Question 11

During a review of security controls, an analyst was able to connect to an external, unsecured FTP server from a workstation. The analyst was troubleshooting and reviewed the ACLs of the segment firewall the workstation is connected to:

Based on the ACLs above, which of the following explains why the analyst was able to connect to the FTP server?
  • Question 12

    A security analyst is conducting traffic analysis following a potential web server breach.
    The analyst wants to investigate client-side server errors.

    Which of the following lines of this query output should be investigated further?
  • Question 13

    In response to an audit finding, a company's Chief information Officer (CIO) instructed the security department to Increase the security posture of the vulnerability management program. Currency, the company's vulnerability management program has the following attributes:
    Which of the following would BEST Increase the security posture of the vulnerably management program?
  • Question 14

    A security analyst works for a biotechnology lab that is planning to release details about a new cancer treatment. The analyst has been instructed to tune the SIEM softvare and IPS in preparation for the announcement. For which of the following concerns will the analyst most likely be monitoring?
  • Question 15

    A security analyst implemented a solution that would analyze the attacks that the organization's firewalls failed to prevent. The analyst used the existing systems to enact the solution and executed the following command:
    $ sudo nc -1 -v -e maildaemon.py 25 > caplog.txt
    Which of the following solutions did the analyst implement?