wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

CompTIA Sec+

Total questions: 20

Worksheet time: 20mins

Name
Class
Date
1.

A company processes highly sensitive data and senior management wants to protect the sensitive data by utilizing classification labels. Which of the following access control schemes would be BEST for the company to implement?

a)

Discretionary

b)

Rule-based

c)

Role-based

d)

Mandatory

2.

The CSIRT is reviewing the lessons learned from a recent incident. A worm was able to spread unhindered throughout the network and infect a large number of computers and servers. Which of the following recommendations would be BEST to mitigate the impacts of a similar incident in the future?

a)

Install a NIDS device at the boundary.

b)

Segment the network with firewalls.

c)

Update all antivirus signatures daily.

d)

Implement application blacklisting.

3.

A network engineer needs to create a plan for upgrading the wireless infrastructure in a large office. Priority must be given to areas that are currently experiencing latency and connection issues. Which of the following would be the BEST resource for determining the order of priority?

a)

Nmap

b)

Heat Map

c)

Network DIagrams

d)

Wireshark

4.

An organization is developing a plan in the event of a complete loss of critical systems and data. Which of the following plans is the organization MOST likely developing?

a)

Incident Response

b)

COmmunications

c)

Disaster Recovery

d)

Data Retention

5.

A company is adopting a BYOD policy and is looking for a comprehensive solution to protect company information on user devices. Which of the following solutions would BEST support the policy?

a)

Mobile device management

b)

Full-device encryption

c)

Remote wipe

d)

Biometrics

6.

A database administrator needs to ensure all passwords are stored in a secure manner, so the administrate adds randomly generated data to each password before string. Which of the following techniques BEST explains this action?

a)

Predictability

b)

Key STretching

c)

Salting

d)

Hashing

7.

When selecting a technical solution for identity management, an architect chooses to go from an in-house to a third-party SaaS provider. Which of the following risk management strategies is this an example of?

a)

Acceptance

b)

Mitigation

c)

Avoidance

d)

Transference

8.

Which of the following incident response steps involves actions to protect critical systems while maintaining business operations?

a)

Investigation

b)

Containment

c)

Recovery

d)

Lessons Learned

9.

Which of the following disaster recovery tests is The LEAST time-consuming for the disaster recovery team?

a)

Tabletop

b)

Parallel

c)

Full Interruption

d)

Simulation

10.

An organization suffered an outage and a critical system took 90 minutes to come back online. Though there was no data loss during the outage, the expectation was that the critical system would be available again within 60 minutes Which of the following is the 60-minute expectation an example of:

a)

MTBF

b)

RPO

c)

MTTR

d)

RTO

11.

A company's Chief Information Office (CIO) is meeting with the Chief Information Security Officer (CISO) to plan some activities to enhance the skill levels of the company's developers. Which of the following would be MOST suitable for training the developers'?

a)

A capture-the-flag competition

b)

Phishing simulation

c)

Physical security training

d)

Configuration training

12.

Which of the following is the purpose of a risk register?

a)

To define the level or risk using probability and likelihood

b)

To register the risk with the required regulatory agencies

c)

To identify the risk, the risk owner, and the risk measures

d)

To formally log the type of risk mitigation strategy the organization is using

13.

A security administrator suspects there may be unnecessary services running on a server. Which of the following tools will the administrator MOST likely use to confirm the suspicions?

a)

Nmap

b)

Wireshark

c)

Autopsy

d)

DNSEnum

14.

A host was infected with malware. During the incident response, Joe, a user, reported that he did not receive any emails with links, but he had been browsing the Internet all day. Which of the following would MOST likely show where the malware originated?

a)

DNS logs

b)

Web server logs

c)

SIP traffic logs

d)

SNMP logs

15.

Joe, an employee, receives an email stating he won the lottery. The email includes a link that requests a name, mobile phone number, address, and date of birth be provided to confirm Joe’s identity before sending him the prize. Which of the following BEST describes this type of email?

a)

Spear phishing

b)

Whaling

c)

Phishing

d)

Vishing

16.

A security analyst is using a recently released security advisory to review historical logs, looking for the specific activity that was outlined in the advisory. Which of the following is the analyst doing?

a)

A packet capture

b)

User behavior analysis

c)

Threat hunting

d)

Credentialed vulnerability scanning

17.

An organization wants to implement a third factor to an existing multifactor authentication. The organization already uses a smart card and password. Which of the following would meet the organization’s needs for a third factor?

a)

Date of birth

b)

Fingerprints

c)

PIN

d)

TPM

18.

A user is concerned that a web application will not be able to handle unexpected or random input without crashing. Which of the following BEST describes the type of testing the user should perform?

a)

Code signing

b)

Fuzzing

c)

Manual code review

d)

Dynamic code analysis

19.

A Chief Information Security Officer (CISO) is concerned about the organization's ability to continue business operation in the event of a prolonged DDoS attack on its local datacenter that consumes database resources. Which of the following will the CISO MOST likely recommend to mitigate this risk?

a)

Upgrade the bandwidth available into the datacenter

b)

Implement a hot-site failover location

c)

Switch to a complete SaaS offering to customers

d)

Implement a challenge response test on all end-user queries

20.

A network administrator would like to configure a site-to-site VPN utilizing iPSec. The administrator wants the tunnel to be established with data integrity encryption, authentication and anti- replay functions Which of the following should the administrator use when configuring the VPN?

a)

AH

b)

EDR

c)

ESP

d)

DNSSEC