wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Security

Total questions: 165

Worksheet time: 2hrs 36mins

Name
Class
Date
1.

IT security or cybersecurity is

a)

about protecting computers, networks, programs, and data from unintended or malicious access, change, or destruction

b)

is also about ensuring that business functions and personal tasks can still be performed with minimal interference at a reasonable response or throughput rate.

2.

3 Perspektif CIA?

a)

Confidentiality

b)

Integrity

c)

Availability

3.

Confidentiality adalah?

a)

Apakah data pribadi dilindungi untuk mencegah akses yang tidak sah?

b)

Apakah ada langkah-langkah untuk memastikan bahwa data tidak dirusak, dan benar serta otentik?

c)

Apakah pengguna yang berwenang dapat mengakses data saat mereka membutuhkannya?

4.

Integrity adalah?

a)

Apakah data pribadi dilindungi untuk mencegah akses yang tidak sah?

b)

Apakah ada langkah-langkah untuk memastikan bahwa data tidak dirusak, dan benar serta otentik?

c)

Apakah pengguna yang berwenang dapat mengakses data saat mereka membutuhkannya?

5.

Availability adalah?

a)

Apakah data pribadi dilindungi untuk mencegah akses yang tidak sah?

b)

Apakah ada langkah-langkah untuk memastikan bahwa data tidak dirusak, dan benar serta otentik?

c)

Apakah pengguna yang berwenang dapat mengakses data saat mereka membutuhkannya?

6.

Beberapa ancaman security?

a)

Password events

b)

Man-in-the-middle

c)

Drive by

d)

Man-in-the-middle

e)

Social engineering

7.

Apa itu password event?

a)

A process of recovering passwords from data that has been stored or transmitted by a computer system.

b)

Multiple compromised systems are used to compromise a single system.

c)

An outside party secretly relays the communication between two parties, who believe that they are communicating directly with each other.

d)

An event that uses human interaction to manipulate a person to break security procedures to gain access to security details and break through systems

e)

Cybercriminals use unsecure websites to plant malicious codes

8.

Apa itu Distributed denial of service (DDoS)?

a)

A process of recovering passwords from data that has been stored or transmitted by a computer system.

b)

Multiple compromised systems are used to compromise a single system.

c)

An outside party secretly relays the communication between two parties, who believe that they are communicating directly with each other.

d)

An event that uses human interaction to manipulate a person to break security procedures to gain access to security details and break through systems

e)

Cybercriminals use unsecure websites to plant malicious codes

9.

Apa itu Distributed Social engineering?

a)

A process of recovering passwords from data that has been stored or transmitted by a computer system.

b)

Multiple compromised systems are used to compromise a single system.

c)

An outside party secretly relays the communication between two parties, who believe that they are communicating directly with each other.

d)

An event that uses human interaction to manipulate a person to break security procedures to gain access to security details and break through systems

e)

Cybercriminals use unsecure websites to plant malicious codes

10.

Apa itu Distributed Man-in-the-middle ?

a)

A process of recovering passwords from data that has been stored or transmitted by a computer system.

b)

Multiple compromised systems are used to compromise a single system.

c)

An outside party secretly relays the communication between two parties, who believe that they are communicating directly with each other.

d)

An event that uses human interaction to manipulate a person to break security procedures to gain access to security details and break through systems

e)

Cybercriminals use unsecure websites to plant malicious codes

11.

Apa itu Distributed drive by ?

a)

A process of recovering passwords from data that has been stored or transmitted by a computer system.

b)

Multiple compromised systems are used to compromise a single system.

c)

An outside party secretly relays the communication between two parties, who believe that they are communicating directly with each other.

d)

An event that uses human interaction to manipulate a person to break security procedures to gain access to security details and break through systems

e)

Cybercriminals use unsecure websites to plant malicious codes that are automatically downloaded to users’ computers

12.

types of security?

a)

System security

b)

Infrastucture Security

c)

Access management

d)

identity management, physical security

e)

Data security, software security

13.

Kontrol keamanan dibagi menjadi 3 apa saja?

a)

preventive

b)

detective

c)

corrective

14.

security life cycle

a)

prevention

b)

detection

c)

response

d)

analysis

e)

Corrective

15.

Apa itu preventif?

a)

The first line of defense.

b)

Occurs when prevention fails.

c)

Describes what you do upon detection of a security issue

d)

Completes the cycle as you implement new preventative measures to prevent the issue from occurring again in the future.

16.

Apa itu Detection?

a)

The first line of defense.

b)

Occurs when prevention fails.

c)

Describes what you do upon detection of a security issue

d)

Completes the cycle as you implement new preventative measures to prevent the issue from occurring again in the future.

17.

Apa itu Response?

a)

The first line of defense.

b)

Occurs when prevention fails.

c)

Describes what you do upon detection of a security issue

d)

Completes the cycle as you implement new preventative measures to prevent the issue from occurring again in the future.

18.

Apa itu Analysis?

a)

The first line of defense.

b)

Occurs when prevention fails.

c)

Describes what you do upon detection of a security issue

d)

Completes the cycle as you implement new preventative measures to prevent the issue from occurring again in the future.

19.

Which term refers to approaches to information security or strategies for network security that are used to implement several defense layers?

a)

Defense-in-depth

b)

Simplicity in security

c)

Data protection

d)

Layered security

20.

Which tool can automatically detect security weakness in a host?

a)

Firewall

b)

Scanner

c)

Protocol analyzer

d)

Security policy

21.

Which statement describes the function of the traceroute utility?

a)

It determines the journey of a packet of data from its source to its destination.

b)

It watches and stores all traffic that goes through a network.

c)

It discovers network traffic.

d)

It maps networks.

22.

Which utilities are usually associated with Internet Control Message Protocol (ICMP)? (Select TWO.)

a)

tcpdump

b)

nslookup

c)

ping

d)

traceroute

e)

dig

23.

Which organization is responsible for assigning IP addresses worldwide?

a)

Internet Assigned Numbers Authority (IANA)

b)

Common Vulnerabilities and Exposures (CVE)

c)

American Registry for Internet Numbers (ARIN)

d)

Regional internet registry (RIR)

24.

The hardening process berfungsi untuk

a)

melibatkan pengurangan jumlah layanan yang berjalan pada suatu sistem.

b)

a

25.

cara umum untuk harden system

a)

Turning off services that are not needed.

b)

Implementing corporate policies and restrictions

c)

Regularly applying security updates and patches.

26.

panduan pengembangan software securiti

a)

change management, peer review

b)

separation of duties, code escrow

c)

quality assurance

d)

production and development teams

e)

backround check on programmer

27.

which tool can access the interactions between a source and destination by IP address, media access control (MAC) address, port, and protocol?

a)

netstat

b)

wireshark

c)

nexpose

d)

ping

28.

Which tool is a virtual trap that lures malicious actors and gains their information by functioning like a normal computer system?

a)

Switch configuration

b)

Router

c)

Client

d)

Honeypot

29.

Which task helps to harden a system?

a)

Enabling unused services.

b)

Applying patches regularly.

c)

Allowing all permissions for all groups.

d)

Disabling used services.

30.

What is a security baseline?

a)

A starting point for determining what to secure and how to secure it.

b)

A starting point that uses an abnormal condition to determine what to secure.

c)

An ending point for determining how to secure a resource.

d)

A way to provide information that’s related to company documentation and abnormal conditions.

31.

What is the primary goal of systems hardening?

a)

To keep all devices and services running so that they can run processes and scripts in the background.

b)

To reduce isolated security risks by having as many systems as possible be up and running.

c)

To minimize security risks by reducing the set of vulnerabilities that are exposed by a system.

d)

To reduce security risks by setting a schedule of patches, regardless of time, to run once a year.

32.

access control list (ACL) adalah

a)

rules that grant or deny access to the network.

b)

a

33.

A network-based intrusion detection system (NIDS)?

a)

memindai lalu lintas jaringan langsung untuk mengidentifikasi lalu lintas dan anomali protokol dan melaporkannya.

b)

a

34.

ada 2 A network-based intrusion detection system (NIDS) apa saja?

a)

signature-based detection

b)

and behavior-based detection.

35.

Signature-based detection bekerja dengan?

a)

membandingkan lalu lintas jaringan dengan database pola berbahaya yang diketahui dan memberi tahu Anda saat mendeteksi kecocokan.

b)

Jenis deteksi ini menggunakan seperangkat aturan atau baseline yang diketahui untuk mendeteksi anomali atau apa pun yang dianggap di luar norma.

36.

Behavior-based detection bekerja dengan?

a)

membandingkan lalu lintas jaringan dengan database pola berbahaya yang diketahui dan memberi tahu Anda saat mendeteksi kecocokan.

b)

Jenis deteksi ini menggunakan seperangkat aturan atau baseline yang diketahui untuk mendeteksi anomali atau apa pun yang dianggap di luar norma.

