CompTIA Sec+

CompTIA Sec+

Professional Development

36 Qs

quiz-placeholder

Similar activities

Networking with Windows Server

Networking with Windows Server

Professional Development

41 Qs

MSB Review!

MSB Review!

Professional Development

38 Qs

C_S4CDK_2022 - SAP Cloud SDK Extensibility Developer

C_S4CDK_2022 - SAP Cloud SDK Extensibility Developer

Professional Development

32 Qs

Baroda Gyani Quiz Nov 2022

Baroda Gyani Quiz Nov 2022

Professional Development

40 Qs

Quiz 1 - BSIS 3A - ITEDEV 313

Quiz 1 - BSIS 3A - ITEDEV 313

Professional Development

40 Qs

CompTIA Sec+

CompTIA Sec+

Assessment

Quiz

Professional Development

Professional Development

Hard

Created by

Yvonne S

FREE Resource

36 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

A user is attempting to navigate to a website from inside the company network using a desktop. When the user types in the URL, https://www.site.com, the user is presented with a certificate mismatch warning from the browser. The user does not receive a warning when visiting http://www.anothersite.com. Which of the following describes this attack?

On-path

Domain hijacking

DNS poisoning

Evil twin

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

The tool that is effective in preventing a user from accessing unauthorized removable media is:

USB data blocker

Faraday cage

Proximity reader

Cable lock

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

A Chief Security Officer is looking for a solution that can provide increased scalability and flexibility for back-end infrastructure, allowing it to be updated and modified without disruption to services. The security architect would like the solution selected to reduce the back-end server resources and has highlighted that session persistence is not important for the applications running on the back-end servers. Which of the following would BEST meet the requirements?

Reverse proxy

Automated patch management

Snapshots

NIC teaming

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following describes a social engineering technique that seeks to exploit a person's sense of urgency?

A phishing email stating a cash settlement has been awarded but will expire soon

A smishing message stating a package is scheduled for pickup

A vishing call that requests a donation be made to a local charity

A SPIM notification claiming to be undercover law enforcement investigating a cybercrime

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

A security analyst is reviewing application logs to determine the source of a breach and locates the following log: https://www.comptia.com/login.php?id='%20or%20'1'='1 Which of the following has been observed?

DLL Injection

API attack

SQLi

XSS

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

An audit identified PII being utilized in the development environment of a critical application. The Chief Privacy Officer (CPO) is adamant that this data must be removed; however, the developers are concerned that without real data they cannot perform functionality tests and search for specific data. Which of the following should a security professional implement to BEST satisfy both the CPO's and the development team's requirements?

Data anonymization

Data encryption

Data masking

Data tokenization

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

A company is implementing a DLP solution on the file server. The file server has PII, financial information, and health information stored on it. Depending on what type of data that is hosted on the file server, the company wants different DLP rules assigned to the data. Which of the following should the company do to help accomplish this goal?

Classify the data.

Mask the data.

Assign the application owner.

Perform a risk analysis.

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?