Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

Note! Following CS0-001 Exam is Retired now. Please select the alternative replacement for your Exam Certification. The new exam code is CS0-002

CS0-001 Exam Dumps - CompTIA CySA+ Certification Exam

Go to page:
Question # 4

During a routine network scan, a security administrator discovered an unidentified service running on a new embedded and unmanaged HVAC controller, which is used to monitor the company’s datacenter:

The enterprise monitoring service requires SNMP and SNMPTRAP connectivity to operate. Which of the following should the security administrator implement to harden the system?

A.

Patch and restart the unknown service.

B.

Segment and firewall the controller’s network.

C.

Disable the unidentified service on the controller.

D.

Implement SNMPv3 to secure communication.

E.

Disable TCP/UDP ports 161 through 163.

Full Access
Question # 5

Which of the following has the GREATEST impact to the data retention policies of an organization?

A.

The CIA classification matrix assigned to each piece of data

B.

The level of sensitivity of the data established by the data owner

C.

The regulatory requirements concerning the data set

D.

The technical constraints of the technology used to store the data

Full Access
Question # 6

A cybersecurity professional wants to determine if a web server is running on a remote host with the IP address 192.168.1.100. Which of the following can be used to perform this task?

A.

nc 192.168.1.100 -1 80

B.

ps aux 192.168.1.100

C.

nmap 192.168.1.100 –p 80 –A

D.

dig www 192.168.1.100

E.

ping –p 80 192.168.1.100

Full Access
Question # 7

A company has a large number of users who need to access corporate resources or networks from various locations. Many users have VPN access to the network, as well as wireless internet access from BYOD approved systems tablets and smartphones. The users can also access corporate resources from an internal-facing web portal now ever all of these services require a separate set of credentials. Which of the following should the cybersecurity analyst recommend to aggregate and audit on logins while allowing the corporate directory services credentials to be shared across all of the services?

A.

SAML

B.

Kerberos

C.

SSO

D.

RADIUS

Full Access
Question # 8

Which of the following could be directly impacted by an unpatched vulnerability in vSphere ESXi?

A.

The organization’s physical routers

B.

The organization’s mobile devices

C.

The organization’s virtual infrastructure

D.

The organization’s VPN

Full Access
Go to page: