cyberguypr wrote: » Why do you assume some sort of policy exists?
Mike7 wrote: » Depends on the exam you are taking Sec+ : infected? CEH : malware, hacker has gained access to the network CASP : infected CISSP : policy CISM : IRM (incident response management): investigate, contain the risk (if any) and let user continue with her work CISA : insufficient controls to minimize risk, do not take action, raise audit red flag MCSA : this is a server app, of course it has listening ports.