최신GIAC Security Operations Certified - GSOC무료샘플문제
문제1
Which of the following is a critical event to monitor in Windows Event Logs?
Response:
Which of the following is a critical event to monitor in Windows Event Logs?
Response:
정답: A
문제2
When investigating a Windows server, which event IDs indicate a user account was created, deleted, and changed?
(Choose Three)
Response:
When investigating a Windows server, which event IDs indicate a user account was created, deleted, and changed?
(Choose Three)
Response:
정답: A,B,E
문제3
In the process of analytics enrichment, which of the following is a recommended best practice?
Response:
In the process of analytics enrichment, which of the following is a recommended best practice?
Response:
정답: D
문제4
You are part of a Blue Team tasked with protecting a multinational organization's network. Recently, your team has noticed an increase in phishing attempts targeting employees. Despite conducting security awareness training, several employees have clicked on malicious links, leading to malware infections. You need to adjust your defensive strategy.
Which of the following actions should the Blue Team take to mitigate this threat and strengthen defenses?
(Choose Three)
Response:
You are part of a Blue Team tasked with protecting a multinational organization's network. Recently, your team has noticed an increase in phishing attempts targeting employees. Despite conducting security awareness training, several employees have clicked on malicious links, leading to malware infections. You need to adjust your defensive strategy.
Which of the following actions should the Blue Team take to mitigate this threat and strengthen defenses?
(Choose Three)
Response:
정답: A,D,E
문제5
What are essential practices when analyzing HTTP(S) traffic to identify attacks?
(Choose Three)
Response:
What are essential practices when analyzing HTTP(S) traffic to identify attacks?
(Choose Three)
Response:
정답: A,C,D
문제6
Which techniques can be used to secure HTTPS traffic and prevent interception?
(Choose Two)
Response:
Which techniques can be used to secure HTTPS traffic and prevent interception?
(Choose Two)
Response:
정답: A,C
문제7
Which actions should an administrator take to secure HTTP(S) traffic?
(Choose Two)
Response:
Which actions should an administrator take to secure HTTP(S) traffic?
(Choose Two)
Response:
정답: A,B
문제8
Which factor is crucial when prioritizing incident response?
Response:
Which factor is crucial when prioritizing incident response?
Response:
정답: C
문제9
In the context of Linux, what is the significance of the '/var/log/dmesg' file?
Response:
In the context of Linux, what is the significance of the '/var/log/dmesg' file?
Response:
정답: B
문제10
Which of the following is an indicator of a DNS-based attack?
Response:
Which of the following is an indicator of a DNS-based attack?
Response:
정답: A
문제11
What is an essential aspect of SOC's role in incident response?
Response:
What is an essential aspect of SOC's role in incident response?
Response:
정답: A
문제12
What is the primary role of the Blue Team in an organization's security strategy?
Response:
What is the primary role of the Blue Team in an organization's security strategy?
Response:
정답: D
문제13
When designing and sharing analytics insights with stakeholders, which strategies should be employed to enhance communication effectiveness?
(Choose Two)
Response:
When designing and sharing analytics insights with stakeholders, which strategies should be employed to enhance communication effectiveness?
(Choose Two)
Response:
정답: A,C
문제14
For effective network traffic analysis, what should be considered when monitoring encrypted traffic?
(Choose Three)
Response:
For effective network traffic analysis, what should be considered when monitoring encrypted traffic?
(Choose Three)
Response:
정답: A,C,D