Question 26

A security analyst's daily review of system logs and SIEM showed fluctuating patterns of latency.
During the analysis, the analyst discovered recent attempts of intrusion related to malware that overwrites the MBR. The facilities manager informed the analyst that a nearby construction project damaged the primary power lines, impacting the analyst's support systems. The electric company has temporarily restored power, but the area may experience temporary outages.
Which of the following issues the analyst focus on to continue operations?
  • Question 27

    A storage area network (SAN) was inadvertently powered off while power maintenance was being performed in a datacenter. None of the systems should have lost all power during the maintenance. Upon review, it is discovered that a SAN administrator moved a power plug when testing the SAN's fault notification features.
    Which of the following should be done to prevent this issue from reoccurring?
  • Question 28

    While analyzing logs from a WAF, a cybersecurity analyst finds the following:
    "GET /form.php?id=463225%2b%2575%256e%2569%256f%256e%2b%2573%2574%
    2box3133333731,1223,1224&name=&state=IL"
    Which of the following BEST describes what the analyst has found?
  • Question 29

    An analyst has been asked to provide feedback regarding the control required by a revised regulatory framework At this time, the analyst only needs to focus on the technical controls. Which of the following should the analyst provide an assessment of?
  • Question 30

    Alerts have been received from the SIEM, indicating infections on multiple computers. Base on threat characteristics, these files were quarantined by the host-based antivirus program. At the same time, additional alerts in the SIEM show multiple blocked URLs from the address of the infected computers; the URLs were classified as uncategorized. The domain location of the IP address of the URLs that were blocked is checked, and it is registered to an ISP in Russia. Which of the following steps should be taken NEXT?