試験CISA-JPN トピック2 問題965 スレッド
ISACA CISA-JPNのリアル試験問題集
問題 #: 965
トピック #: 2
問題 #: 965
トピック #: 2
ハッカーがドメインコントローラーのよく知られた脆弱性を悪用したセキュリティ違反に続いて、IS監査が統制評価を実施するように依頼されました。監査人の最善の行動方針は、次のことを判断することです。
おすすめの解答:B 解答を投票する
Explanation
The auditor's best course of action after a security breach in which a hacker exploited a well-known vulnerability in the domain controller is to determine if the logs were monitored. Log monitoring is an essential control for detecting and responding to security incidents, especially when known vulnerabilities exist in the system. The auditor should assess if the logs were properly configured, collected, reviewed, analyzed, and acted upon by the responsible parties. Updating patches, monitoring network traffic, and classifying domain controllers for high availability are also important controls, but they are not directly related to the detection and response of the security breach. References:
CISA Review Manual (Digital Version), page 301
CISA Questions, Answers & Explanations Database, question ID 3340
The auditor's best course of action after a security breach in which a hacker exploited a well-known vulnerability in the domain controller is to determine if the logs were monitored. Log monitoring is an essential control for detecting and responding to security incidents, especially when known vulnerabilities exist in the system. The auditor should assess if the logs were properly configured, collected, reviewed, analyzed, and acted upon by the responsible parties. Updating patches, monitoring network traffic, and classifying domain controllers for high availability are also important controls, but they are not directly related to the detection and response of the security breach. References:
CISA Review Manual (Digital Version), page 301
CISA Questions, Answers & Explanations Database, question ID 3340
Oomura 2026-02-06 06:01:42
コメント
他人の解答コメントを賛成するのも、その解答に一票を入れることになります。したがって、すでに同じ意見の投票コメントが存在する場合、新規コメントをする代わりに賛成することもできます。
コメントを通報する
コメント中
今すぐ 新規登録 / ログイン (無料です)。