concept of log co-relation?
Question 418
Which of the following is a compensating control for providing user access to a high-risk website?
Question 419
Which of the following activities is the first stage in the incident response process?
Question 420
An administrator wants to perform a risk assessment without using proprietary company information. Which of the following methods should the administrator use to gather information?
Question