exam questions

Exam CS0-002 All Questions

View all questions & answers for the CS0-002 exam

Exam CS0-002 topic 1 question 57 discussion

Actual exam question from CompTIA's CS0-002
Question #: 57
Topic #: 1
[All CS0-002 Questions]

A company has a cluster of web servers that is critical to the business. A systems administrator installed a utility to troubleshoot an issue, and the utility caused the entire cluster to go offline. Which of the following solutions would work BEST prevent to this from happening again?

  • A. Change management
  • B. Application whitelisting
  • C. Asset management
  • D. Privilege management
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Dree_Dogg
1 year, 7 months ago
Selected Answer: B
Change Management doesn't "prevent" it. Whitelisting will absolutely prevent it though.
upvoted 1 times
...
Snkrsnaker1
2 years ago
Selected Answer: A
Based on the answers we have to choose from, answer A (Change Management) is the BEST answer. One does not simply just whitelist an application. Even if there is no formal "change management" process, you still have to follow best practices to ensure the application is secure and compliant with your security policy.
upvoted 2 times
...
kiduuu
2 years, 1 month ago
Selected Answer: A
In this scenario, if the systems administrator had followed a change management process, they would have needed to document and seek approval for the installation of the utility that caused the issue. This would have allowed for a review of the utility and its potential impact on the web server cluster.
upvoted 1 times
...
db97
2 years, 2 months ago
Install a tool = change in the host. So I go for A on this, cuz with a change management control this could be prevented now and in the future as well.
upvoted 3 times
2Fish
2 years, 1 month ago
Agree. Change management also incorporates a roll-back plan. In this event, we could roll-back and or recover from and event
upvoted 2 times
...
...
Abyad
2 years, 5 months ago
Selected Answer: A
the only choice
upvoted 1 times
...
david124
2 years, 6 months ago
Selected Answer: A
A it is
upvoted 1 times
...
MortG7
2 years, 7 months ago
Application whitelisting is for authorization..how would that help in the future? The admin already installed it...it is not an authorization issue, it is crappy software issue. Ideally, had "test in a lab/test environment first" been one of the choices, that would be it, but it isn't. Change Management is a crappy answer but sadly the best one.
upvoted 2 times
...
[Removed]
2 years, 7 months ago
I'm going with Change Management. After doing some research/studying I can see how application whitelisting would work since it is a list of approved applications that can be downloaded but since it is a critical system that was taken offline and the question is asking you 'prevent' it from happening 'again' I think change management which would require approval to not only install the application but also require testing before hand would be better at preventing this situation from happening again.
upvoted 1 times
...
R00ted
2 years, 7 months ago
Selected Answer: A
Change Management o The process through which changes to the configuration of information systems are monitored and controlled, as part of the organization's overall configuration management efforts o Each individual component should have a separate document or database record that describes its initial state and subsequent changes ▪ Configuration information ▪ Patches installed ▪ Backup records ▪ Incident reports/issues o Change management ensures all changes are planned and controlled to minimize risk of a service disruption
upvoted 2 times
...
bigerblue2002
2 years, 7 months ago
Wouldn't a whitelist be a list of proven applications? If they had that, they wouldn't have used this application at, they would have used one on the list. I think if this had been a blacklist then the answer would be correct as this would be on the list for not using it in the future. If they have a whitelist and this event happens, the whitelist will not change nor help this situation. Blacklist would be a great answer, whitelist is not....in my book anyway. Going with Change Management.
upvoted 2 times
...
nonjabusiness
2 years, 7 months ago
Selected Answer: A
I think A is the best answer, because change management is the process of requesting, approval, validating, and logging. By following this process, the utility would have to be tested to validate it doesn't cause issues before and after installation. Also in this scenario, logging would provide a way to identify the cause and restore the cluster to it's previous state
upvoted 2 times
...
Fastytop
2 years, 7 months ago
Selected Answer: B
I think Application whitelisting will be better in this case.
upvoted 1 times
...
EVE12
2 years, 7 months ago
Change Management All networks evolve, grow, and change over time. Companies and their processes also evolve and change, which is a good thing. But infrastructure change must be managed in a structured way so as to maintain a common sense of purpose about the changes. By following recommended steps in a formal change management process, change can be prevented from becoming the tail that wags the dog. The following are guidelines to include as a part of any change management policy: All changes should be formally requested. Each request should be analyzed to ensure it supports all goals and polices. Prior to formal approval, all costs and effects of the methods of implementation should be reviewed. After they’re approved, the change steps should be developed. During implementation, incremental testing should occur, relying on a predetermined fallback strategy if necessary. Complete documentation should be produced and submitted with a formal report to management. https://learning.oreilly.com/library/view/comptia-cybersecurity-analyst/9780136747000/ch08.xhtml#ch08lev1sec8
upvoted 1 times
...
amateurguy
2 years, 8 months ago
Selected Answer: B
Wouldnt application whitelist be better? as it can make sure the application is safe / approved before we deploy it so that it doesnt crash the server?
upvoted 3 times
...
david124
2 years, 8 months ago
Selected Answer: C
Doesn't Utility = Application = Whitelisting as a solution? it's weird that change management is the solution tbh.
upvoted 1 times
david124
2 years, 8 months ago
sorry answer is B
upvoted 1 times
...
...
Laudy
2 years, 8 months ago
A sounds right
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago