Question 41

An engineer discovered a breach, identified the threat's entry point, and removed access. The engineer was able to identify the host, the IP address of the threat actor, and the application the threat actor targeted. What is the next step the engineer should take according to the NIST SP 800-61 Incident handling guide?
  • Question 42

    Refer to the exhibit.

    What is occurring within the exhibit?
  • Question 43

    Refer to the exhibit.

    Which two elements in the table are parts of the 5-tuple? (Choose two.)
  • Question 44

    Refer to the exhibit.

    What does the output indicate about the server with the IP address 172.18.104.139?
  • Question 45

    Which two elements are used for profiling a network? (Choose two.)