wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cousera Final Exam 201-300

Total questions: 100

Worksheet time: 56mins

Name
Class
Date
1.

201. Which shortcut will switch between running applications?

a)

* WinS

b)

Ctrl-S

c)

• Win-Tab

d)

• Alt-Tab

2.

202. Where does Windows 10 store 32-bit applications?

a)

• \Program Files (x86)

b)

• \System32

c)

• \Program Files

d)

\System

3.

203. What is the shortcut to open the Task Manager

a)

Ctrl+Alt+Del

b)

Ctrl+Shift+Esc

c)

• Ctrl+T

d)

• Ctrl+Shift+

4.

204. Which three (3) statements about Linux are True?

a)

Linux is licensed under the General Public License (GNU).

b)

Linux is an opensource operating system.

c)

Linux was developed and is now owned by Red Hat.

d)

Linux guarantees end users freedom to run, study, share, and modify the software.

5.

205. Executable files such as ping, grep and cp are stored in which directory?

a)

• /root

b)

• /etc

c)

• /sbin

d)

• /bin

6.

206. The Linux “kill” command does which of the following?

a)

Permanently delete a file.

b)

Permanently delete a system directory

c)

Stop an executing process.

d)

Performs an emergency system down.

7.

207. What permissions can be set on a file in Linux?

a)

read, write, execute

b)

read, edit, run

c)

view, modify, remove

d)

read, edit, delete

8.

08. Which basic Linux command deletes an empty directory?

a)

Less

b)

Rm

c)

mv

d)

rmdir

9.

209. Which is not a group that can own a file?

a)

·        everybody

b)

• group

c)

• user

d)

• anybody

10.

210. Which three (3) groups can “own” a file in Linux?

a)

user, group, everybody

b)

user, team, world

c)

self, other, all

d)

system, user, group

11.

211. What can be known about a file with permissions set to “-rwxr-x-r–”?

a)

• The file is a directory and the rwx indicators apply to all files within that directory.

b)

The user can read, write and execute the file; the group cannot modify the file, and others not in the group an read it only. You cannot tell the file/directory type from this string.

c)

The file is not a directory; the user can read, write and execute the file; the group cannot modify the file, and others not in the group an read it only.

d)

.

• The file is a directory, the user can read, write and execute the file; others can read and execute the file, and the group can execute it only.

12.

212. A person using Linux would normally interact directly with which?

a)

• The API.

b)

• The shell.

c)

• The HCL.

d)

• The kerne

13.

213. In the Linux file system, what is the highest level in the directory structure?

a)

• bin

b)

• root

c)

• kernel

d)

• home

14.

214. In Linux, a directory is a special type of ____.

a)

file

b)

text

c)

htm

d)

document

15.

215. What does the nano command do?

a)

nano displays the first 10 lines of any text file.

b)

nano deletes all empty files and directories.

c)

nano is a file compression utility.

d)

nano is a basic text file editor

16.

216. Application configuration files are usually stored in which directory?

a)

• /sbin

b)

• /root

c)

• /etc

d)

• /bin

17.

217. When configuring a new application, in which directory should you have it save log files?

a)

• /bin

b)

• /var

c)

• /log

d)

• In the same directory where the application is located

18.

218. The Linux “cat” command does which of the following?

a)

Creates a catalog of all files in the file system.

b)

Puts the file system catalog into edit mode for rapid deletion or insertion of files and directories.

c)

Concatenates 2 or more files together.

d)

Copies file properties.

19.

219. What application can you use to see all the active running applications and processes on mac OS?

a)

• Activity Monitor

b)

• Console

c)

• Disk Utility

d)

• System information

20.

220. What feature in macOS prevents unauthorized applications from being installed?

a)

Apple Watch

b)

• Gatekeeper

c)

• FileVault

d)

• Firewall

21.

221. Which three (3) utilities are found when booting macOS to the recovery partition? (Select 3)

a)

Safari

b)

• Disk Utility

c)

• Keychain Access

d)

• Time Machine

22.

222. Where does the hypervisor sit in a virtual architecture?

a)

Between the hardware and the operating system(s).

b)

Between the operating system and the applications.

c)

Between the applications and the user.

d)

Remotely to coordinate tasks between different physical computers.

23.

223. Which are the first two steps to perform in a cloud deployment?

a)

• Automate and Manage

b)

• Integrate and Optimize

c)

• Consolidate and Virtualize

24.

224. Which are the three (3) most common forms of Cloud computing?

a)

Public Cloud

b)

• Universal Cloud

c)

• Private Cloud

d)

• Hybrid Cloud

25.

