Domain 1: Threat Management

Mike Chapple, David Seidl · 2018

This chapter presents multiple-choice examinations questions related to computer security threat. Topics discussed include procedures or common tasks, the results of a network reconnaissance, point-in-time data analysis, and data correlation and analytics. One of the questions relates to a woman employee who wants to assess the patch level of a Windows 2012 server and wants to use a freely available tool to check the system for security issues. The readers are asked to identify the tool that will provide the most detail about specific patches installed or missing from her machine. A question relates to a woman employee who is designing her organization's data center network and wants to establish a secure zone and a demilitarized zone (DMZ). Readers are asked to provide her with best design option if she wants to ensure that user accounts and traffic that manage systems in the DMZ are easily auditable and that all access can be logged while helping prevent negative impacts from compromised or infected workstations.

Read the paper · More papers on PaperTik