Question 476

A security administrator is addressing an issue with a legacy system that communicates data using an unencrypted protocol to transfer sensitive data to a third party. No software updates that use an encrypted protocol are available, so a compensating control is needed. Which of the following are the most appropriate for the administrator to suggest? (Select two.)
  • Question 477

    Which of the following can be used to identify potential attacker activities without affecting production servers?
  • Question 478

    Which of the following is most likely associated with introducing vulnerabilities on a corporate network by the deployment of unapproved software?
  • Question 479

    Which of the following is themostlikely outcome if a large bank fails an internal PCI DSS compliance assessment?
  • Question 480

    Which of the following objectives is best achieved by a tabletop exercise?