PrepAway - Latest Free Exam Questions & Answers

Category: SY0-401 (v.2)

Exam SY0-401: CompTIA Security+ Certification (update March 11th, 2015)

Which of the following is occurring?

A security audit identifies a number of large email messages being sent by a specific user
from their company email account to another address external to the company. These
messages were sent prior to a company data breach, which prompted the security audit. The
user was one of a few people who had access to the leaked data. Review of the suspect’s
emails show they consist mostly of pictures of the user at various locations during a recent
vacation. No suspicious activities from other users who have access to the data were
discovered. Which of the following is occurring?

This review process depends on:

A computer is suspected of being compromised by malware. The security analyst examines
the computer and finds that a service called Telnet is running and connecting to an external
website over port 443. This Telnet service was found by comparing the system’s services to
the list of standard services on the company’s system image. This review process depends
on:


Page 14 of 37« First...1213141516...2030...Last »