Which of the follow...
 
Notifications
Clear all

Which of the following is the FIRST action the analyst should take as part of security operations monitoring?

1 Posts
1 Users
0 Likes
95 Views
(@ruleychuck)
Noble Member
Joined: 2 years ago
Posts: 689
Topic starter  

A security analyst for a large pharmaceutical company was given credentials from a threat intelligence resources organisation for Internal users, which contain usernames and valid passwords for company accounts.

Which of the following is the FIRST action the analyst should take as part of security operations monitoring?

  • A . Run scheduled antivirus scans on all employees' machines to look for malicious processes.
  • B . Reimage the machines of all users within the group in case of a malware infection.
  • C . Change all the user passwords to ensure the malicious actors cannot use them.
  • D . Search the event logs for event identifiers that indicate Mimikatz was used.

Show Answer Hide Answer

Suggested Answer: D

   
Quote
Topic Tags

Latest CS0-002 V1 Dumps Valid Version

Latest And Valid Q&A | Instant Download | Once Fail, Full Refund
Share: