Question 256

Two competing companies experienced similar attacks on their networks from various threat actors. To improve response times, the companies wish to share some threat intelligence about the sources and methods of attack.
Which of the following business documents would be BEST to document this engagement?
  • Question 257

    A security engineer has implemented an internal user access review tool so service teams can baseline user accounts and group memberships. The tool is functional and popular among its initial set of onboarded teams.
    However, the tool has not been built to cater to a broader set of internal teams yet. The engineer has sought feedback from internal stakeholders, and a list of summarized requirements is as follows:
    * The tool needs to be responsive so service teams can query it, and then perform an automated response action.
    * The tool needs to be resilient to outages so service teams can perform the user access review at any point in time and meet their own SLAs.
    * The tool will become the system-of-record for approval, reapproval, and removal life cycles of group memberships and must allow for data retrieval after failure.
    Which of the following need specific attention to meet the requirements listed above? (Choose three.)
  • Question 258

    Given the following:

    Which of the following vulnerabilities is present in the above code snippet?
  • Question 259

    A facilities manager requests approval to deploy a new key management system that integrates with logical network access controls to provide conditional access. The security analyst who is assessing the risk has no experience which the category of products. Which of the following is the FIRST step the analyst should take to begin the research?
  • Question 260

    A human resources manager at a software development company has been tasked with recruiting personnel for a new cyber defense division in the company. This division will require personnel to have high technology skills and industry certifications. Which of the following is the BEST method for this manager to gain insight into this industry to execute the task?