Tüm alıştırma soruları
173 soru
A security operations team is establishing a standardized patch management workflow to ensure system security while minimizing operational disruption across the enterprise. Place the steps of the enterprise patch management lifecycle in the correct procedural sequence from initial identification to post-implementation audit.
Öğeleri doğru sıraya koymak için sürükleyin
A Security Operations Center (SOC) receives an automated alert generated by a Network Intrusion Prevention System (NIPS) detecting an remote code execution (RCE) payload targeted at an internal API server. In what chronological sequence should a security analyst perform the initial response actions from alert ingestion through recovery?
Öğeleri doğru sıraya koymak için sürükleyin
A Security Operations Center (SOC) analyst receives a high-priority alert from a Network Intrusion Detection System (NIDS) indicating suspicious outbound traffic from an internal enterprise workstation. Place the following analyst triage and incident response steps in the correct sequence, from initial alert evaluation to containment.
Öğeleri doğru sıraya koymak için sürükleyin
A security operations team is responding to a newly disclosed critical remote code execution vulnerability impacting enterprise database servers. To ensure operational stability while mitigating risk, what is the correct chronological sequence of steps the team should perform during this emergency patch deployment workflow?
Öğeleri doğru sıraya koymak için sürükleyin
A security operations team is preparing to remediate a newly disclosed critical vulnerability affecting enterprise application servers. In what order should the team execute the patch management lifecycle steps from first to last?
Öğeleri doğru sıraya koymak için sürükleyin
A Security Operations Center (SOC) analyst receives a high-severity intrusion detection alert indicating an unusual volume of outbound DNS queries containing randomized long subdomains. Arrange the following security operations steps in the correct chronological sequence from initial alert triage to network-wide remediation.
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise security policy requires software developers to digitally sign compiled binaries using a dedicated Hardware Security Module (HSM) USB token. Which of the following represents the correct sequential order of steps required to obtain and prepare the code signing certificate on the hardware token, from first to last?
Öğeleri doğru sıraya koymak için sürükleyin
A systems administrator needs to request and deploy a new SSL/TLS certificate for an enterprise web application using an internal Certificate Authority (CA). Arrange the steps of the certificate enrollment and deployment process in the correct chronological order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A security analyst receives a high-severity alert from an inline Network Intrusion Prevention System (NIPS) indicating potential encrypted command-and-control (C2) beaconing originating from an internal endpoint to an untrusted external IP address. In what sequence should the analyst execute the network security monitoring and initial containment workflow?
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise security administrator is formalizing an operational workflow to handle human risk incidents, progressing from initial end-user detection of a spear-phishing attempt to enterprise-wide awareness training improvements. Place the following procedural steps in the correct chronological order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A Security Operations Center (SOC) analyst receives a high-priority alert from a Network Intrusion Detection System (NIDS) indicating anomalous outbound TCP traffic on port 443 with a mismatched Server Name Indication (SNI) header. In what order should the analyst execute the following triage and response steps to effectively investigate and mitigate the network threat?
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise security administrator is formalizing a human risk management initiative to reduce departmental vulnerability to targeted social engineering attacks. In what order should the administrator execute the stages of this security awareness lifecycle from start to finish?
Öğeleri doğru sıraya koymak için sürükleyin
Place the following steps of a phishing reporting and human risk management workflow in the correct chronological order, from initial end-user detection to awareness program refinement.
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise security team needs to remediate a critical zero-day vulnerability in a high-throughput API gateway fleet supporting real-time financial transactions. To ensure system stability and regulatory compliance, the team must execute a structured patch and configuration management workflow. In what sequence should the security team perform the following operational steps from first to last?
Öğeleri doğru sıraya koymak için sürükleyin
A security engineer is documenting the automated failover process for an active-passive cluster of perimeter firewalls. When the primary node experiences an unrecoverable hardware failure, specific high-availability failover events must occur. Place the following operational steps in the correct chronological order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A Security Operations Center (SOC) analyst receives a high-severity Network Intrusion Prevention System (NIPS) alert indicating potential unauthorized data exfiltration from a core database host to an external IP address. Place the incident response steps in the correct operational sequence, starting from initial alert validation through threat intelligence integration.
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise security platform detects an exposed cloud service API key in a public code repository. Arrange the steps of an automated Security Orchestration, Automation, and Response (SOAR) playbook into the correct operational sequence from initial alert detection to incident ticket resolution.
Öğeleri doğru sıraya koymak için sürükleyin
An organization is refining its human risk management and incident feedback lifecycle following a targeted social engineering campaign. Which of the following represents the correct chronological order of the operational and programmatic steps, from initial end-user discovery through security awareness curriculum escalation?
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise is formalizing its end-to-end human risk management and incident feedback workflow following a social engineering attempt. Place the following procedural steps in the correct chronological order from initial end-user detection to long-term security awareness program optimization.
Öğeleri doğru sıraya koymak için sürükleyin
An organization is updating its human risk management policy following a simulated phishing exercise that revealed widespread vulnerability among high-privilege users. To establish an effective, iterative Security Awareness and Human Risk Management cycle, in what sequential order should the security team implement the following stages?
Öğeleri doğru sıraya koymak için sürükleyin