225. Which type of cloud is the best choice for a start-up company with no existing IT infrastructure and limited funds?

a)

• Public Cloud

b)

• Private Cloud

c)

• Hybrid Cloud

d)

• All of the above.

26.

226. Which three (3) are the primary benefits of cloud computing?

a)

Efficiency

b)

• Flexibility

c)

• Strategic Value

d)

• Security

27.

227. Which is a primary security consideration in a cloud environment?

a)

Disaster Recovery and Business Continuity Plan

b)

Governance Plan

c)

Compliance

d)

All of the above.

28.

228. Virtualization allows you to create multiple simulated environments or dedicated resources from how many physical hardware systems?

a)

1

b)

2

c)

3

d)

Unlimited

29.

229. What relays requests from the VM to the actual hardware?

a)

• Hypervisor

b)

HyperX

c)

SpaceX

d)

VisorHyper

30.

230. Which two steps of a cloud deployment are performed after you move your applications to the cloud?

a)

• Consolidate and Virtualize

b)

• Integrate and Optimize

c)

• Automate and Manage

31.

231. Which type of cloud is the best choice for a company with a robust existing IT infrastructure and very serious data privacy concerns?

a)

• Public Cloud

b)

• Private Cloud

c)

• Hybrid Cloud

d)

• All of the above.

32.

232. Which is a primary security consideration in a cloud environment?

a)

Availability

b)

• Data Security

c)

• Identity and Access Management

d)

• All of the above.

33.

233. Which of the bad guys are described as "They are "in" an organization but are human and make mistakes"?

a)

Inadvertent Actor

b)

• Malicious Insiders

c)

• Outsiders

d)

• Employees

34.

234. Which is NOT one of the security controls?

a)

• Operational

b)

• Technical

c)

• Testing

d)

• Physical

35.

235. What year did the GDPR come into effect?

a)

2018

b)

• 2017

c)

• 2016

d)

2014

36.

236. Which three (3) of these obligations are part of the 5 key GDPR obligations? Check all that apply

a)

Security of Public Data

b)

Accountability of Compliance

c)

Consent

d)

• Rights of EU Data Subject

37.

237. Which is the foundational principle that everyone will get during a SOC audit?

a)

Security

b)

Confidentiality

c)

• Availability

d)

• Privacy

38.

238. The HIPAA security rule requires covered entites to maintain which two (2) reasonable safeguards for protecting e-PHI?

a)

• Informational

b)

• Operational

c)

• Technical

d)

• Physical

39.

239. HIPAA Administrative safeguards include which two (2) of the following?

a)

• Workforce Training and Management

b)

Integrity Controls

c)

• Access Controls

d)

• Security Personnel

40.

240. PCI includes 264 requirements grouped under how many main requirements?

a)

5

b)

10

c)

12

d)

20

41.

241. If you are a mature organization which IS Controls Implementation Group would you use?

a)

Do not need a controls implementation group due to maturity of my organization

b)

Implementation Group 3

c)

Implementation Group 1

d)

Implementation Group 2

42.

242. A security attack is defined as which of the following?

a)

An event that has been identified by correlation and analytics tools as a malicious activity.

b)

Establish scope, readiness assessment, gap remediation, testing/auditing, management reporting

43.

243. Which order does a typical compliance process follow?

a)

Establish scope, readiness assessment, gap remediation, testing/auditing, management reporting

b)

An event that has been identified by correlation and analytics tools as a malicious activity.

44.

244. Under GDPR who determines the purpose and means of processing of personal data?

a)

Controller

b)

Switch

c)

Router

d)

SLACC

45.

245. Under the International Organization for Standardization (ISO) which standard focuses on Privacy?

a)

• ISO 27018

b)

CR 777

c)

MCM 2001

d)

osi 2875

46.

246. Which SOC report is closest to an ISO report?

a)

type1

b)

type 2

c)

type 3

d)

type 4

47.

247. What is an auditor looking for when they test control the control for implementation over an entire offering with no gaps?

a)

• Completeness

b)

Accomplishment

c)

Award

d)

Complete

48.

278. The HIPAA Security Rule requires covered entities to maintain which three (3) reasonable safeguards for protecting e-PHI?

a)

• physical

b)

• technical

c)

• administrative

d)

virtual

49.

249. HIPAA Administrative safeguards include which two (2) of the following?

a)

• Workforce training and management

b)

• Security Personnel

c)

Physical trainning

50.

