Eccouncil 312-39 Certified SOC Analyst Exam Practice Test

Page: 1 / 14
Total 100 questions
Question 1

Which of the following steps of incident handling and response process focus on limiting the scope and extent of an incident?



Answer : A


Question 2

Identify the attack, where an attacker tries to discover all the possible information about a target network before launching a further attack.



Answer : D


Question 3

In which phase of Lockheed Martin's -- Cyber Kill Chain Methodology, adversary creates a deliverable malicious payload using an exploit and a backdoor?



Answer : C


Question 4

What does the HTTP status codes 1XX represents?



Answer : A


Question 5

Which of the following is a set of standard guidelines for ongoing development, enhancement, storage, dissemination and implementation of security standards for account data protection?



Answer : C


Question 6

Harley is working as a SOC analyst with Powell Tech. Powell Inc. is using Internet Information Service (IIS) version 7.0 to host their website.

Where will Harley find the web server logs, if he wants to investigate them for any anomalies?



Answer : A


Question 7

John, SOC analyst wants to monitor the attempt of process creation activities from any of their Windows endpoints.

Which of following Splunk query will help him to fetch related logs associated with process creation?



Answer : B


t/5a3187b4419202f0fb8b2dd1/1513195444728/Windows+Splunk+Logging+Cheat+Sheet+v2.2.pdf

Page:    1 / 14   
Total 100 questions