Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 350-201 Exam - Topic 11 Question 98 Discussion

An organization suffered a security breach in which the attacker exploited a Netlogon Remote Protocol vulnerability for further privilege escalation. Which two actions should the incident response team take toprevent this type of attack from reoccurring? (Choose two.)
D) Automate antivirus scans of the company servers. and E) Define roles and responsibilities in the incident response playbook.
A) Implement a patch management process.
B) Scan the company server files for known viruses.
C) Apply existing patches to the company servers.

Cisco 350-201 Exam - Topic 11 Question 98 Discussion

Actual exam question for Cisco's 350-201 exam
Question #: 98
Topic #: 11
[All 350-201 Questions]

An organization suffered a security breach in which the attacker exploited a Netlogon Remote Protocol vulnerability for further privilege escalation. Which two actions should the incident response team take to

prevent this type of attack from reoccurring? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: D, E

Contribute your Thoughts:

0/2000 characters
Fabiola
9 months ago
Scanning for viruses seems less relevant here, right?
upvoted 0 times
...
Vicky
9 months ago
Agree, but also need to define roles in the response plan.
upvoted 0 times
...
Wenona
10 months ago
Applying existing patches is a must after a breach!
upvoted 0 times
...
Meaghan
10 months ago
Not sure if just patching is enough, though.
upvoted 0 times
...
Rozella
10 months ago
Definitely need to implement a patch management process!
upvoted 0 times
...
Marya
10 months ago
Defining roles in the incident response playbook sounds important, but I think it’s more about preparation than prevention of this specific attack. I’d lean towards the patching options.
upvoted 0 times
...
Dana
11 months ago
Scanning for viruses seems less relevant here, but I guess automating antivirus scans could help in general. Not sure if it's the best choice for this specific breach though.
upvoted 0 times
...
Kenneth
11 months ago
I'm not entirely sure, but I feel like applying existing patches to the servers is also crucial. We practiced a similar question about vulnerabilities last week.
upvoted 0 times
...
Katlyn
11 months ago
I remember we discussed the importance of patch management in class. I think implementing a patch management process is definitely one of the right actions.
upvoted 0 times
...
Kris
11 months ago
Based on the details provided, I think the two actions I should choose are implementing a patch management process and defining roles and responsibilities in the incident response playbook. That way, we can ensure proper procedures are in place to address vulnerabilities and respond effectively to future incidents.
upvoted 0 times
...
Broderick
11 months ago
Okay, let's see. The key is to prevent this specific type of attack from happening again. I think implementing a patch management process and applying existing patches to the company servers are the two actions I should choose.
upvoted 0 times
...
Virgilio
11 months ago
Hmm, I'm a bit unsure about this one. I know patching is important, but I'm not sure if that's the only thing I should be focusing on here. I'll need to think this through carefully.
upvoted 0 times
...
Hollis
11 months ago
This seems like a straightforward question about incident response. I'm confident I can identify the two correct actions to prevent this type of attack from reoccurring.
upvoted 0 times
...
Gwenn
11 months ago
I'm a little confused by this question. Is scanning for viruses and automating antivirus scans really the best way to prevent this type of attack? I feel like I'm missing something here.
upvoted 0 times
...
Andra
11 months ago
This question is testing our understanding of the application discovery phase. We need to pay attention to the user interaction, application responsiveness, and data processing - those are the key areas that will shape the automation approach. I think options A, C, and D cover those aspects well.
upvoted 0 times
...
Raylene
2 years ago
A and E, all the way. Gotta have that incident response plan in place, and patching is just common sense. Unless, of course, you want to be the next victim of a Netlogon attack. Not me, thanks!
upvoted 0 times
...
Maryanne
2 years ago
I'd pick A and C, no doubt. Patch management is the bread and butter of security. And remember, an unpatched system is like a cheese sandwich - it's just begging to be hacked!
upvoted 0 times
Sang
2 years ago
Definitely, keeping servers updated is key to preventing attacks.
upvoted 0 times
...
Teri
2 years ago
Absolutely, patch management is crucial for security.
upvoted 0 times
...
Rima
2 years ago
A) Implement a patch management process.
upvoted 0 times
...
Lettie
2 years ago
C) Apply existing patches to the company servers.
upvoted 0 times
...
...
Tu
2 years ago
B and D? Really? Scanning for viruses and automating antivirus scans won't do anything to fix the Netlogon vulnerability. C'mon, people, let's focus on the real issues here.
upvoted 0 times
...
Golda
2 years ago
Hmm, I'd say A and E are the way to go. Incident response planning is just as important as patching. Can't have a good response without clearly defined roles and responsibilities.
upvoted 0 times
Junita
2 years ago
C) Apply existing patches to the company servers.
upvoted 0 times
...
Mitzie
2 years ago
E) Define roles and responsibilities in the incident response playbook.
upvoted 0 times
...
Arthur
2 years ago
A) Implement a patch management process.
upvoted 0 times
...
...
Eun
2 years ago
Automating antivirus scans of the company servers could also help prevent future attacks.
upvoted 0 times
...
Dyan
2 years ago
I agree with Ellsworth. Applying existing patches to the company servers is also important.
upvoted 0 times
...
Ellsworth
2 years ago
I think we should implement a patch management process.
upvoted 0 times
...
Wilford
2 years ago
Definitely go with A and C. Patching systems is crucial to prevent these types of attacks. The vulnerability in the Netlogon protocol needs to be addressed ASAP.
upvoted 0 times
Dawne
2 years ago
Definitely go with A and C. Patching systems is crucial to prevent these types of attacks. The vulnerability in the Netlogon protocol needs to be addressed ASAP.
upvoted 0 times
...
Stephen
2 years ago
C) Apply existing patches to the company servers.
upvoted 0 times
...
Nakisha
2 years ago
A) Implement a patch management process.
upvoted 0 times
...
...

Save Cancel