Question 1 of 30
In a corporate network, a security analyst is tasked with evaluating the effectiveness of the current firewall configuration. The firewall is set to allow traffic on ports 80 (HTTP) and 443 (HTTPS) while blocking all other ports. During a routine audit, the analyst discovers that an unauthorized application is communicating over port 8080, which is typically used for proxy services. The analyst needs to determine the potential risks associated with this configuration and recommend a strategy to mitigate these risks. What is the most effective approach to enhance the security posture of the network in this scenario?
Implement a rule to block all outbound traffic on port 8080 and conduct a thorough review of all applications using non-standard ports.
Allow traffic on port 8080 for authorized applications only, while keeping the current configuration intact.
Increase the logging level on the firewall to monitor traffic on port 8080 without making any changes to the existing rules.
Disable the firewall temporarily to assess the impact of the unauthorized application on network performance.

Preparing for CISCO 350-201 Performing CyberOps Using Core Security Technologies (CBRCOR)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free