Black Friday Special Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: mxmas70

Home > EMC > DECS > DES-9131

DES-9131 Specialist - Infrastructure Security Exam Question and Answers

Question # 4

Which NIST Cybersecurity Framework function should be executed before any others?

A.

Respond

B.

Protect

C.

Recover

D.

Identify

Full Access
Question # 5

A continuously updated CMDB is an output of which NIST function and category?

A.

ID.RM

B.

ID.SC

C.

ID.BE

D.

ID.AM

Full Access
Question # 6

What contains a predefined set of efforts that describes an organization’s mission/business critical processes, and defines how they will be sustained during and after a significant disruption?

A.

Disaster Recovery Plan

B.

Risk Assessment Strategy

C.

Business Continuity Plan

D.

Business Impact Analysis

Full Access
Question # 7

The network security team in your company has discovered a threat that leaked partial data on a compromised file server that handles sensitive information. Containment must be initiated and addresses by the CSIRT.

Service disruption is not a concern because this server is used only to store files and does not hold any critical workload. Your company security policy required that all forensic information must be preserved.

Which actions should you take to stop data leakage and comply with requirements of the company security policy?

A.

Disconnect the file server from the network to stop data leakage and keep it powered on for further

analysis.

B.

Shut down the server to stop the data leakage and power it up only for further forensic analysis.

C.

Restart the server to purge all malicious connections and keep it powered on for further analysis.

D.

Create a firewall rule to block all external connections for this file server and keep it powered on for further analysis.

Full Access
Question # 8

The CSIRT team is following the existing recovery plans on non-production systems in a PRE-BREACH

scenario. This action is being executed in which function?

A.

Protect

B.

Recover

C.

Identify

D.

Respond

Full Access
Question # 9

What defines who is accountable for contacting operational teams, managers, and others affected by a

localized, safety critical event?

A.

Asset Management Plan

B.

Business Impact Analysis

C.

Business Continuity Plan

D.

Incident Response Plan

Full Access