A security analyst is evaluating a SaaS application that the human resources department would like to implement. The analyst requests a SOC 2 report from the SaaS vendor.
Which of the following processes is the analyst most likely conducting?
A. Internal auditA security analyst and the management team are reviewing the organizational performance of a recent phishing campaign. The user click-through rate exceeded the acceptable risk threshold, and the management team wants to reduce the impact when a user clicks on a link in a phishing message.
Which of the following should the analyst do?
A. Place posters around the office to raise awareness of common phishing activities.A security analyst identifies an incident in the network.
Which of the following incident response activities would the security analyst perform next?
A. ContainmentAn organization experiences a cybersecurity incident involving a command-and-control server.
Which of the following logs should be analyzed to identify the impacted host? (Choose two.)
A. ApplicationA security team is addressing a risk associated with the attack surface of the organization's web application over port 443. Currently, no advanced network security capabilities are in place.
Which of the following would be best to set up? (Choose two.)
A. NIDSWhich of the following should a company use to provide proof of external network security testing?
A. Business impact analysisWhich of the following agreement types is used to limit external discussions?
A. BPAWhile conducting a business continuity tabletop exercise, the security team becomes concerned by potential impacts if a generator fails during failover.
Which of the following is the team most likely to consider in regard to risk management activities?
A. RPOAn MSSP manages firewalls for hundreds of clients.
Which of the following tools would be most helpful to create a standard configuration template in order to improve the efficiency of firewall changes?
A. SNMPThe Chief Information Security Officer wants to prevent exfiltration of sensitive information from employee cell phones when using public USB power charging stations.
Which of the following would be the BEST solution to Implement?
A. DLPNowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.