🔥 3-day streak
Cisco CCNP Cybersecurity CBRCOR (350-201)146 / 147
Question 146 of 147
A SaaS provider's SOC receives an alert that a customer's records were found for sale on a dark web forum. The affected data resides in a PostgreSQL database behind a public-facing web application. The web application logs, database query logs, and a WAF are all available. As the lead analyst investigating this potential data loss via the application vector, what is the MOST appropriate first investigative step?
Reviewed for accuracy · Report an issueNext question