nerdexam
ExamsCAS-002Questions#882
CompTIA

CAS-002 · Question #882

CAS-002 Question #882: Real Exam Question with Answer & Explanation

Sign in or unlock CAS-002 to reveal the answer and full explanation for question #882. The question stem and answer options stay visible for context.

Question

The DLP solution has been showing some unidentified encrypted data being sent using FTP to a remote server. A vulnerability scan found a collection of Linux servers that are missing OS level patches. Upon further investigation, a technician notices that there are a few unidentified processes running on a number of the servers. What would be a key FIRST step for the data security team to undertake at this point?

Options

  • ACapture process ID data and submit to anti-virus vendor for review.
  • BReboot the Linux servers, check running processes, and install needed patches.
  • CRemove a single Linux server from production and place in quarantine.
  • DNotify upper management of a security breach.
  • EConduct a bit level image, including RAM, of one or more of the Linux servers.

Unlock CAS-002 to see the answer

You've previewed enough free CAS-002 questions. Unlock CAS-002 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full CAS-002 Practice