| Exam Code/Number: | 312-39Join the discussion |
| Exam Name: | Certified SOC Analyst (CSA) |
| Certification: | EC-COUNCIL |
| Question Number: | 202 |
| Publish Date: | Jun 11, 2026 |
|
Rating
100%
|
|
Identify the type of attack, an attacker is attempting on www.example.com website.
The SOC team is tasked with enhancing the security of an organization's network infrastructure. The organization's public-facing web servers, which handle customer transactions, need to be isolated from the internal private network containing sensitive employee data and proprietary systems. The goal is to create a buffer zone that limits exposure of internal systems if the web servers are compromised during a cyberattack, such as a DDoS or SQL injection attempt. As a SOC analyst, which network architecture component would you recommend implementing to establish this isolated region?
A government agency needs to monitor its network for unusual data exfiltration attempts. Traditional log data is insufficient to identify traffic anomalies, so the SIEM team integrates traffic flow data to detect large transfers and unexpected spikes. The team must choose the appropriate protocol to collect IP traffic information from routers and switches. Which protocol should be used?
The Security Operations Center (SOC) team is investigating a suspected malware incident during the Analysis Phase of their incident response process. Their primary goal is to validate the initial detection, ensure the threat is real, and gather critical intelligence to understand the scope of the attack. Which action should the SOC team take to confirm initial findings and eliminate false alarms?
In a large corporation, the HR department receives an urgent email from someone impersonating a high-level executive, requesting immediate transfer of sensitive employee data. The email includes an official-looking document and a phone number for verification. Feeling pressured, the HR manager calls the number and
"confirms" the request, then transfers the data. Investigation later confirms the email was fraudulent and the executive had no knowledge of the request. What type of attack did the HR department face?
EC-COUNCIL.312-39.v2024-07-05.q86
Jul 05, 2024
EC-COUNCIL.312-39.v2023-11-02.q53
Nov 02, 2023
EC-COUNCIL.312-39.v2022-10-04.q33
Oct 04, 2022
EC-COUNCIL.312-39.v2022-04-25.q33
Apr 25, 2022