Search Header Logo

CASP+ Chapter 4 - Review

Authored by Timothy Courson

Professional Development

Professional Development

Used 3+ times

CASP+ Chapter 4 - Review
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

20 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following BEST defines risk in IT?

You have a vulnerability with a known active threat.

You have a threat with a known vulnerability

You have a risk with a known threat

You have a threat with a known exploit

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Charles is a system manager. He is conducting a vulnerability assessment. Which of the following is not a requirement for him to know?

Access controls

Understanding of the systems to be evaluated

Potential threats

Passwords

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Gavin has been assigned to hire a third party to do a security assessment of his automotive manufacturing plant. What type of testing will give him the most neutral review of his company's security profile?

OSINT

Vulnerability scanning

No knowledge

Blue hat

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Olivia is the senior security analyst for a large online news organization. She was briefed by the incident response team that the organization has fallen victim to an XSS attack and malicious web scripting code had executed in a trusted web page. What does she do to prevent this from happening in the future?

Make sure the web application can validate and sanitize input

Implement patch management immediately

Request an external penetration test

There is no way to prevent this from happening on a publicly facing web server

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Alonso, a security administrator, has been contacted by a senior human resources manager to investigate a possible situation. They suspect that malicious activities are being caused by internal personnel and need to know if it is intentional or unintentional. After investigating, you believe it is unintentional and the most likely cause is which of the following?

Fraud

Espionage

Embezzlement

Social engineering

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

MaryAnn work for an insurance company. The company has experienced a natural disaster and used a hot site for three months an now is going to return to the primary site. What processes should be restored first?

Finance department

External communication

Mission critical

Least-business critical

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Paul has a mission-critical Windows server with the CVE-2021-24086 vulnerability in his network. It is the target of a distributed denial of service attack and has blue screened twice, Multiple systems are flooding the bandwidth of that system. Which information security goal is being impacted by this type of an attack?

Availability

Baselines

Integrity

Emergency Response

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?