PA - D488 EXAM LATEST
QUESTIONS AND VERIFED
CORRECT ANSWERS
GRADED A+100%
GUARANTEED PASS
A healthcare company needs to ensure that medical researchers cannot inadvertently share
protected health information (PHI) data from medical records. What is the best solution? -
CORRECT ANSWER-Anonymization
A security team has been tasked with mitigating the risk of stolen credentials after a recent
breach. The solution must isolate the use of privileged accounts. In the future, administrators
must request access to mission-critical services before they can perform their tasks. What is the
best solution? - CORRECT ANSWER-Privileged access management (PAM)
A global manufacturing company is moving its applications to the cloud. The security team has
been tasked with hardening the access controls for a corporate web application that was
recently migrated. End users should be granted access to different features based on their
locations and departments. Which access control solution should be implemented? - CORRECT
ANSWER-Attribute-based access control (ABAC)
A team of developers is building a new corporate web application. The security team has stated
that the application must authenticate users through two separate channels of communication.
Which type of authentication method should the developers include when building the
application? - CORRECT ANSWER-Out-of-band authentication
, An IT organization is implementing a hybrid cloud deployment. Users should be able to sign in to
all corporate resources using their email addresses as their usernames, regardless of whether
they are accessing an application on-premises or in the cloud. Which solution meets this
requirement? - CORRECT ANSWER-Single sign-on (SSO)
The security team has been tasked with implementing a secure authorization protocol for its
web applications. Which of the following protocols provides the best method for securely
authenticating users and granting access? - CORRECT ANSWER-Open Authentication (OAuth)
An IT team is preparing the network for a hybrid cloud deployment. A security analyst recently
discovered that the firmware of a router in the core data center has been compromised.
According to the analyst, the attack occurred over a year ago without being detected. Which
type of threat actor is the most likely cause of the attack? - CORRECT ANSWER-Advanced
persistent threat
The security operations center (SOC) team just received a notification that multiple
vulnerabilities are present in the codebase of a corporate application. Which threat type is most
likely in this scenario? - CORRECT ANSWER-Supply chain
The security operations center (SOC) team for a global company is planning an initiative to
defend against security breaches. Leadership wants the team to monitor for threats against the
organization's data, credentials, and brand reputation by scanning networks that can not be
accessed via search engines. Which type of network should be scanned based on the
requirements? - CORRECT ANSWER-Deep web
An electric power and water utility company has recently added a cybersecurity division. The
security operations center (SOC) team has been tasked with leveraging an investigative
framework that can accurately assess the motives, means, and opportunities associated with
common security attacks. Which framework should be implemented? - CORRECT ANSWER-
Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK) for industrial control
systems (ICS)
QUESTIONS AND VERIFED
CORRECT ANSWERS
GRADED A+100%
GUARANTEED PASS
A healthcare company needs to ensure that medical researchers cannot inadvertently share
protected health information (PHI) data from medical records. What is the best solution? -
CORRECT ANSWER-Anonymization
A security team has been tasked with mitigating the risk of stolen credentials after a recent
breach. The solution must isolate the use of privileged accounts. In the future, administrators
must request access to mission-critical services before they can perform their tasks. What is the
best solution? - CORRECT ANSWER-Privileged access management (PAM)
A global manufacturing company is moving its applications to the cloud. The security team has
been tasked with hardening the access controls for a corporate web application that was
recently migrated. End users should be granted access to different features based on their
locations and departments. Which access control solution should be implemented? - CORRECT
ANSWER-Attribute-based access control (ABAC)
A team of developers is building a new corporate web application. The security team has stated
that the application must authenticate users through two separate channels of communication.
Which type of authentication method should the developers include when building the
application? - CORRECT ANSWER-Out-of-band authentication
, An IT organization is implementing a hybrid cloud deployment. Users should be able to sign in to
all corporate resources using their email addresses as their usernames, regardless of whether
they are accessing an application on-premises or in the cloud. Which solution meets this
requirement? - CORRECT ANSWER-Single sign-on (SSO)
The security team has been tasked with implementing a secure authorization protocol for its
web applications. Which of the following protocols provides the best method for securely
authenticating users and granting access? - CORRECT ANSWER-Open Authentication (OAuth)
An IT team is preparing the network for a hybrid cloud deployment. A security analyst recently
discovered that the firmware of a router in the core data center has been compromised.
According to the analyst, the attack occurred over a year ago without being detected. Which
type of threat actor is the most likely cause of the attack? - CORRECT ANSWER-Advanced
persistent threat
The security operations center (SOC) team just received a notification that multiple
vulnerabilities are present in the codebase of a corporate application. Which threat type is most
likely in this scenario? - CORRECT ANSWER-Supply chain
The security operations center (SOC) team for a global company is planning an initiative to
defend against security breaches. Leadership wants the team to monitor for threats against the
organization's data, credentials, and brand reputation by scanning networks that can not be
accessed via search engines. Which type of network should be scanned based on the
requirements? - CORRECT ANSWER-Deep web
An electric power and water utility company has recently added a cybersecurity division. The
security operations center (SOC) team has been tasked with leveraging an investigative
framework that can accurately assess the motives, means, and opportunities associated with
common security attacks. Which framework should be implemented? - CORRECT ANSWER-
Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK) for industrial control
systems (ICS)