exam questions

Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

Exam CS0-003 topic 1 question 340 discussion

Actual exam question from CompTIA's CS0-003
Question #: 340
Topic #: 1
[All CS0-003 Questions]

Which of the following is a circumstance in which a security operations manager would most likely consider using automation?

  • A. The generation of NIDS rules based on received STIX messages
  • B. The fulfillment of privileged access requests to enterprise domain controllers.
  • C. The verification of employee identities prior to initial PKI enrollment
  • D. The analysis of suspected malware binaries captured by an email gateway
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ada26b1
3 weeks ago
Selected Answer: A
A. The generation of NIDS rules based on received STIX messages Automating the generation of NIDS (Network Intrusion Detection System) rules based on received STIX (Structured Threat Information Expression) messages would be an efficient use of automation. STIX messages often contain indicators of compromise (IOCs) and other threat intelligence data that could be directly used to create or update NIDS rules. This can save time and ensure that the network defenses are kept up to date in response to emerging threats.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago