Search Header Logo

Security+_Domain_3

Authored by Techtorial Academy

Computers

Professional Development

Used 8+ times

Security+_Domain_3
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

50 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

1 min • 1 pt

A company wants to build a new website to sell products online. The website will host a storefront application that will allow visitors to add products to a shopping cart and pay for the products using a credit card. Which of the following protocols would be the MOST secure to implement?

SSL

FTP

SNMP

TLS

2.

MULTIPLE CHOICE QUESTION

1 min • 1 pt

After a recent security breach a security analyst reports that several administrative usernames and passwords are being sent via cleartext across the network to access network devices over port 23. Which of the following should be implemented so all credentials sent over the network are encrypted when remotely accessing and configuring network devices?

SSH

SNMPv3

SFTP

Telnet

FTP

3.

MULTIPLE CHOICE QUESTION

1 min • 1 pt

A network administrator would like to configure a site-to-site VPN utilizing iPSec. The administrator wants the tunnel to be established with data integrity encryption, authentication and anti-replay functions. Which of the following should the administrator use when configuring the VPN?

AH

EDR

ESP

DNSSEC

Answer explanation

Two of the primary subprotocols of IPSec are Authentication Header (AH) and Encapsulating Security Payload (ESP).

AH provides authentication of the sender’s data; ESP provides encryption of the transferred data as well as limited authentication

4.

MULTIPLE CHOICE QUESTION

1 min • 1 pt

A security analyst is evaluating solutions to deploy an additional layer of protection for a web application. The goal is to allow only encrypted communications without relying on network devices. Which of the following can be implemented?

DNSSEC implementation

SRTP

S/MIME

HTTP security header

Answer explanation

Security headers are directives used by web applications to configure security defenses in web browsers. Based on these directives, browsers can make it harder to exploit client-side vulnerabilities such as Cross-Site Scripting or Clickjacking

5.

MULTIPLE CHOICE QUESTION

1 min • 1 pt

A Chief Information Security Officer wants to ensure the organization is validating and checking the Integrity of zone transfers. Which of the following solutions should be implemented?

LDAPS

NGFW

DNSSEC

DLP

6.

MULTIPLE CHOICE QUESTION

1 min • 1 pt

A company is implementing a DLP solution on the file server. The file server has Pll. financial information, and health information stored on it Depending on what type of data that is hosted on the file server, the company wants different DLP rules assigned to the data. Which of the following should the company do to help accomplish this goal?

Mask the data

Classify the data  

Assign an application owner

Perform a risk analysis

7.

MULTIPLE CHOICE QUESTION

1 min • 1 pt

A security engineer is concerned about using an agent on devices that relies completely on defined known-bad signatures. The security engineer wants to implement a tool with multiple components including the ability to track, analyze, and monitor devices without reliance on definitions alone. Which of the following solutions BEST fits this use case?

DLP

NGFW

EDR

HIPS

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?