CAS-004 Security Operations • 15 Questions
15 CAS-004 Security Operations practice questions with answers and explanations. Free, no signup.
A security analyst receives an alert indicating an internal host is sending outbound traffic on TCP port 25 to multiple external IP addresses. Which action should the analyst take first to investigate potential data exfiltration?