Question 606
A security operations center wants to implement a solution that can execute files to test for malicious activity.
The solution should provide a report of the files' activity against known threats.
Which of the following should the security operations center implement?
The solution should provide a report of the files' activity against known threats.
Which of the following should the security operations center implement?
Question 607
A company policy requires third-party suppliers to self-report data breaches within a specific time frame. Which of the following third-party risk management policies is the company complying with?
Question 608
Which of the following is required in order for an IDS and a WAF to be effective on HTTPS traffic?
Question 609
An organization regularly scans its infrastructure for missing security patches but is concerned about hackers gaining access to the scanner's account.
Which of the following would be BEST to minimize this risk?
Which of the following would be BEST to minimize this risk?
Question 610
A Chief Information Security Officer (CISO) is evaluating (he dangers involved in deploying a new ERP system tor the company. The CISO categorizes the system, selects the controls mat apply to the system, implements the controls, and then assesses the success of the controls before authorizing the system Which of the following is the CISO using to evaluate Hie environment for this new ERP system?
