Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CompTIA Exam CAS-005 Topic 1 Question 3 Discussion

Actual exam question for CompTIA's CAS-005 exam
Question #: 3
Topic #: 1
[All CAS-005 Questions]

A company detects suspicious activity associated with external connections Security detection tools are unable to categorize this activity. Which of the following is the best solution to help the company overcome this challenge?

Show Suggested Answer Hide Answer
Suggested Answer: D

User and Entity Behavior Analytics (UEBA) is the best solution to help the company overcome challenges associated with suspicious activity that cannot be categorized by traditional detection tools. UEBA uses advanced analytics to establish baselines of normal behavior for users and entities within the network. It then identifies deviations from these baselines, which may indicate malicious activity. This approach is particularly effective for detecting unknown threats and sophisticated attacks that do not match known indicators of compromise (IoCs).


Contribute your Thoughts:

Lemuel
2 days ago
I think mapping network traffic to known IoCs could also be a good solution to overcome this challenge.
upvoted 0 times
...
Rasheeda
7 days ago
I disagree, I believe monitoring the dark web would be more effective in this situation.
upvoted 0 times
...
Delfina
7 days ago
Mapping network traffic to known IoCs is a good start, but it might not catch everything. Gotta keep an eye on that dark web too.
upvoted 0 times
...
Cecilia
14 days ago
I think the best solution is to implement an Interactive honeypot.
upvoted 0 times
...
Dorothy
15 days ago
Ooh, a honeypot could be fun! Lure those hackers in and see what they're up to. But I guess UEBA is the more practical choice.
upvoted 0 times
...
Dong
25 days ago
Option D seems like the way to go. UEBA can help identify unusual user behavior and detect potential threats.
upvoted 0 times
Youlanda
2 days ago
I agree, UEBA can provide valuable insights into user activities and help prevent security breaches.
upvoted 0 times
...
Cyndy
8 days ago
Option D seems like the way to go. UEBA can help identify unusual user behavior and detect potential threats.
upvoted 0 times
...
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77