Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 212-82 Topic 18 Question 31 Discussion

Actual exam question for Eccouncil's 212-82 exam
Question #: 31
Topic #: 18
[All 212-82 Questions]

Brielle. a security professional, was instructed to secure her organization's network from malicious activities. To achieve this, she started monitoring network activities on a control system that collected event data from various sources. During this process. Brielle observed that a malicious actor had logged in to access a network device connected to the organizational network. Which of the following types of events did Brielle identify in the above scenario?

Show Suggested Answer Hide Answer
Suggested Answer: C

Success audit is the type of event that Brielle identified in the above scenario. Success audit is a type of event that records successful attempts to access a network device or resource. Success audit can be used to monitor authorized activities on a network, but it can also indicate unauthorized activities by malicious actors who have compromised credentials or bypassed security controls4.


Contribute your Thoughts:

Malinda
5 months ago
I think the answer is C) Success audit, because Brielle identified a successful login by a malicious actor, which is an important event to track for security purposes.
upvoted 0 times
...
Cordelia
5 months ago
I'm not sure, but I think it could also be D) Warning, as unauthorized access is a warning sign of a potential security breach.
upvoted 0 times
...
Maryann
5 months ago
I agree with Joaquin, because a successful login by a malicious actor is definitely an important event to monitor.
upvoted 0 times
...
Enola
5 months ago
Haha, looks like Brielle caught the bad guy red-handed! I bet they're kicking themselves for not using a stronger password.
upvoted 0 times
...
Rolland
5 months ago
I agree with Kattie, a successful login by a malicious actor would definitely be a success audit event.
upvoted 0 times
Mable
4 months ago
D) Warning
upvoted 0 times
...
Gail
4 months ago
C) Success audit
upvoted 0 times
...
Lashaunda
4 months ago
B) Error
upvoted 0 times
...
Noah
4 months ago
A) Failure audit
upvoted 0 times
...
...
Kattie
6 months ago
The correct answer is C) Success audit, as the scenario describes a malicious actor successfully logging in and accessing a network device.
upvoted 0 times
Goldie
5 months ago
A: That's right, it indicates a successful event rather than a failure or error.
upvoted 0 times
...
Leslie
5 months ago
B: Yeah, because the malicious actor successfully logged in to access the network device.
upvoted 0 times
...
Krissy
6 months ago
A: I think the answer is C) Success audit.
upvoted 0 times
...
...
Joaquin
6 months ago
I think the answer is C) Success audit.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77