CompTIA SY0-701 Practice Test - Questions Answers, Page 42
List of questions
Question 411

Which of the following phases of the incident response process attempts to minimize disruption?
Question 412

During a recent log review, an analyst discovers evidence of successful injection attacks. Which of the following will best address this issue?
Question 413

The physical security team at a company receives reports that employees are not displaying their badges. The team also observes employees tailgating at controlled entrances. Which of the following topics will the security team most likely emphasize in upcoming security training?
Question 414

An employee used a company's billing system to issue fraudulent checks. The administrator is looking for evidence of other occurrences of this activity. Which of the following should the administrator examine?
Question 415

Which of the following data states applies to data that is being actively processed by a database server?
Question 416

Which of the following is the most relevant reason a DPO would develop a data inventory?
Question 417

Which of the following definitions best describes the concept of log co-relation?
Question 418

Which of the following is a compensating control for providing user access to a high-risk website?
Question 419

Which of the following activities is the first stage in the incident response process?
Question 420

An administrator wants to perform a risk assessment without using proprietary company information. Which of the following methods should the administrator use to gather information?
Question