Font size
S
M
L
XL
WorksheetsD3 - p2
Total questions: 49
Worksheet time: 49mins
Name
Class
Date
1.
Darcy’s organization is deploying serverless computing technology to better meet the needs of developers and users. In a serverless model, who is normally responsible for configuring operating system security controls?
a)
Software developer
b)
Cybersecurity professional
c)
Cloud architect
d)
Vendor
2.
Harold is assessing the susceptibility of his environment to hardware failures and would like to identify the expected lifetime of a piece of hardware. What measure should he use for this?
a)
MTTR
b)
MTTF
c)
RTO
d)
MTO
3.
Chris is designing a cryptographic system for use within his company. The company has 1,000 employees, and they plan to use an asymmetric encryption system. They would like the system to be set up so that any pair of arbitrary users may communicate privately. How many total keys will they need?
a)
500
b)
1000
c)
2000
d)
4950
4.
Gary is concerned about applying consistent security settings to the many mobile devices used throughout his organization. What technology would best assist with this challenge?
a)
MDM
b)
IPS
c)
IDS
d)
SIEM
5.
Alice sent a message to Bob. Bob would like to demonstrate to Charlie that the message he received definitely came from Alice. What goal of cryptography is Bob attempting to achieve?
a)
Authentication
b)
Confidentiality
c)
Nonrepudiation
d)
Integrity
6.
Rhonda is considering the use of new identification cards for physical access control in her organization. She comes across a military system that uses the card shown here. What type of card is this?
a)
Smart card
b)
Proximity card
c)
Magnetic stripe card
d)
Phase three card
7.
Gordon is concerned about the possibility that hackers may be able to use the Van Eck radiation phenomenon to remotely read the contents of computer monitors in a restricted work area within his facility. What technology would protect against this type of attack?
a)
TCSEC
b)
SCSI
c)
GHOST
d)
TEMPEST
8.
Jorge believes that an attacker has obtained the hash of the Kerberos service account from one of his organization’s Active Directory servers. What type of attack would this enable?
a)
Golden ticket
b)
Kerberoasting
c)
Pass the ticket
d)
Brute force
9.
Sherry conducted an inventory of the cryptographic technologies in use within her organization and found the following algorithms and protocols in use. Which one of these technologies should she replace because it is no longer considered secure?
a)
MD5
b)
AES
c)
PGP
d)
WPA3
10.
Robert is investigating a security breach and discovers the Mimikatz tool installed on a system in his environment. What type of attack has likely taken place?
a)
Password cracking
b)
Pass the hash
c)
MAC spoofing
d)
ARP poisoning
11.
Tom is a cryptanalyst and is working on breaking a cryptographic algorithm’s secret key. He has a copy of an intercepted message that is encrypted, and he also has a copy of the decrypted version of that message. He wants to use both the encrypted message and its decrypted plaintext to retrieve the secret key for use in decrypting other messages. What type of attack is Tom engaging in?
a)
Chosen ciphertext
b)
Chosen plaintext
c)
Known plaintext
d)
Brute force
12.
A hacker recently violated the integrity of data in James’s company by modifying a file using a precise timing attack. The attacker waited until James verified the integrity of a file’s contents using a hash value and then modified the file between the time that James verified the integrity and read the contents of the file. What type of attack took place?
a)
Social engineering
b)
TOCTOU
c)
Data diddling
d)
Parameter checking
13.
Carl is deploying a set of video sensors that will be placed in remote locations as part of a research project. Due to connectivity limitations, he would like to perform as much image processing and computation as possible on the device itself before sending results back to the cloud for further analysis. What computing model would best meet his needs?
a)
Serverless computing
b)
Edge computing
c)
IaaS computing
d)
SaaS computing
14.
What action can you take to prevent accidental data disclosure due to wear leveling on an SSD device before reusing the drive?
a)
Reformatting
b)
Disk encryption
c)
Degaussing
d)
Physical destruction
15.
Johnson Widgets strictly limits access to total sales volume information, classifying it as a competitive secret. However, shipping clerks have unrestricted access to order records to facilitate transaction completion. A shipping clerk recently pulled all of the individual sales records for a quarter from the database and totaled them up to determine the total sales volume. What type of attack occurred?
a)
Social engineering
b)
Inference
c)
Aggregation
d)
Data diddling
16.
What physical security control broadcasts false emanations constantly to mask the presence of true electromagnetic emanations from computing equipment?
a)
Faraday cage
b)
Copper-infused windows
c)
Shielded cabling
d)
White noise
17.
