A security analyst receives an alert that a user account has been locked out after multiple failed login attempts, followed immediately by a successful login from a different geographic location. What is the MOST likely explanation, and what should the analyst investigate?
More Security Operations Questions
28 questions
Full CompTIA Security+ Practice Test
All topics covered
All CompTIA Security+ Questions
Browse by topic
Related Questions
Which security technology monitors network traffic for known attack signatures and malicious pattern...
Which identity and access management (IAM) technology allows users to authenticate once and gain acc...
A security operations center (SOC) analyst wants to correlate security events from firewalls, server...
A security team needs to control and monitor administrative access to critical servers, including re...
A company wants to prevent employees from accidentally or intentionally sending sensitive customer d...
Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy
Discussion
Be the first to share your understanding of this concept
Sign in to join the discussion