CAS-003 문제 91

An incident response analyst is investigating a compromise on a application server within an organization. The analyst identifies an anomalous process that is executing and maintaining a persistent TCP connection to an external IP Which of the following actions should the analyst take NEXT?

CAS-003 문제 92

The helpdesk manager wants to find a solution that will enable the helpdesk staff to better serve company employees who call with computer-related problems. The helpdesk staff is currently unable to perform effective troubleshooting and relies on callers to describe their technology problems. Given that the helpdesk staff is located within the company headquarters and 90% of the callers are telecommuters, which of the following tools should the helpdesk manager use to make the staff more effective at troubleshooting while at the same time reducing company costs?
(Select TWO).

CAS-003 문제 93

An organization is integrating an ICS and wants to ensure the system is cyber resilient. Unfortunately, many of the specialized components are legacy systems that cannot be patched. The existing enterprise consists of mission-critical systems that require 99.9% uptime. To assist in the appropriate design of the system given the constraints, which of the following MUST be assumed?

CAS-003 문제 94

A security analyst, who is working in a Windows environment, has noticed a significant amount of IPv6 traffic originating from a client, even though IPv6 is not currently in use. The client is a stand-alone device, not connected to the AD that manages a series of SCADA devices used for manufacturing. Which of the following is the appropriate command to disable the client's IPv6 stack?

CAS-003 문제 95

한 소프트웨어 회사가 광범위한 외부 고객에게 새로운 모바일 애플리케이션을 출시하고 있습니다.
소프트웨어 회사는 새로운 기능을 빠르게 출시하고 있기 때문에 출시 시 애플리케이션을 자동으로 업데이트할 수 있는 무선 소프트웨어 업데이트 프로세스를 구축했습니다. 다음 중 업데이트 프로세스의 무결성을 보호하기 위해 회사의 보안 설계자가 권장해야 하는 보안 제어는 무엇입니까? (2개를 선택하세요.)