NEW
Font size
WorksheetsCySa+ PT 4: 3/3
Total questions: 18
Worksheet time: 9mins
Stacy is in charge of Windows workstations in her domain and wants to protect them from buffer overflow attacks. What should be recommended to the domain administrators at her company?
Install an anti-malware tool
Install an antivirus tool
Enable DEP in Windows
Set VirtualAllocProtection to 1 in the registry
What sanitization technique uses only logical techniques to remove data?
Purge
Degauss
Destroy
Clear
Sarah is attempting to determine whether the user of a company-owned laptop accessed a malicious wireless access point. Where can he find a list of the wireless networks the system already knows about?
The registry
The user profile directory
The wireless adapter cache
Wireless network lists are not stored after use.
Steven is performing a forensic analysis of an iPhone backup and has discovered that only some of the information is there, not all of it. What is the best scenario that would result in the backup being used only having partial information?
The backup was interrupted
The backup is encrypted
The backup is a differential backup
The backup is stored in iCloud.
What regulation protects the privacy of student educational records?
HIPPA
FERPA
SOX
GLBA
Of the systems mentioned below, which of the following is not considered a component that belongs to the category of identity management infrastructure?
HR system
LDAP
Provisioning engine
Auditing system
Matt has been offered and accepted a position as a cybersecurity analyst for a bank which is privately owned. Which of the following regulations will have the greatest impact on his cybersecurity program?
HIPAA
GLBA
FERPA
SOX
Isaac is deploying a SIEM (security information and event management) system at his company. He doesn’t currently have the funding to purchase a commercial product, so which item, from the list below, would be a SIEM with an open source licensing model?
AlienVault
QRadar
ArcSight
OSSIM
Which policy contains (or should contain) requirements for removing user access when the user is terminated?
Data ownership policy
Data classification policy
Data retention policy
Account management policy
A cyber security professional visited an e-commerce website by typing in its URL and found that the administrative web frontend for its backend e-commerce application is accessible over the Internet and is only being protected by the default password. What three things should the analyst recommend to the website owner in order to MOST securely remediate this discovered vulnerability?
Rename the URL to a more obscure name, whitelist all corporate IP blocks, and require two-factor authentication
Change the username and default password, whitelist specific source IP addresses, and require two-factor authentication for access
Change the default password, whitelist all specific IP blocks, and require two-factor authentication
Red Team all corporate IP blocks, require an alphanumeric passphrase for the default password, and require two-factor authentication
You have been asked to recommend a few technologies that are PKI X.509 compliant for use in some secure functions in the organization. What technology would NOT meet the compatibility requirement?
AES
PKCS
SSL/TLS
3DES
In which tier of the NIST cybersecurity framework does an organization understand its dependencies and partners?
Partial
Risk informed
Repeatable
Adaptive
Ashley is looking for a physical security control for her organization that will help protect against attacks where an individual could drive a vehicle through the glass doors in the front of the building. Which of the following would be the most effective way to protect against such attack?
Mantraps
Security guards
Bollards
Intrusion alarm
There are four tiers of implementations for the NIST Cybersecurity Framework. What are they, ordered from least mature to most mature?
Partial, Risk Informed, Repeatable, Adaptive
Partial, Repeatable, Risk Informed, Adaptive
Partial, Risk Informed, Managed, Adaptive
Partial, Managed, Risk Informed, Adaptive
Liberty Beverages allows its visiting business partners from SodaCorp to use an available Ethernet port in the Liberty Beverage conference rooms when they are in the building. This access is provided to allow employees of SodaCorp to have the ability to establish a VPN connection back to the SodaCorp network. You have been tasked to ensure that SodaCorp employees can gain direct Internet access from the Ethernet port in the conference room only. But, if a Liberty Beverage employee uses the same Ethernet port, they should be able to access Liberty’s internal network as well. What should you use to ensure this capability?
ACL
SIEM
MAC
NAC
Tony’s manager requires him to receive and inventory the items that his co-worker Barbara orders. This is an example of what kind of personnel control?
Separation of duties
Background checks
Dual control
Mandatory vacation
OWASP (Open Web Application Security Project) maintains an application called Orizon. This application reviews Java classes and points out potential security flaws. What type of tool is Orizon?
Fuzzer
Static code analyzer
Web application assessor
Fault injector
Tony works for a company as a cybersecurity analyst. His company runs a website that allows public postings. Recently, users have started complaining about the website having pop-up messages asking for passwords. Simultaneously, there has been more compromised user accounts. What type of attack is most likely the cause of these happenings?
SQL injection
Cross-site scripting
Cross-site request forgery
Rootkit
