Free CS0-002 Exam Braindumps

Pass your CompTIA Cybersecurity Analyst (CySA+) Certification Exam exam with these free Questions and Answers

Page 13 of 75
QUESTION 56

- (Exam Topic 3)
After examining a header and footer file, a security analyst begins reconstructing files by scanning the raw data bytes of a hard disk and rebuilding them. Which of the following techniques is the analyst using?

  1. A. Header analysis
  2. B. File carving
  3. C. Metadata analysis
  4. D. Data recovery

Correct Answer: B

QUESTION 57

- (Exam Topic 1)
A security analyst discovers accounts in sensitive SaaS-based systems are not being removed in a timely manner when an employee leaves the organization To BEST resolve the issue, the organization should implement

  1. A. federated authentication
  2. B. role-based access control.
  3. C. manual account reviews
  4. D. multifactor authentication.

Correct Answer: A

QUESTION 58

- (Exam Topic 1)
A user's computer has been running slowly when the user tries to access web pages. A security analyst runs the command netstat -aon from the command line and receives the following output:
CS0-002 dumps exhibit
Which of the following lines indicates the computer may be compromised?

  1. A. Line 1
  2. B. Line 2
  3. C. Line 3
  4. D. Line 4
  5. E. Line 5
  6. F. Line 6

Correct Answer: D

QUESTION 59

- (Exam Topic 1)
A security analyst on the threat-hunting team has developed a list of unneeded, benign services that are currently running as part of the standard OS deployment for workstations. The analyst will provide this list to the operations team to create a policy that will automatically disable the services for all workstations in the organization.
Which of the following BEST describes the security analyst's goal?

  1. A. To create a system baseline
  2. B. To reduce the attack surface
  3. C. To optimize system performance
  4. D. To improve malware detection

Correct Answer: B
Reducing the attack surface area means limiting the features and functions that are available to an attacker. For example, if I lock all doors to the facility with the exception of one, I have reduced the attack surface. Another term for reducing the attack surface area is system hardening because it involves ensuring that all systems have been hardened to the extent that is possible and still provide functionality

QUESTION 60

- (Exam Topic 3)
During the security assessment of a new application, a tester attempts to log in to the application but receives the following message incorrect password for given username. Which of the following can the tester recommend to decrease the likelihood that a malicious attacker will receive helpful information?

  1. A. Set the web page to redirect to an application support page when a bad password is entered.
  2. B. Disable error messaging for authentication
  3. C. Recognize that error messaging does not provide confirmation of the correct element of authentication
  4. D. Avoid using password-based authentication for the application

Correct Answer: C

Page 13 of 75

Post your Comments and Discuss CompTIA CS0-002 exam with other Community members: