Free 2021 CompTIA CySA+ CS0-002 dumps are available by DumpsReview [Q22-Q38]

Share

Free 2021 CompTIA CySA+ CS0-002 dumps are available on Google Drive shared by DumpsReview

Welcome to download the newest DumpsReview CS0-002 PDF dumps: https://www.dumpsreview.com/CS0-002-exam-dumps-review.html ( 218  Q&As)

NEW QUESTION 22
An application development company released a new version of its software to the public. A few days after the release, the company is notified by end users that the application is notably slower, and older security bugs have reappeared in the new release. The development team has decided to include the security analyst during their next development cycle to help address the reported issues. Which of the following should the security analyst focus on to remedy the existing reported problems?

  • A. The security analyst should perform security regression testing during each application development cycle.
  • B. The security analyst should perform secure coding practices during each application development cycle.
  • C. The security analyst should perform end user acceptance security testing during each application development cycle.
  • D. The security analyst should perform application fuzzing to locate application vulnerabilities during each application development cycle.

Answer: A

 

NEW QUESTION 23
A database administrator contacts a security administrator to request firewall changes for a connection to a new internal application.
The security administrator notices that the new application uses a port typically monopolized by a virus.
The security administrator denies the request and suggests a new port or service be used to complete the application's task.
Which of the following is the security administrator practicing in this example?

  • A. Access control lists
  • B. Explicit deny
  • C. Port security
  • D. Implicit deny

Answer: A

 

NEW QUESTION 24
A company provides wireless connectivity to the internal network from all physical locations for company- owned devices. Users were able to connect the day before, but now all users have reported that when they connect to an access point in the conference room, they cannot access company resources. Which of the following BEST describes the cause of the problem?

  • A. The access point is a rogue device. Follow incident response procedures.
  • B. The network is not available. Escalate the issue to network support.
  • C. Expired DNS entries on users' devices. Request the affected users perform a DNS flush.
  • D. The access point is blocking access by MAC address. Disable MAC address filtering.

Answer: A

 

NEW QUESTION 25
An organization was alerted to a possible compromise after its proprietary data was found for sale on the Internet. An analyst is reviewing the logs from the next-generation UTM in an attempt to find evidence of this breach. Given the following output:

Which of the following should be the focus of the investigation?

  • A. 83hht23.org-int.org
  • B. sftp.org-dmz.org
  • C. webserver.org-dmz.org
  • D. ftps.bluemed.net

Answer: C

 

NEW QUESTION 26
A security analyst is building a malware analysis lab. The analyst wants to ensure malicious applications are not capable of escaping the virtual machines and pivoting to other networks.
To BEST mitigate this risk, the analyst should use .

  • A. a managed switch to segment the lab into a separate VLAN.
  • B. an 802.11ac wireless bridge to create an air gap.
  • C. an unmanaged switch to segment the environments from one another.
  • D. a firewall to isolate the lab network from all other networks.

Answer: D

 

NEW QUESTION 27
While reviewing web server logs, a security analyst notices the following code:

Which of the following would prevent this code from performing malicious actions?

  • A. Disabling the use of HTTP and requiring the use of HTTPS
  • B. Performing web application penetration testing
  • C. Installing a network firewall in front of the application
  • D. Requiring the application to use input validation

Answer: A

 

NEW QUESTION 28
A security analyst has determined the security team should take action based on the following log:

Which of the following should be used to improve the security posture of the system?

  • A. Increase password complexity requirements.
  • B. Upgrade the firewalls.
  • C. Enable login account auditing.
  • D. Limit the number of unsuccessful login attempts.

Answer: D

 

NEW QUESTION 29
Joe, an analyst, has received notice that a vendor who is coming in for a presentation will require access to a server outside the network. Currently, users are only able to access remote sites through a VPN connection. Which of the following should Joe use to BEST accommodate the vendor?

  • A. Turn off the firewall while the vendor is in the office, allowing access to the remote site.
  • B. Write a firewall rule to allow the vendor to have access to the remote site.
  • C. Set up a VPN account for the vendor, allowing access to the remote site.
  • D. Allow incoming IPSec traffic into the vendor's IP address.

Answer: C

 

NEW QUESTION 30
A security analyst is conducting traffic analysis following a potential web server breach.
The analyst wants to investigate client-side server errors.

Which of the following lines of this query output should be investigated further?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C

 

NEW QUESTION 31
An analyst performs a routine scan of a host using Nmap and receives the following output:

Which of the following should the analyst investigate FIRST?

  • A. Port 22
  • B. Port 80
  • C. Port 21
  • D. Port 23

Answer: D

 

NEW QUESTION 32
An information security analyst is compiling data from a recent penetration test and reviews the following output:

The analyst wants to obtain more information about the web-based services that are running on the target.
Which of the following commands would MOST likely provide the needed information?

  • A. tracert 10.79.95.173
  • B. ftpd 10.79.95.173.rdns.datacenters.com 443
  • C. ping -t 10.79.95.173.rdns.datacenters.com
  • D. telnet 10.79.95.173 443

Answer: A

 

NEW QUESTION 33
A user's computer has been running slowly when the user tries to access web pages. A security analyst runs the command netstat -aon from the command line and receives the following output:

Which of the following lines indicates the computer may be compromised?

  • A. Line 4
  • B. Line 3
  • C. Line 1
  • D. Line 6
  • E. Line 2
  • F. Line 5

Answer: B

 

NEW QUESTION 34
A computer has been infected with a virus and is sending out a beacon to command and control server through an unknown service. Which of the following should a security technician implement to drop the traffic going to the command and control server and still be able to identify the infected host through firewall logs?

  • A. Block ports and services
  • B. Sinkhole
  • C. Patches
  • D. Endpoint security

Answer: B

Explanation:
https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Configure-DNS-Sinkhole/ta- p/58891

 

NEW QUESTION 35
A software development company in the manufacturing sector has just completed the alpha version of its flagship application. The application has been under development for the past three years. The SOC has seen intrusion attempts made by indicators associated with a particular APT.
The company has a hot site location for COOP. Which of the following threats would most likely incur the BIGGEST economic impact for the company?

  • A. DDoS
  • B. ICS destruction
  • C. IPS evasion
  • D. IP theft

Answer: A

 

NEW QUESTION 36
A cybersecurity consultant found common vulnerabilities across the following services used by multiple servers at an organization: VPN, SSH, and HTTPS. Which of the following is the MOST likely reason for the discovered vulnerabilities?

  • A. Leaked PKI private key
  • B. Vulnerable version of OpenSSL
  • C. Common initialization vector
  • D. Weak level of encryption entropy
  • E. Vulnerable implementation of PEAP

Answer: D

 

NEW QUESTION 37
A security analyst discovers a vulnerability on an unpatched web server that is used for testing machine learning on Bing Data sets. Exploitation of the vulnerability could cost the organization $1.5 million in lost productivity. The server is located on an isolated network segment that has a 5% chance of being compromised. Which of the following is the value of this risk?

  • A. $1.5 million
  • B. $300.000
  • C. $75.000
  • D. $1.425 million

Answer: C

 

NEW QUESTION 38
......

Tested Material Used To CS0-002: https://www.dumpsreview.com/CS0-002-exam-dumps-review.html

Following are some new CS0-002 Real Exam Questions!: https://drive.google.com/open?id=1PwvHbi0kcvF8GYeLhowzJE_aNiPgpr8_