Question 111
An organization has recently recovered from an incident where a managed switch had been accessed and reconfigured without authorization by an insider.
The incident response team is working on developing a lessons learned report with recommendations.
Which of the following recommendations will BEST prevent the same attack from occurring in the future?
The incident response team is working on developing a lessons learned report with recommendations.
Which of the following recommendations will BEST prevent the same attack from occurring in the future?
Question 112
A company's marketing emails are either being found in a spam folder or not being delivered at all. The security analyst investigates the issue and discovers the emails in question are being sent on behalf of the company by a third party in1marketingpartners.com Below is the exiting SPP word:

Which of the following updates to the SPF record will work BEST to prevent the emails from being marked as spam or blocked?
A)

B)

C)

D)


Which of the following updates to the SPF record will work BEST to prevent the emails from being marked as spam or blocked?
A)

B)

C)

D)

Question 113
Which of the following BEST describes the primary role ol a risk assessment as it relates to compliance with risk-based frameworks?
Question 114
A security administrator needs to create an IDS rule to alert on FTP login attempts by root. Which of the following rules is the BEST solution?


Question 115
A security analyst needs to reduce the overall attack surface.
Which of the following infrastructure changes should the analyst recommend?
Which of the following infrastructure changes should the analyst recommend?