PrepAway - Latest Free Exam Questions & Answers

Tag: Exam SY0-401 (update September 21st, 2014)

Exam SY0-401: CompTIA Security+ Certification (update September 21st, 2014)

Which of the following is occurring?

A security audit identifies a number of large email messages being sent by a specific user from
their company email account to another address external to the company. These messages were
sent prior to a company data breach, which prompted the security audit. The user was one of a
few people who had access to the leaked data. Review of the suspect’s emails show they consist
mostly of pictures of the user at various locations during a recent vacation. No suspicious activities
from other users who have access to the data were discovered.
Which of the following is occurring?

This review process depends on:

A computer is suspected of being compromised by malware. The security analyst examines the
computer and finds that a service called Telnet is running and connecting to an external website

over port 443. This Telnet service was found by comparing the system’s services to the list of
standard services on the company’s system image. This review process depends on:


Page 14 of 37« First...1213141516...2030...Last »