CYSA Exam Set 1 with all Correct & 100% Verified Answers |
Actual Complete Exam |Already Graded A+
1. Which of the following is the company's MFA policy
software de-velopment process by to prohibit the use of
which function, us-ability, and short message service
scenarios are tested against a (SMS) tokens. The Chief
known set of base requirements?
A. Security regression testing
B. Code review
C. User acceptance testing
D. Stress testing
2. A security analyst discovers the
following firewall log entries during
an incident:
https://www.examtopics.com/ex-
ams/comptia/cs0-002/view/1/
Q2
Which of the following is MOST
likely oc-curring?
A. Banner grabbing
B. Port scanning
C. Beaconing
D. Data exfiltration
3. A security analyst is revising a
, CYSA Exam Set 1 with all Correct & 100% Verified Answers |
Actual Complete Exam |Already Graded A+
C
Individual units or software components are integrated and
then tested to ensure proper functionality.
Users are asked to validate whether it meets the business
needs and usability require-ments
Ideally UAT should have a formal test plan that involves
examples of all of the common business processes that the
users of the ap-plication will perform.
pg. 451 B.
Same src/dest and ditterent ports. This is typ-ical SYN port
scanning, most beacons will use specific ports and will not
show this type of behavior.
beaconing - continuous cadence (predeter-mined
asynchronous interval) of communica-tion between two
systems.
D
Standard SMS is not and will never be
, CYSA Exam Set 1 with all Correct & 100% Verified Answers |
Actual Complete Exam |Already Graded A+
Information Officer has questioned this end-to-end encrypted. SMS
encryption is
decision and asked for justification. Which performed wholly by mobile
carriers who typ-
of the following should the ically use weak encryption such as
analyst pro-vide as justification CDMA or GSM. SMS messages are
for the new policy? sent in plain text,
A.SMS relies on untrusted, third-party car- meaning anyone snooping on
traflc can in-
rier networks. tercept and read them.
B. SMS tokens are limited to eight
numer-ical characters. https://techcrunch.com/2018/12/25/
C. SMS is not supported on all cyber-security-101-guide-encrypted-
handheld devices in use. messag-
D.SMS is a cleartext protocol and does ing-apps/
not support encryption.
4. During an incident response
procedure, a security analyst A. Second best D.
collects a hard drive to analyze a
possible vector of compromise. *"Strings" grabs and lists Strings of
charac-
There is a Linux swap partition on the hard ters in a file, making it easy to
notice hu-
drive that needs to be checked. man-readable words and phrases.
Which of the following should the
*"dd"
copy can be used to create a bit-by-bit
analyst use to
human-readable content from the
extract hu- of a partition, but it does not
partition? D. dd
A. strings
B. head
C. fsstat 5. A consultant is
, CYSA Exam Set 1 with all Correct & 100% Verified Answers |
Actual Complete Exam |Already Graded A+
evaluating multiple threat
intelligence feeds to assess potential man-readable conten
risks for a client. Which of the
You may still be able to pull some
following is the BEST approach for
hu-man-readable text out using a
the consultant to con-sider when
utility like
modeling the client's attack
strings on a Linux system—a useful
forensic trick used by many incident
responders.
C. A second best. C makes more sense.
Actual Complete Exam |Already Graded A+
1. Which of the following is the company's MFA policy
software de-velopment process by to prohibit the use of
which function, us-ability, and short message service
scenarios are tested against a (SMS) tokens. The Chief
known set of base requirements?
A. Security regression testing
B. Code review
C. User acceptance testing
D. Stress testing
2. A security analyst discovers the
following firewall log entries during
an incident:
https://www.examtopics.com/ex-
ams/comptia/cs0-002/view/1/
Q2
Which of the following is MOST
likely oc-curring?
A. Banner grabbing
B. Port scanning
C. Beaconing
D. Data exfiltration
3. A security analyst is revising a
, CYSA Exam Set 1 with all Correct & 100% Verified Answers |
Actual Complete Exam |Already Graded A+
C
Individual units or software components are integrated and
then tested to ensure proper functionality.
Users are asked to validate whether it meets the business
needs and usability require-ments
Ideally UAT should have a formal test plan that involves
examples of all of the common business processes that the
users of the ap-plication will perform.
pg. 451 B.
Same src/dest and ditterent ports. This is typ-ical SYN port
scanning, most beacons will use specific ports and will not
show this type of behavior.
beaconing - continuous cadence (predeter-mined
asynchronous interval) of communica-tion between two
systems.
D
Standard SMS is not and will never be
, CYSA Exam Set 1 with all Correct & 100% Verified Answers |
Actual Complete Exam |Already Graded A+
Information Officer has questioned this end-to-end encrypted. SMS
encryption is
decision and asked for justification. Which performed wholly by mobile
carriers who typ-
of the following should the ically use weak encryption such as
analyst pro-vide as justification CDMA or GSM. SMS messages are
for the new policy? sent in plain text,
A.SMS relies on untrusted, third-party car- meaning anyone snooping on
traflc can in-
rier networks. tercept and read them.
B. SMS tokens are limited to eight
numer-ical characters. https://techcrunch.com/2018/12/25/
C. SMS is not supported on all cyber-security-101-guide-encrypted-
handheld devices in use. messag-
D.SMS is a cleartext protocol and does ing-apps/
not support encryption.
4. During an incident response
procedure, a security analyst A. Second best D.
collects a hard drive to analyze a
possible vector of compromise. *"Strings" grabs and lists Strings of
charac-
There is a Linux swap partition on the hard ters in a file, making it easy to
notice hu-
drive that needs to be checked. man-readable words and phrases.
Which of the following should the
*"dd"
copy can be used to create a bit-by-bit
analyst use to
human-readable content from the
extract hu- of a partition, but it does not
partition? D. dd
A. strings
B. head
C. fsstat 5. A consultant is
, CYSA Exam Set 1 with all Correct & 100% Verified Answers |
Actual Complete Exam |Already Graded A+
evaluating multiple threat
intelligence feeds to assess potential man-readable conten
risks for a client. Which of the
You may still be able to pull some
following is the BEST approach for
hu-man-readable text out using a
the consultant to con-sider when
utility like
modeling the client's attack
strings on a Linux system—a useful
forensic trick used by many incident
responders.
C. A second best. C makes more sense.