Global searching is not enabled.
Skip to main content

Comptia CySA+ 002

This study guide uses a number of common elements to help you prepare for the CompTIA final Exam.Cysa

These include the following: 


Exam Essentials

The exam essentials focus on major exam topics and critical knowledge that you should take into the test.The exam essentials focus on the exam objectives provided by CompTIA. 


Review Questions

A set of questions at the end of each chapter will help you assess your knowledge and if you are ready to take the exam based on your knowledge of that chapter's topics. 


Lab Exercises

The written labs provide more in-depth practice opportunities to expand your skills and to better prepare for performance-based testing on the Cybersecurity Analyst+ exam.

2. Analyzing Indicators of Compromise

Responding appropriately to an incident requires understanding how incidents occur and what symptoms may indicate that an event has occurred. To do that, you also need the right tools and techniques. In this chapter, you will learn about three major categories of symptoms. First, you will learn about network events, including malware beaconing, unexpected traffic, and link failures, as well as network attacks. Next, you will explore host issues, ranging from system resource consumption issues to malware defense and unauthorized changes. Finally, you will learn about service- and application-related problems.