โ† All CySA+ Test Flashcard Decks

CySA+ Knowledge Areas Covered Flashcards

7 cards from real CySA+ Test practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 CySA+ Knowledge Areas Covered flashcards as text
  1. Which CySA+ domain includes applying secure coding standards and conducting code reviews for vulnerabilities?

    Answer: Software and Systems Security

    Secure coding practices and code review for vulnerabilities are covered under the Software and Systems Security domain.

  2. A security analyst uses the Cyber Kill Chain to map an attacker's actions post-compromise. Which stage involves establishing persistence?

    Answer: Installation

    In the Cyber Kill Chain, the Installation stage is where attackers establish persistence through backdoors or trojans.

  3. Which CySA+ topic involves analyzing memory dumps to identify injected code or rootkits?

    Answer: Memory Forensics

    Memory forensics involves analyzing RAM dumps to uncover malicious processes, injected code, and fileless malware.

  4. An organization uses risk registers to track identified vulnerabilities and remediation timelines. This practice falls under which domain?

    Answer: Compliance and Assessment

    Maintaining risk registers and tracking remediation progress are Compliance and Assessment activities in CySA+.

  5. Which CySA+ concept describes the minimum set of privileges needed for a user or system to perform its function?

    Answer: Least Privilege

    The principle of least privilege limits user and system access to only what is required for their specific role or function.

  6. A CySA+ analyst identifies a zero-day vulnerability with no available patch. What is the recommended interim action?

    Answer: Apply compensating controls to reduce exposure

    When no patch exists, compensating controls such as network segmentation, WAF rules, or disabling features reduce exposure.

  7. Which CySA+ domain encompasses reviewing audit logs to detect insider threats?

    Answer: Security Operations and Monitoring

    Monitoring and reviewing audit logs to detect insider threat behavior is a Security Operations and Monitoring function.