CySA Missed 2 Exam Questions and
Answers with Verified Solutions | Latest
Updated 2026
There are different variations of Z Shell (zsh)
shells that are used in Linux and
Unix
operating systems and each has
its
own syntax.
Which of the following shell
command processor types
supports
many plugins to expand its
functionality?
Bourne Again Shell (bash)
Korn Shell (ksh)
C Shell (tcsh)
Z Shell (zsh)
What is the process of determining Impact analysis
the extent of damage/potential
damage from a security event
known
as?
Intrusion analysis
Damage analysis
Trend analysis
Impact analysis
,Data loss prevention (DLP) Print blocking
systems Restricted virtual desktop infrastructure
detect and prevent users from (VDI)
storing information on implementation
unauthorized Clipboard privacy controls
systems or transmitting
information
over unauthorized networks.
Which of the following are
examples
of DLP systems an organization
can
set for users? (Select three.)
answer
Monitoring employee activity
connected with sensitive data
Print blocking
Restricted virtual desktop
infrastructure (VDI)
implementation
Clipboard privacy controls
Enforcing use of external media
Storing all sensitive data in one
secure place
Implementing the principle of least
privilege
,A large information technology Mitigation
department is preparing for an
audit
by their cyber security insurance
company.
While reviewing some vulnerability
reports in their security information
and event management (SIEM)
tool,
the department found critical
vulnerabilities and steps to resolve
them.
In this type of report, what does
this
finding represent?
answer
Prioritization
Vulnerabilities
Mitigation
Risk score
, A security analyst at a financial Identifying threat indicators and potential
institution is responsible for vulnerabilities
identifying active threats to the
organization's network. The
analyst
uses the Open Source Security
Testing Methodology Manual
(OSSTMM) and the Open Web
Application Security Project
(OWASP) Testing Guide to
monitor
and analyze these threats
effectively.
The analyst receives an alert
about a
potential spear-phishing attack
targeting employees.
When using these methodologies
to
assess the situation, what should
be
the analyst's primary focus?
Identifying threat indicators and
potential vulnerabilities
Implementing security controls
based on OSSTMM
recommendations
Conducting penetration testing on
the organization's web applications
Reviewing the company's security
policies and procedures
Answers with Verified Solutions | Latest
Updated 2026
There are different variations of Z Shell (zsh)
shells that are used in Linux and
Unix
operating systems and each has
its
own syntax.
Which of the following shell
command processor types
supports
many plugins to expand its
functionality?
Bourne Again Shell (bash)
Korn Shell (ksh)
C Shell (tcsh)
Z Shell (zsh)
What is the process of determining Impact analysis
the extent of damage/potential
damage from a security event
known
as?
Intrusion analysis
Damage analysis
Trend analysis
Impact analysis
,Data loss prevention (DLP) Print blocking
systems Restricted virtual desktop infrastructure
detect and prevent users from (VDI)
storing information on implementation
unauthorized Clipboard privacy controls
systems or transmitting
information
over unauthorized networks.
Which of the following are
examples
of DLP systems an organization
can
set for users? (Select three.)
answer
Monitoring employee activity
connected with sensitive data
Print blocking
Restricted virtual desktop
infrastructure (VDI)
implementation
Clipboard privacy controls
Enforcing use of external media
Storing all sensitive data in one
secure place
Implementing the principle of least
privilege
,A large information technology Mitigation
department is preparing for an
audit
by their cyber security insurance
company.
While reviewing some vulnerability
reports in their security information
and event management (SIEM)
tool,
the department found critical
vulnerabilities and steps to resolve
them.
In this type of report, what does
this
finding represent?
answer
Prioritization
Vulnerabilities
Mitigation
Risk score
, A security analyst at a financial Identifying threat indicators and potential
institution is responsible for vulnerabilities
identifying active threats to the
organization's network. The
analyst
uses the Open Source Security
Testing Methodology Manual
(OSSTMM) and the Open Web
Application Security Project
(OWASP) Testing Guide to
monitor
and analyze these threats
effectively.
The analyst receives an alert
about a
potential spear-phishing attack
targeting employees.
When using these methodologies
to
assess the situation, what should
be
the analyst's primary focus?
Identifying threat indicators and
potential vulnerabilities
Implementing security controls
based on OSSTMM
recommendations
Conducting penetration testing on
the organization's web applications
Reviewing the company's security
policies and procedures