Question 221

Company A and Company D ate merging Company A's compliance reports indicate branch protections are not in place A security analyst needs to ensure that potential threats to the software development life cycle are addressed. Which of the following should me analyst cons<der when completing this basic?
  • Question 222

    A security analyst isreviewing the following event timeline from an COR solution:

    Which of the following most likely has occurred and needs to be fixed?
  • Question 223

    A company is moving several of its systems to a multicloud environment and wants to automate the creation of the new servers using a standard image. Which of the following should the company implement to best support this goal?
  • Question 224

    You are a security analyst tasked with interpreting an Nmap scan output from company's privileged network.
    The company's hardening guidelines indicate the following:
    There should be one primary server or service per device.
    Only default ports should be used.
    Non-secure protocols should be disabled.
    INSTRUCTIONS
    Using the Nmap output, identify the devices on the network and their roles, and any open ports that should be closed.
    For each device found by Nmap, add a device entry to the Devices Discovered list, with the following information:
    The IP address of the device
    The primary server or service of the device (Note that each IP should by associated with one service/port only) The protocol(s) that should be disabled based on the hardening guidelines (Note that multiple ports may need to be closed to comply with the hardening guidelines) If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

    Question 225

    An organization wants to create a threat model to identity vulnerabilities in its infrastructure. Which of the following, should be prioritized first?