In a software as a service cloud computing environment, who is normally responsible for ensuring that appropriate firewall controls are in place to protect the application?
a)
Customer’s security team
b)
Vendor
c)
Customer’s networking team
d)
Customer’s infrastructure management team
18.
Alice has read permissions on an object, and she would like Bob to have those same rights. Which one of the rules in the Take-Grant protection model would allow her to complete this operation?
a)
Create rule
b)
Remove rule
c)
Grant rule
d)
Take rule
19.
As part of his incident response process, Charles securely wipes the drive of a compromised machine and reinstalls the operating system (OS) from original media. Once he is done, he patches the machine fully and applies his organization’s security templates before reconnecting the system to the network. Almost immediately after the system is returned to service, he discovers that it has reconnected to the same botnet it was part of before. Where should Charles look for the malware that is causing this behavior?
a)
The operating system partition
b)
The system BIOS or firmware
c)
The system memory
d)
The installation media
20.
Lauren implements ASLR to help prevent system compromises. What technique has she used to protect her system?
a)
Encryption
b)
Mandatory access control
c)
Memory address randomization
d)
Discretionary access control
21.
Alan intercepts an encrypted message and wants to determine what type of algorithm was used to create the message. He first performs a frequency analysis and notes that the frequency of letters in the message closely matches the distribution of letters in the English language. What type of cipher was most likely used to create this message?
a)
Substitution cipher
b)
AES
c)
Transposition cipher
d)
3DES
22.
The Double DES (2DES) encryption algorithm was never used as a viable alternative to the original DES algorithm. What implementation attack is 2DES vulnerable to that does not exist for the DES or 3DES approach?
a)
Chosen ciphertext
b)
Brute force
c)
Man-in-the-middle
d)
Meet-in-the-middle
23.
Grace would like to implement application control technology in her organization. Users often need to install new applications for research and testing purposes, and she does not want to interfere with that process. At the same time, she would like to block the use of known malicious software. What type of application control would be appropriate in this situation?
a)
Blacklisting
b)
Graylisting
c)
Whitelisting
d)
Bluelisting
24.
Warren is designing a physical intrusion detection system for use in a sensitive media storage facility and wants to include technology that issues an alert if the communications lines for the alarm system are unexpectedly cut. What technology would meet this requirement?
a)
Heartbeat sensor
b)
Emanation security
c)
Motion detector
d)
Faraday cage
25.
John and Gary are negotiating a business transaction, and John must demonstrate to Gary that he has access to a system. He engages in an electronic version of the “magic door” scenario shown here. What technique is John using?
a)
Split-knowledge proof
b)
Zero-knowledge proof
c)
Logical proof
d)
Mathematical proof
26.
After scanning all of the systems on his wireless network, Mike notices that one system is identified as an iOS device running a massively out-of-date version of Apple’s mobile operating system. When he investigates further, he discovers that the device is an original iPad and that it cannot be updated to a current secure version of the operating system. What would be the best option for handling this device?
a)
Retire or replace the device.
b)
Isolate the device on a dedicated wireless network.
c)
Install a firewall on the tablet.
d)
Reinstall the OS.
27.
Tonya believes that an attacker was able to eavesdrop on legitimate HTTPS communications between her users and remote web servers by engaging in a DNS poisoning attack. After conducting DNS poisoning, what technique would an attacker likely use to conduct this eavesdropping?
a)
Man-in-the-middle
b)
Brute-force
c)
Timing
d)
Meet-in-the-middle
28.
Howard is choosing a cryptographic algorithm for his organization, and he would like to choose an algorithm that supports the creation of digital signatures. Which one of the following algorithms would meet his requirement?
a)
RSA
b)
3DES
c)
AES
d)
Blowfish
29.
Laura is responsible for securing her company’s web-based applications and wants to conduct an educational program for developers on common web application security vulnerabilities. Where can she turn for a concise listing of the most common web application issues?
a)
CVE
b)
NSA
c)
OWASP
d)
CSA
30.
The Bell-LaPadula and Biba models implement state machines in a fashion that uses what specific state machine model?
a)
Information flow
b)
Noninterference
c)
Cascading
d)
Feedback
31.
During a third-party vulnerability scan and security test, Danielle’s employer recently discovered that the embedded systems that were installed to manage her company’s new buildings have a severe remote access vulnerability. The manufacturer has gone out of business, and there is no patch or update for the devices. What should Danielle recommend that her employer do about the hundreds of devices that are vulnerable?
a)
Identify a replacement device model and replace every device.
b)
Turn off all of the devices.
c)
Move the devices to a secure and isolated network segment.
d)
Reverse engineer the devices and build an in-house patch.
