wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

security+ (601)

Total questions: 20

Worksheet time: 5hrs 0mins

Name
Class
Date
1.

You’ve hired a third-party to gather information about your company’s servers and data. The third-party will not have direct access to your internal network but can gather information from any other source. Which of the following would BEST describe this approach?

a)

Backdoor testing

b)

Passive footprinting

c)

OS fingerprinting

d)

Partially known enviroment

2.

Which of these protocols use TLS to provide secure communication?

a)

HTTPS

b)

SSH

c)

FTPS

d)

SNMPv2

e)

SRTP

3.

Which of these threat actors would be MOST likely to attack systems for direct financial gain?

a)

Organized crime

b)

Hacktivist

c)

Nation state

d)

Compeititor

4.

. A security incident has occurred on a file server. Which of the following data sources should be gathered to address file storage volatility?

a)

Partition data

b)

Kernel statistics

c)

ROM data

d)

Temporary file systems

e)

Process table

5.

An IPS at your company has found a sharp increase in traffic from all-in-one printers. After researching, your security team has found a vulnerability associated with these devices that allows the device to be remotely controlled by a third-party. Which category would BEST describe these devices?

a)

IoT

b)

RTOS

c)

MFD

d)

SoC

6.

. Which of the following standards provides information on privacy and managing PII?

a)

ISO 31000

b)

ISO 27002

c)

ISO 27701

d)

ISO 27001

7.

Elizabeth, a security administrator, is concerned about the potential for data exfiltration using external storage drives. Which of the following would be the BEST way to prevent this method of data exfiltration?

a)

Create an operating system security policy to prevent the use of removable media

b)

Monitor removable media usage in host-based firewall logs

c)

Only allow applications that do not use removable media

d)

Define a removable media block rule in the UTM

8.

A CISO (Chief Information Security Officer) would like to decrease the response time when addressing security incidents. Unfortunately, the company does not have the budget to hire additional security engineers. Which of the following would assist the CISO with this requirement?

a)

ISO 27701

b)

PKI

c)

IaaS

d)

SOAR

9.

• Access records from all devices must be saved and archived • Any data access outside of normal working hours must be immediately reported • Data access must only occur inside of the country • Access logs and audit reports must be created from a single database Which of the following should be implemented by the security team to meet these requirements?

a)

Restrict login access by IP address and GPS location

b)

Consolidate all logs on a SIEM

c)

Add additional password complexity for accounts that access data

d)

Conduct monthly permission auditing

e)

Enable time-of-day restrictions on the authentication server

10.

UTC 04/05/2018 03:09:15809 AV Gateway Alert

136.127.92.171 80 -> 10.16.10.14 60818

Gateway Anti-Virus Alert: XPACK.A_7854 (Trojan) blocked.

Which of the following can be observed from this log information?

a)

The victim's IP address is 136.127.92.171

b)

A download was blocked from a web server

c)

A botnet DDoS attack was blocked

d)

The Trojan was blocked, but the file was not

11.

Your connection is not private.

NET::ERR_CERT_INVALID

Which of the following attacks would be the MOST likely reason for this message?

a)

Brute force

b)

Dos

c)

On-path

d)

Dissassociation

12.

Which of the following would be the BEST way to provide a website login using existing credentials from a third-party site?

a)

Federation

b)

802.1X

c)

PEAP

d)

EAP-FAST

13.

A system administrator, Daniel, is working on a contract that will specify a minimum required uptime for a set of Internet-facing firewalls. Daniel needs to know how often the firewall hardware is expected to fail between repairs. Which of the following would BEST describe this information?

a)

MTBF

b)

RTO

c)

MTTR

d)

MTTF

14.

An attacker calls into a company’s help desk and pretends to be the director of the company’s manufacturing department. The attacker states that they have forgotten their password and they need to have the password reset quickly for an important meeting. What kind of attack would BEST describe this phone call?

a)

Social engineering

b)

Tailgating

c)

Vishing

d)

On-path

15.

A security administrator has been using EAP-FAST wireless authentication since the migration from WEP to WPA2. The company’s network team now needs to support additional authentication protocols inside of an encrypted tunnel. Which of the following would meet the network team’s requirements?

a)

EAP-TLS

b)

PEAP

c)

EAP-TTLS

d)

EAP-MSCHAPv2

16.

Which of the following would be commonly provided by a CASB?

a)

List of all internal Windows devices that have not installed the latest security patches

b)

List of applications in use

c)

Centralized log storage facility

d)

. Verification of encrypted data transfers

17.

The embedded OS in a company’s time clock appliance is configured to reset the file system and reboot when a file system error occurs. On one of the time clocks, this file system error occurs during the startup process and causes the system to constantly reboot. Which of the following BEST describes this issue?

a)

DLL injection

b)

Resource exhaustion

c)

race condition

d)

Weak configuration

18.

A recent audit has found that existing password policies do not include any restrictions on password attempts, and users are not required to periodically change their passwords. Which of the following would correct these policy issues?

a)

Password complexity

b)

Password expiration

c)

Password history

d)

Password lockout

e)

Password recovery

19.

What kind of security control is associated with a login banner?

a)

Preventive

b)

Deterrent

c)

Corrective

d)

Detective

e)

Physical

20.

A security team has been provided with a noncredentialed vulnerability scan report created by a thirdparty. Which of the following would they expect to see on this report?

a)

A summary of all files with invalid group assignments

b)

A list of all unpatched operating system files

c)

The version of web server software in use

d)

A list of local user accounts