Question 71

An organization is implementing a new identity and access management architecture with the following objectives:
Supporting MFA against on-premises infrastructure
Improving the user experience by integrating with SaaS applications
Applying risk-based policies based on location
Performing just-in-time provisioning
Which of the following authentication protocols should the organization implement to support these requirements?
  • Question 72

    A security engineer is assessing the security controls of loT systems that are no longer supported for updates and patching. Which of the following is the best mitigation for defending these loT systems?
  • Question 73

    A security administrator has been tasked with hardening a domain controller against lateral movement attacks. Below is an output of running services:

    Which of the following configuration changes must be made to complete this task?
  • Question 74

    A security analyst discovered that a database administrator's workstation was compromised by malware. After examining the Jogs, the compromised workstation was observed connecting to multiple databases through ODBC. The following query behavior was captured:

    Assuming this query was used to acquire and exfiltrate data, which of the following types of data was compromised, and what steps should the incident response plan contain?
  • Question 75

    A large, multinational company currently has two separate databases.
    One is used for ERP while the second is used for CRM To consolidate services and infrastructure, it is proposed to combine the databases.
    The company's compliance manager is asked to review the proposal and is concerned about this integration.
    Which of the following would pose the MOST concern to the compliance manager?