32.
What type of motion detector senses changes in the electromagnetic fields in monitored areas?
a)
Infrared
b)
Wave pattern
c)
Capacitance
d)
Photoelectric
33.
Mike has been tasked with preventing an outbreak of malware like Mirai, a botnet that targeted IP-based cameras and routers. What type of systems should be protected in his organization?
a)
Servers
b)
SCADA
c)
Mobile devices
d)
Internet of Things (IoT) devices
34.
Which one of the following statements is correct about the Biba model of access control?
a)
It addresses confidentiality and integrity.
b)
It addresses integrity and availability.
c)
It prevents covert channel attacks.
d)
It focuses on protecting objects from integrity threats.
35.
In Transport Layer Security, what type of key is used to encrypt the actual content of communications between a web server and a client?
a)
Ephemeral session key
b)
Client’s public key
c)
Server’s public key
d)
Server’s private key
36.
Beth would like to include technology in a secure area of her data center to protect against unwanted electromagnetic emanations. What technology would assist her with this goal?
a)
Heartbeat sensor
b)
Faraday cage
c)
Piggybacking
d)
WPA2
37.
In a virtualized computing environment, what component is responsible for enforcing separation between guest machines?
a)
Guest operating system
b)
Hypervisor
c)
Kernel
d)
Protection manager
38.
Rick is an application developer who works primarily in Python. He recently decided to evaluate a new service where he provides his Python code to a vendor who then executes it on their server environment. What type of cloud computing environment is this service?
a)
SaaS
b)
PaaS
c)
IaaS
d)
CaaS
39.
A component failure in the primary HVAC system leads to a high temperature alarm in the data center that Kim manages. After resolving the issue, what should Kim consider to prevent future issues like this?
a)
A closed loop chiller
b)
Redundant cooling systems
c)
Swamp coolers
d)
Relocating the data center to a colder climate
40.
Tommy is planning to implement a power conditioning UPS for a rack of servers in his data center. Which one of the following conditions will the UPS be unable to protect against if it persists for an extended period of time?
a)
Fault
b)
Blackout
c)
Sag
d)
Noise
41.
Which one of the following humidity values is within the acceptable range for a data center operation?
a)
0 percent
b)
10 percent
c)
25 percent
d)
40 percent
42.
Kristen’s organization suffered a ransomware infection and has lost access to critical business data. She is considering paying the ransom to regain access to her data. Which of the following statements about this payment are correct? (Select all that apply.)
a)
Payment of the ransom may be illegal.
b)
Payment of the ransom may result in further demands for payments.
c)
Payment of the ransom guarantees access to the decryption key.
d)
Payment of the ransom may cause a data breach.
43.
Alex’s employer creates most of their work output as PDF files. Alex is concerned about limiting the audience for the PDF files to those individuals who have paid for them. What technology can he use to most effectively control the access to and distribution of these files?
a)
EDM
b)
Encryption
c)
Digital signatures
d)
DRM
44.
As part of his team’s forensic investigation process, Matt signs out drives and other evidence from an evidence storage facility before working with them. What type of documentation is he creating?
a)
Criminal
b)
Chain of custody
c)
Civil
d)
CYA
45.
Todd believes that a digital certificate used by his organization has been compromised and he wants to add it to the certificate revocation list (CRL). What element of the certificate goes on the CRL?
a)
Serial number
b)
Public key
c)
Digital signature
d)
Private key
46.
Alison is examining a digital certificate presented to her by her bank’s website. Which one of the following requirements is not necessary for her to trust the digital certificate?
a)
She knows that the server belongs to the bank.
b)
She trusts the certificate authority.
c)
She verifies that the certificate is not listed on a CRL.
d)
She verifies the digital signature on the certificate.
47.
Which one of the following is an example of a covert timing channel when used to exfiltrate information from an organization?
a)
Sending an electronic mail message
b)
Posting a file on a peer-to-peer file sharing service
c)
Typing with the rhythm of Morse code
d)
Writing data to a shared memory space
48.
Which one of the following would be a reasonable application for the use of self-signed digital certificates?
a)
Digital commerce website
b)
Banking application
c)
Internal scheduling application
d)
Customer portal
49.
Ron is investigating a security incident that took place at a highly secure government facility. He believes that encryption keys were stolen during the attack and finds evidence that the attackers used dry ice to freeze an encryption component. What type of attack was likely attempted?
a)
Side channel attack
b)
Brute-force attack
c)
Timing attack
d)
Fault injection attack
Reset
