اختبار شهادة محلل الأمن السيبراني CompTIA CySA+

السؤال 365 من 1101

كل الأسئلة

An incident response team is working with law enforcement to investigate an active web server compromise. The decision has been made to keep the server running and to implement compensating controls for a period of time. The web service must be accessible from the internet via the reverse proxy and must connect to a database server. Which of the following compensating controls will help contain the adversary while meeting the other requirements? (Select two).

الخيارات

  • A Drop the tables on the database server to prevent data exfiltration.
  • B Deploy EDR on the web server and the database server to reduce the adversary's capabilities.
  • C Stop the httpd service on the web server so that the adversary cannot use web exploits.
  • D Use micro-segmentation to restrict connectivity to/from the web and database servers.
  • E Comment out the HTTP account in the /etc/passwd file of the web server.
  • F Move the database from the database server to the web server.

النقاشات

لا توجد نقاشات منشورة لهذا السؤال حالياً.