NEW
Font size
WorksheetsCySa+ PT5: 3 of 3
Total questions: 20
Worksheet time: 10mins
What tool is NOT useful for capturing or analyzing memory data for forensic analysis on a Windows machine?
Fmem
Volatility Framework
DumpIt
EnCase
Richard’s company processes credit cards and they are required to be compliant with PCI-DSS. If his company has a breach of card data, what type of disclosure will they have to provide?
Notification to local law enforcement
Notification to their acquiring bank
Notification to federal law enforcement
Notification to Visa and Mastercard
Rhonda would like to build some scripts that detect malware beaconing behavior. Which one of the following isn’t a typical means of identifying malware behavior on a network?
Persistence of the beaconing
Beacon protocol
Beaconing interval
Removal of known traffic
What security control provides Windows administrators with an efficient way to manage system configuration settings across a large number of devices?
Patch management
GPO
HIPS
Anti-malware
Tyler needs to implement a security control designed to detect fraudulent cases that happen, regardless of the presence of other security controls. Which of the following is best suited to meet his needs?
Separation of duties
Least privilege
Dual control
Mandatory vacations
The service desk has been receiving a large number of complaints from external users that a web application is responding slow to requests and frequently receives a “connection timed out” error when they attempt to submit information into the application. What software development best practice should have been implemented in order to have prevented this issue from occurring?
stress testing
regression testing
input validation
fuzzing
What SDLC model emphasizes individuals and interactions over processes and tools, customer collaboration over contract negotiation, and working software over comprehensive documentation?
Waterfall
Spiral
Agile
RAD
Of all the items listed, which element is least likely to be found in a data retention policy?
Minimum retention period
Maximum retention period
Description of information needing to be retained
Classification of information
Which party in a federation provides services to members of the federation?
IdP
AP
RP
IP
What secure coding practice helps to ensure characters like <, >, /, and ‘ are not accepted from the data provided by users?
Risk assessment
User output validation
Error message management
User input validation
You have been called into the Chief Technology Officer’s (CTO) office and been asked for a recommendation concerning network monitoring services for the company’s intranet. The CTO requests that your solution have the capability to monitor all traffic to and from the network’s gateway and have the ability to block certain types of content. What solution should you recommend?
Setup of IP filtering on the internal and external interfaces of the gateway router
Installation of an IDS on the internal interface and a firewall on the external interface of the gateway router
Installation of a firewall on the internal interface and a NIDS on the external interface gateway router
Installation of an IPS on both the internal and external interfaces of the gateway router
Which authentication protocol was designed by Cisco to provide authentication, authorization, and accounting services?
RADIUS
CHAP
TACACS+
Kerberos
Charlotte is working on troubleshooting a network issue that involves connectivity. She would like to determine the path where packets flow when following her from her system to a remote host. What tool is best to assist with this task?
ping
netstat
tracert
ipconfig
Your organization wants to update its Acceptable User Policy (AUP) to incorporate its newly implemented password standard that requires the sponsored authentication of guest wireless devices. What should be added to the AUP to support this new requirement?
Sponsored guest passwords must be at least 14 characters in length, contain uppercase and lowercase letters, and contain at least 2 symbols
Wireless infrastructure should use open authentication standards
Guests using the wireless network should provide valid identification when registering their wireless devices
Network authentication of all guest users should occur using 802.1x backed by a RADIUS server
An organization uses Acunetix for software testing. Which of the issues is Acunetix most likely to detect?
Cross-site scripting
Lexical scoping errors
Buffer overflows
Insecure data storage
Marie would like to deploy EMET (Microsoft Enhanced Mitigation Experience Toolkit) to secure her organization’s systems. She wants to use this tool to prevent buffer overflow attacks from specific applications. Which feature would best assist with this?
DLP
ASLR
EMEA
DEP
A cyber security analyst needs to pick a tool in order to be able to identify open ports and services on a host along with the version of the application that is associated with the ports and services. They have decided to choose a command line tool. What tool should they choose?
ping
nmap
netstat
Wireshark
What phase of the software development lifecycle is sometimes known as the acceptance, installation, and deployment phase?
Development
Training and Transition
Operations and Maintenance
Disposition
Jason is designing an authentication system upgrade for his organization. The organization currently only uses password-based authentication and has been suffering a series of phishing attacks. Jason would like to achieve multi-factor authentication in the new system design. Which one of the following authentication techniques would be most appropriate to add to the current password-based system?
PIN
security questions
smartcard
password complexity
What should a vulnerability report include if a cybersecurity analyst wants it to reflect the assets scanned accurately?
Processor utilization
Virtual hosts
Organizational governance
Log disposition
