• ¿Documento equivocado? Cámbialo gratis
  • Escrito por estudiantes que aprobaron
  • Inmediatamente disponible después del pago
  • Leer en línea o como PDF
Vender
¿Dónde estudias?
Tu idioma
Document preview thumbnail
Vista previa 4 fuera de 56 páginas
Examen

Cysa Actual Test Questions With Complete Answer Key

Document preview thumbnail
Vista previa 4 fuera de 56 páginas

CYSA ACTUAL TEST QUESTIONS WITH COMPLETE ANSWER KEY

Vista previa del contenido

CYSA ACTUAL TEST QUESTIONS WITH
COMPLETE ANSWER KEY

●● A gray hat hacker who desires to be ethical has discovered a critical
vulnerability that could potentially compromise a glass bottle
manufacturing company's user data. What should the gray hat hacker do
next?
Answer: Submit the findings to the company's bug bounty program


●● A company's security team reviews its security policies and
procedures to ensure they align with the company's current needs. What
is the most likely reason for this review?
Answer: To adapt to changing business requirements


●● A security engineer utilizes the Common Vulnerability Scoring
System (CVSS) to identify and calculate the likelihood of an exploit on
a server. Several users log in locally to the server in question. Which
metrics concern does the security engineer have when considering logon
account properties? (Select the two best options.)
Answer: Privileges, Interaction


●● A large tech company wants to design and implement secure systems
and applications resilient to cyber-attacks. Which cybersecurity process
should the company follow to implement secure features into its
products and service

,Answer: Security engineering


●● A large military contractor has recently experienced a series of cyber
attacks targeting their systems, resulting in the theft of sensitive military
technology. Upon investigation, the network administrator discovered
that the attackers used highly sophisticated methods and had access to
significant resources. What type of attacker is most likely responsible for
this breach?
Answer: Nation State


●● A security administrator uses Arachni, an open-source web scanner
application, to scan a web application for vulnerabilities. What type of
vulnerabilities does this application actively test?
Answer: Code injection, SQL injection, XSS, CSRF, and others


●● A cloud operations engineer monitors and maintains visibility into an
organization's serverless architecture. The engineer needs to ensure that
the system is functioning optimally and efficiently. What action would
be most helpful for the engineer to achieve this goal?
Answer: Monitor system processes


●● A security team is analyzing their system and network architecture to
improve their security posture. In the context of a potential security
incident, which aspect should the team prioritize to effectively detect
and respond to various types of unauthorized access to critical systems?
Answer: Analyzing anomalies in network traffic

,●● A security analyst suspects a file on a company's server may be
malicious. To determine if the file is known to be malicious or safe,
which of the following tools would be most appropriate for the analyst
to use?
Answer: Virus Total


●● The Chief Information Security Officer (CISO) at XYZ Corporation
received a legal request to preserve an employee's data under
investigation for insider trading. The CISO has to ensure that the data is
preserved and kept under legal hold until the company concludes its
investigation. Which of the following is true regarding chain of custody
in the scenario?
Answer: Chain of custody is the documentation of evidence movement
from one person to another, including who had custody of the evidence,
when and why they transferred it, and what they did with it.


●● A paintbrush bristle supply company has a business-critical web
server running old software on the internal network. Despite available
updates, the new software versions would not communicate with the rest
of the company's IT ecosystem. What type of controls should the
company consider implementing to address this issue?
Answer: Compensating


●● A security analyst needs to investigate a potential security incident
on their network. They collected log data from several sources, including

, one threat intelligence source and their IDS. However, they need
additional information to determine the scope and severity of the
incident. What technology can automatically add relevant context to the
raw log data
Answer: Data enrichment


●● A security analyst has identified a compromised system on the
network and needs to take action to prevent further damage. The analyst
has decided to implement compensating controls to limit the potential
damage. After implementing compensating controls, the security analyst
wants to isolate the compromised system from the network for further
analysis. Which of the following is the best approach for isolating the
system?
Answer: Physically disconnecting the system from the network


●● A security analyst is investigating a series of cyberattacks on their
organization. They suspect the threat actors use a specific method to
maintain communication with the compromised systems. Which method
do the threat actors most likely use to control the systems?
Answer: C2


●● The CIO (Chief Information Officer) for a modular dog furniture
startup receives a report that an advanced persistent threat (APT) has
compromised the startup's mail servers. What should be the CIO's top
priority for preventing future incidents?

Información del documento

Subido en
15 de septiembre de 2026
Número de páginas
56
Escrito en
2026/2027
Tipo
Examen
Contiene
Preguntas y respuestas
$17.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
FocusFile7
4.0
(27)
Vendido
278
Seguidores
4
Artículos
73761
Última venta
8 horas hace



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes