Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

Question The developers recently deployed new code to three web servers. A daily

ID: 3750312 • Letter: Q

Question

Question The developers recently deployed new code to three web servers. A daily automated external device scan report shows server vulnerabilities that are failing items according to PCI DSS. If the vulnerability is not valid, the analyst must take the proper steps to get the scan clean. If the vulnerability is valid, the analyst must remediate the finding. After reviewing the given information, select the STEP 2 tab in order to complete the simulation by selecting the correct "Validation Result" AND "Remediation Action" for each server listed using the drop down options. Instructions: If at any time you would like to bring back the initial state of the simulation, please select the Reset button. When you have completed the simulation, please select the Done button to submit. Once the simulation is submitted, please select the Next button to continue.

Explanation / Answer

In step 2,In Validate Result,

for WEBSERVER01,the right option is True Positive,

for WEBSERVER02,the right option is True Negative,and

for WEBSERVER03,the right option is FalseNegative.

In Remediation Action.,

for WEBSERVER01,the right option is implement input validation,

for WEBSERVER02,the right option is Encrypt all session cookies,and

for WEBSERVER03,the right option is request certificate from a public CA.

Hire Me For All Your Tutoring Needs
Integrity-first tutoring: clear explanations, guidance, and feedback.
Drop an Email at
drjack9650@gmail.com
Chat Now And Get Quote