A security engineer would like to enhance the use of automation and orchestration within the SIEM.
Which of the following would be the primary benefit of this enhancement?
A. It increases complexity.A small business initially plans to open common communications ports (21, 22, 25, 80, 443) on its firewall to allow broad access to its screened subnet. However, their security consultant advises against this action.
Which of the following security principles is the consultant addressing?
A. Secure access service edgeIn order to strengthen a password and prevent a hacker from cracking it, a random string of 36 characters was added to the password.
Which of the following best describes this technique?
A. Key stretchingA systems administrator creates a script that validates OS version, patch levels, and installed applications when users log in.
Which of the following examples best describes the purpose of this script?
A. Resource scalingAn administrator wants to perform a risk assessment without using proprietary company information.
Which of the following methods should the administrator use to gather information?
A. Network scanningA business uses Wi-Fi with content filleting enabled. An employee noticed a coworker accessed a blocked sue from a work computer and reported the issue. While investigating the issue, a security administrator found another device providing internet access to certain employees.
Which of the following best describes the security risk?
A. The host-based security agent Is not running on all computers.A company wants to ensure secure remote access to its internal network. The company has only one public IP and would like to avoid making any changes to the current network setup.
Which of the following solutions would best accomplish this goal?
A. PATAn organization experienced a security breach that allowed an attacker to send fraudulent wire transfers from a hardened PC exclusively to the attacker's bank through remote connections. A security analyst is creating a timeline of events and has found a different PC on the network containing malware. Upon reviewing the command history, the analyst finds the following:
PS>.
\mimikatz.exe "sekurlsa::pth /user:localadmin /domain:corp-domain.com/ntlm:B4B9B02E1F29A3CF193EAB28C8D617D3F327 Which of the following best describes how the attacker gained access to the hardened PC?
A. The attacker created fileless malware that was hosted by the banking platform.Which of the following describes the understanding between a company and a client about what will be provided and the accepted time needed to provide the company with the resources?
A. SLAWhich of the following is a possible factor for MFA?
A. Something you exhibitNowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.