CompTIA CS0-004 - CompTIA Cybersecurity Analyst CySA+ V4 (New Version)
An analyst reviews the following system logs from a recent breach attempt:

Which of the following techniques did the attacker attempt to use?
Which of the following best explains why sensitive data should be encrypted at rest on laptops?
A cybersecurity analyst receives an unstructured text document that contains advanced persistent threat (APT)-related indicators of compromise (IoCs). The analyst needs to extract the IPv4 addresses.
Which of the following is the best tool to accomplish this task?
A security team deploys a new scanning solution that requires root, domain administrator, and local server administrator permissions on all systems.
Which of the following is the best way to help mitigate the risk for this level of access?
Which of the following is the most comprehensive type of report associated with a closed incident?
A security operations center (SOC) manager reviews a document signed by the Chief Financial Officer (CFO), the sales director, and a customer to decide whether a contract breach occurred.
Which of the following best describes the document that includes key performance indicators (KPIs)?
Which of the following best describes a type of risk that exists after mitigations or controls are enacted and implemented?
Which of the following is the most important reason why tactics, techniques, and procedures (TTP) are beneficial to a defensive strategy?
Which of the following is the main concept behind the use of an attack methodology framework?
The Chief Information Security Officer (CISO) reviews the following security operations metrics from the last month:

Which of the following is the best action to improve overall security operations efficiency?