250. Who is the governing entity for HIPAA?

a)

US Department of Health and Human Services Office of Civil Rights

b)

Fantazya Biiti Anas

51.

251. HIPAA Physical safeguards include which two (2) of the following?

a)

Workstation and Device Security

b)

Facility Access and Control

c)

Access Point

52.

252. PCI uses which three (3) of the following Card Holder Data Environment categories to determine scope?

a)

Technology

b)

• Processes

c)

• People

d)

Other

53.

253. One PCI Requirement is using an approved scanning vendor to scan at what frequency?

a)

• Quarterly

b)

Diidicult

c)

All the above

d)

pepsi

54.

254. In which CIS control category will you find Incident Response and Management?

a)

Organizational

b)

Special

c)

Full

d)

All the above

55.

255. Which is NOT an example of a client?

a)

• Cellphone

b)

• Laptop

c)

• Personal Computer

d)

• e-mail Serve

56.

256. Which three (3) threat key factors should be considered when looking at an Endpoint Security Solution?

a)

• basic operations

b)

• threat hunting

c)

• user education

d)

• detection response

57.

257. A patch is a set of changes to a computer program or its data designed for which three (3) functions?

a)

delete

b)

• update

c)

• improve

d)

• fix

58.

258. Which two types of updates do most organizations patch as soon as possible after testing?

a)

Critical and Software

b)

Security and Service Packs

c)

Security and Critical

d)

Critical and Service Packs

59.

259. Which three (3) are common Endpoint attack types?

a)

Whale hunting

b)

• Ad Network

c)

• SQL Injection

d)

• Spear Phishing

60.

260. Endpoint detection and response includes which three (3) of these key technologies?

a)

Automatic policy creation for endpoints.

b)

Continuous monitoring.

c)

One-Time patching process.

d)

Zero-day OS updates.

61.

261. Which common endpoint attack is targeted at supply chain infiltration?

a)

Island Hopping

b)

Water Hole

c)

Ransomware

d)

Spear Phishing

62.

262. What two windows security updates do most organizations always patch?

a)

critical and important

b)

important and moderate

c)

high and important

d)

critical and high

63.

263. How frequent will most organizations distribute patches?

a)

• Monthly

b)

• Weekly

c)

• Annually

d)

As soon as patches are released

64.

264. Which three (3) objects are typically managed by active directory?

a)

• Network User

b)

• Volumes

c)

• Local Accounts

d)

• Services

65.

265. Which type of group within Active Directory is used to assign permissions to shared resources?

a)

• Security groups

b)

• Data groups

c)

• Service groups

d)

Distribution groups

66.

266. Kerberos Authentication provides several benefits including which three (3) of the following?

a)

• single sign on

b)

• delegated authentication

c)

• interoperability

d)

• distributed authentification

67.

267. Which of the nine different kinds of Windows events that can be audited is used to see when someone has shutdown or restarted the computer or when a program tries to do something it does not have permission to do?

a)

• Policy change

b)

• System events

c)

• Privilege Use

d)

• Process tracking

68.

268. True or False: Internal commands are built into the shell program and are shell dependent?

a)

TRUE

b)

FALSE

69.

269. Which Linux Run Level shuts down all services when the system is being rebooted?

a)

RunLevel 0: Halt

b)

Run Level 1: Single User

c)

Run Level 5: Graphical

d)

Run Level 6: Reboot

70.

270. Which Windows directory folder stores per-user application data and settings?

a)

\AppData

b)

DataBase

71.

271. Which is NOT an example of a default Windows local user account?

a)

Network Service

b)

Network Security

72.

272. Which feature allows Active Directory to be shared by multiple servers?

a)

• A replication services

b)

Sperate administator

c)

Disable

d)

Create dedicated

73.

273. Which three (3) of the following steps can be taken to help protect sensitive Windows domain accounts? (Select 3)

a)

Separate administrator accounts from user accounts.

b)

Disable the account delegation rights for administrator accounts.

c)

• Create dedicated workstation hosts without Internet and email access.

d)

Disappointed

74.

274. What tool can an administrator use to manage servers on private networks that are not connected to the Internet?

a)

Windows Admin Center

b)

Mac os

c)

Linux OS

75.

275. Which of the nine different kind of Windows events that can be audited is used to see each instance of a user logging on to and logging off from another computer?

a)

• Account logon

b)

Login

c)

Password

76.

276. Which of these commands does not shutdown the Linux operating system?

a)

• reboot

b)

• * itit6

c)

shutdown -r

d)

GGG

77.

