A security team purchases a tool for cloud security posture management. The team is quickly overwhelmed by the number of misconfigurations that the tool detects. Which of the following should the security team configure to establish workflows for cloud resource security?
Which of the following should be used to select a label for a file based on the file's value, sensitivity, or applicable regulations?
During a recent log review, an analyst found evidence of successful injection attacks. Which of the following will best address this issue?
A security analyst learns that an attack vector, used as part of a recent incident, was a well-known IoT device exploit. The analyst needs to review logs to identify the time of the initial exploit. Which of the following logs should the analyst review first?
A security analyst is reviewing the following logs about a suspicious activity alert for a user's VPN log-ins.
Which of the following malicious activity indicators triggered the alert?
#Log Summary:
User logs in fromChicago, ILmultiple times, then suddenly a successful login appears fromRome, Italy, followed again by Chicago logins - all within ashort time span.