Question 241
A systems administrator is deploying a new mission essential server into a virtual environment.
Which of the following is BEST mitigated by the environment's rapid elasticity characteristic?
Question 242
A user's laptop is experiencing general slowness following the user's return from an extended time out of the office. After a week, the security team looks at the laptop, but nothing appears out of order. The only noticeable issue is that svchost.exe keeps launching even after the security team kills the process. After running netstat, the team notes svchost.exe is listening on port 443. Using an IoC creation tool, a security analyst does the following:
OR--
AND AND
File MD5 contains adf321122abce28873aad3e12f262a12c
PROCESS name contains svchost.exe PROCESS arguments does not contain -k FILENAME contains svchost.exe FILE DIRECTORY is not %system32% Based on the IoCs created and the netstat output, which of the following types of malware is present?
Question 243
An organization wants to control user accounts and privileged access to database servers. The organization wants to create an audit trail of account requests and approvals, Out also wants to facilitate operational efficiency when account and access changes are needed. The organization has the following account management practices.
* Access requests are processed through a service ticket that requires server and system owner approval.
* Once approved, user access is granted directly to the user's privileged account
* The requests and approvals are sent to the security officer where they are retained for future audits.
* Account activity and user activity are monitored and audited monthly by the business unit.
Which of the following changes should be implemented?
Question 244
An organization has determined it can tolerate a maximum of three hours of downtime.
Which of the following has been specified?
Question 245
A network technician is setting up a new branch for a company. The users at the new branch will need to access resources securely as if they were at the main location. Which of the following networking concepts would BEST accomplish this?