277. Which Linux commands are totally shell-independent and usually found in any Linux distribution?

a)

External commands

b)

Common Commands

c)

SAT

78.

278. Which three (3) of the following are common choices of Shell?

a)

tcsh

b)

• Bash

c)

• sh

d)

dt

79.

279. Which of the cryptography basics ensures authentication, non-repudiation and integrity?

a)

Digital Signatures

b)

• Public key encryption

c)

• Symmetric key encryption

d)

• Hashing

80.

280. Complete the following statement.

Data can be encrypted_____

a)

at rest only.

b)

in use only.

c)

in transit only.

d)

at rest, in use, and in transit.

81.

281. Which is NOT a pitfall of encryption?

a)

Using hardcoded/predictable weak keys

b)

Implementing a reliable and proven cryptography

c)

Relying on algorithms being secret

d)

Missing encryption of data and communications

82.

282. True or False: Internal commands are built into the shell program and are shell dependent.

a)

True

b)

False

83.

283. True or False: A whole branch of hacking - Reverse Engineering - is devoted to discovering hidden algorithms and data.

a)

True

b)

False

84.

284. Which is not a key takeaway of best practices of cryptography?

a)

Do rely on your own encryption algorithms.

b)

Not correct

c)

Do rely other encrryption

d)

All the above

85.

285. Which three (3) are true of digital signatures?

a)

Ensures authentication, non-reputiation, and integrity

b)

Keys , Maps

c)

Thread, Clean

86.

286. What is the recommendation to avoid the encrypting data at rest pitfall "Using hardcoded/easily guessed keys"?

a)

• Select cryptographically-random keys, do not reuse keys for different installs.

b)

Hashing provides

c)

the destinanion

d)

Maps data

87.

287. Which two (2) statements are true of the Hash function?

a)

Hashing provides integrity.

b)

Maps data of arbitrary size to data of a fixed size.

c)

The soures Ip

d)

Service

88.

288. Which four (4) factors does a stateless firewall look at to determine if a packet should be allowed pass?

a)

the destination port

b)

if the packet belongs to an open session

c)

the source IP address

d)

the service or protocol used

e)

the destination IP address

89.

289. Can a single firewall conduct both a stateless and stateful inspection?

a)

• Yes, but not on the same packet. A decision is made which type of inspection will be most effective on a packet-by-packet bases.

b)

• No, the latency created by a double inspection is too great to be practical.

c)

• Yes, the stateless inspection is conducted first and then a stateful inspection is done.

d)

No, stateless and stateful firewalls are distinctly different and used for different purposes.

90.

290. True or False: An Intrusion Prevention System (IPS) is generally a passive device that listens to network traffic and alerts an administrator when a potential problem is detected?

a)

True

b)

False

91.

291. Network Address Translation (NAT) typically conducts which of the following translations?

a)

An IP address to a physical address and vice versa.

b)

A MAC address to an IP address and vice versa.

c)

An IP address to a domain name and vice versa

d)

A private network IP address to a public network IP address and vice versa.

92.

292. Which type of NAT routing allows one-to-one mapping between local and global addresses?

a)

Static

b)

• Kinetic

c)

• Dynamic

d)

• Overload

93.

293. Which network layer do IP addresses belong to?

a)

The Physical Layer

b)

The Network Layer

c)

The Data Layer

d)

The Application Layer

94.

294. Which address assures a packet is delivered to a computer on a different network segment from the sender?

a)

The MAC Address

b)

The IP Address

c)

The DNS Address

d)

The DHCP Address

95.

295. A network device that is capable of sending and receiving data at the same time is referred to as which of the following?

a)

Full duplex

b)

Half uplex

c)

Monoplex

d)

Unidirectional

96.

296. True or False: Collision avoidance protocols are critical to the smooth operation of modern networks.

a)

TRUE

b)

FALSE

97.

297. Comparing bridges with switches, which are three (3) characteristics specific to a bridge?

a)

End-user devices share bandwidth on each port.

b)

Virtual LANs are not possible.

c)

Half-duplex transmission.

d)

Virtual LANs are possible

e)

End-user devices share bandwidth on each port.

98.

298. True or False: Switches solved the problem of network loops and improved performance of multicast/broadcast traffic.

a)

False

b)

True

99.

299. If a network server has four (4) network interface cards, how many MAC addresses will be associated with that server?

a)

4

b)

2

c)

1

d)

3

100.

300. True or False: When you connect your laptop to a new network, a new IP address will be assigned.

a)

True

b)

False