CompTIA CS0-004 - CompTIA CySA+ V4 Exam

Question #6 (Topic: Topic 1, Security Operations )
A public threat intelligence report includes indicators of compromise (IoCs) for threat actors. The threat actors are exploiting a zero-day vulnerability that the vendor has not fixed. Which of the following techniques should be used until a patch is available?
A. Sinkholing B. Eradication techniques C. Continuous monitoring D. Evidence acquisition
Answer: C
Question #7 (Topic: Topic 1, Security Operations )
The Chief Information Security Officer wants to improve internal security measures by continuously validating and verifying access to the production environment. Which of the following concepts best describes this practice?
A. Secure access service edge B. Next-generation firewall C. Zero Trust D. Privileged access management
Answer: C
Question #8 (Topic: Topic 1, Security Operations )
Which of the following allows an organization to leverage AI in various forms while protecting business objectives and data?
A. Usage policies B. Prompt engineering C. Non-disclosure agreement D. Incident response policy
Answer: A
Question #9 (Topic: Topic 1, Security Operations )
A security operations center analyst is using the command line to display specific traffic. The analyst uses the following command:
$tshark -r file.pcap -Y "http or udp"
Which of the following will the command line display?
A. Encrypted web requests and Domain Name System (DNS) traffic B. Unencrypted web requests and DNS traffic C. Neither encrypted nor unencrypted web and DNS traffic D. Both encrypted and unencrypted web and DNS traffic
Answer: B
Question #10 (Topic: Topic 1, Security Operations )
Which of the following network architectures would best implement a perimeter-less network topology?
A. Hybrid cloud networks B. Secure access service edge C. Cloud-native computing D. Content delivery networks
Answer: B
Download Exam
Page: 2 / 17
Total 82 questions