최신CompTIA Cybersecurity Analyst (CySA+) Certification - CS0-004무료샘플문제
문제1
An incident response team identifies a malicious uniform resource locator (URL) associated with a required business process and performs the following activities:
* Access to the URL has been restricted only to the necessary users through firewall rules and Cloud Security Group rules.
* Additional monitoring has been enabled for traffic related to that site and the allowed users.
* All application servers that need to access that site have been patched with the latest security and software updates.
* Application owners have been notified of the severity and need to remediate this reported issue.
Which of the following best describes the overall mitigation the security team is performing?
An incident response team identifies a malicious uniform resource locator (URL) associated with a required business process and performs the following activities:
* Access to the URL has been restricted only to the necessary users through firewall rules and Cloud Security Group rules.
* Additional monitoring has been enabled for traffic related to that site and the allowed users.
* All application servers that need to access that site have been patched with the latest security and software updates.
* Application owners have been notified of the severity and need to remediate this reported issue.
Which of the following best describes the overall mitigation the security team is performing?
정답: A
문제2
A security analyst runs an Nmap scan against a host with multiple open ports using the following command:
nmap 10.10.10.1 -p-
The following output is obtained after the scan:
Starting Nmap 7.95 ( https://nmap.org ) at 2025-07-15 15:55 UTC
Note: Host seems down.
Nmap done: 1 IP address (0 hosts up) scanned in 3.16 seconds
Which of the following is the most accurate way to scan the target IP for open ports?
A security analyst runs an Nmap scan against a host with multiple open ports using the following command:
nmap 10.10.10.1 -p-
The following output is obtained after the scan:
Starting Nmap 7.95 ( https://nmap.org ) at 2025-07-15 15:55 UTC
Note: Host seems down.
Nmap done: 1 IP address (0 hosts up) scanned in 3.16 seconds
Which of the following is the most accurate way to scan the target IP for open ports?
정답: D
설명: (ExamPassdump 회원만 볼 수 있음)
문제3
Which of the following actions should an incident response analyst take during the recovery phase of the incident response process?
Which of the following actions should an incident response analyst take during the recovery phase of the incident response process?
정답: B
설명: (ExamPassdump 회원만 볼 수 있음)
문제4
An analyst must provide a visualization of data received from threat intelligence sources. The data includes the Internet Protocols, services, and tools used by threat actors.
Which of the following is the best framework for the analyst to follow to display this data?
An analyst must provide a visualization of data received from threat intelligence sources. The data includes the Internet Protocols, services, and tools used by threat actors.
Which of the following is the best framework for the analyst to follow to display this data?
정답: B
설명: (ExamPassdump 회원만 볼 수 있음)
문제5
An analyst is configuring a security information and event management system to capture fileless malware execution events.
Which of the following log files requires additional configuration to accomplish this task?
An analyst is configuring a security information and event management system to capture fileless malware execution events.
Which of the following log files requires additional configuration to accomplish this task?
정답: D
설명: (ExamPassdump 회원만 볼 수 있음)
문제6
A vulnerability analyst conducts a web application scan on an asset sitting behind a load balancer configured as a pass through:
http://10.203.20.10
The analyst launches the Zed Attack Proxy (ZAP) utility, conducts a scan, and receives the following alert:

Which of the following should the analyst propose as a remediation to the finding while keeping the site operational?
A vulnerability analyst conducts a web application scan on an asset sitting behind a load balancer configured as a pass through:
http://10.203.20.10
The analyst launches the Zed Attack Proxy (ZAP) utility, conducts a scan, and receives the following alert:

Which of the following should the analyst propose as a remediation to the finding while keeping the site operational?
정답: D
설명: (ExamPassdump 회원만 볼 수 있음)
문제7
A security operations center analyst receives an alert from the security information and event management system. The analyst quickly reviews the alert and sees a workstation infected with malware. The analyst then uses the endpoint detection and response tool to isolate the workstation from the network.
Which of the following best describes the steps that occurred in this scenario?
A security operations center analyst receives an alert from the security information and event management system. The analyst quickly reviews the alert and sees a workstation infected with malware. The analyst then uses the endpoint detection and response tool to isolate the workstation from the network.
Which of the following best describes the steps that occurred in this scenario?
정답: A
설명: (ExamPassdump 회원만 볼 수 있음)
문제8
A Chief Information Security Officer (CISO) evaluates a threat heat map and notices a substantial increase in custom scanning and enumeration activities. The CISO wants to gather as much information as possible about the activities targeting the company to help prioritize mitigations.
Which of the following solutions is the best way to accomplish this goal?
A Chief Information Security Officer (CISO) evaluates a threat heat map and notices a substantial increase in custom scanning and enumeration activities. The CISO wants to gather as much information as possible about the activities targeting the company to help prioritize mitigations.
Which of the following solutions is the best way to accomplish this goal?
정답: B
설명: (ExamPassdump 회원만 볼 수 있음)
문제9
The vulnerability management team must scan the cloud environment to establish security baselines.
Which of the following assessment tools should the team use to perform this task?
The vulnerability management team must scan the cloud environment to establish security baselines.
Which of the following assessment tools should the team use to perform this task?
정답: C
설명: (ExamPassdump 회원만 볼 수 있음)