New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC GCFA Exam - Topic 4 Question 2 Discussion

Actual exam question for GIAC's GCFA exam
Question #: 2
Topic #: 4
[All GCFA Questions]

Mark works as a security manager for SofTech Inc. He is using a technique for monitoring what the employees are doing with corporate resources. Which of the following techniques is being used by Mark to gather evidence of an ongoing computer crime if a member of the staff is e-mailing company's secrets to an opponent?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Eloisa
4 months ago
Really? I’m surprised they can monitor emails like that without consent.
upvoted 0 times
...
Gaynell
4 months ago
I agree, electronic surveillance is the way to go for this situation.
upvoted 0 times
...
Nettie
4 months ago
Wait, is physical surveillance even a thing in this context? Seems off.
upvoted 0 times
...
Lorean
4 months ago
I think civil investigation could work too, but not as effective.
upvoted 0 times
...
Gladys
5 months ago
Definitely electronic surveillance. That's the best way to catch them!
upvoted 0 times
...
Lorrine
5 months ago
I remember a practice question about surveillance techniques, and electronic surveillance was definitely mentioned as a key method for gathering evidence.
upvoted 0 times
...
Alline
5 months ago
I'm not entirely sure, but civil investigation seems more about legal processes rather than just monitoring.
upvoted 0 times
...
Donte
5 months ago
I think Mark is probably using electronic surveillance since it involves monitoring digital communications, like emails.
upvoted 0 times
...
Salome
5 months ago
Physical surveillance feels off for this scenario since it’s about emails, but I could see how criminal investigation might apply if it escalates.
upvoted 0 times
...
Mireya
5 months ago
Okay, I've got a good handle on this. The key is understanding the FlexGroup volume architecture and the potential limits within ONTAP. I'm pretty confident the answer is either B or C - either the constituent volumes are full or the inode limit has been reached.
upvoted 0 times
...
Kaycee
5 months ago
Ah, I see the issue now. The SOQL query inside the loop is likely causing the performance problem with 10,000 records. I'll need to find a way to optimize that.
upvoted 0 times
...
Nichelle
5 months ago
I'm a bit confused by the terminology in this question. I'll need to re-read the material on case activities before attempting to answer.
upvoted 0 times
...

Save Cancel