37.

Host-based intrusion detection system?

a)

melindungi critical files

b)

mencegah perilaku perubahan yang membuat corrupt

c)

mengidentifikasi aplikasi penipu

d)

melengkapi antivirus software

38.

Backdoor threat adalah

a)

A vulnerability that allows an attacker to bypass normal security checks and access a system.

b)

A vulnerability that allows an attacker to access a system as a privileged (root) user in an undetected fashion.

39.

Rootkit threat adalah

a)

A vulnerability that allows an attacker to bypass normal security checks and access a system.

b)

A vulnerability that allows an attacker to access a system as a privileged (root) user in an undetected fashion.

40.

Firewalls?

a)

firewalls allow you to create rules and exceptions that help control network traffic.

b)

a

41.

Firewalls categories?

a)

packet filters

b)

stateful packet inspection

c)

application level

42.

Tipe konfigurasi untuk perimeter zone

a)

Back-to-back (The perimeter zone is placed between two firewalls)

b)

Three-leg (The perimeter zone is behind the same firewall)

43.

NAT fungsinya adalah?

a)

translates private address ke public address

b)

a

44.

PAT fungsinya adalah?

a)

Associates multiple private address dengan satu public address

b)

a

45.

Network Access Control List (ACL) berfungsi untuk?

a)

inspect system that are connected to protected segment to verify compliance with a security policy

b)

a

46.

Network ACL berfungsi untuk?

a)

Verify antivirus

b)

Make sure that a firewall is enabled

c)

verify anti-spyware

47.

Which statements describe the function of a network layer route? (Select TWO.)

a)

It’s an access control list (ACL) that restricts the traffic allowed in the network.

b)

It can support network segmentation.

c)

It’s a subnet, which shouldn’t be used to isolate part of the network.

d)

It’s a router that should be used for advanced packet-filtering techniques.

e)

It’s used as a tool to create network segmentation.

48.

Which statement describes the function of a network-based intrusion detection system (NIDS)?

a)

It’s designed to respond to network attacks.

b)

It creates virtual large area networks (VLANs).

c)

It monitors network activity by using signature-based detection and rules to detect malicious patterns.

d)

It creates rules and exceptions that help control network traffic.

49.

Which statement describes the purpose of a firewall?

a)

It creates rules and exceptions that help control network traffic.

b)

It’s an assurance that a computer on a network won’t be attacked.

c)

It filters packets that are directed to the client on a network.

d)

It filters packets on only one subnet.

50.

What is Network Address Translation (NAT)?

a)

A protocol that translates public IP addresses to private IP addresses, and private IP addresses to public IP addresses

b)

A protocol that associates multiple private IP addresses with one public IP address

c)

A protocol that’s used when a network is segmented into public subnets and private subnets

d)

A protocol that translates between publicly visible ports and internal ports

51.

Which type of network zone is an intranet?

a)

Uncontrolled zone

b)

Fully controlled zone

c)

Restricted zone

d)

Demilitarized zone

52.

Security group itu adalah?

a)

seperti firewall pada virtual server yang bisa memfilter traffic pada instance.

b)

a

53.

Yang bertindak sebagai firewall untuk associated Amazon Elastic Compute Cloud (Amazon EC2) instances

a)

Security groups

b)

Network access controls lists (network ACLs)

54.

Yang bertindak sebagai firewall untuk subnet terkait

a)

Security groups

b)

Network access controls lists (network ACLs)

55.

Amazon EC2 TIDAK MENGGUNAKAN public key cryptography untuk encrypt and decrypt login information. TRUE or FALSE

a)

TRUE

b)

FALSE

56.

public key digunakan untuk

a)

encrypt a piece of data.

b)

decrypt the data

57.

private key digunakan untuk

a)

encrypt a piece of data.

b)

decrypt the data

58.

Key pair juga berfungsi untuk?

a)

masuk Secure Shell (SSH) di Linux

b)

masuk Remote Desktop Protocol (RDP) di windows

59.

Security groups itu?

a)

Stateful

b)

Stateless

60.

network ACLs itu?

a)

Stateful

b)

Stateless

61.

Maksud dari statefull?

a)

means that the computer tracks the state of interaction.

b)

means that no information is retained by the sender or receiver.

62.

Maksud dari stateless?

a)

means that the computer tracks the state of interaction.

b)

means that no information is retained by the sender or receiver.

63.

apa perbedaan port 80 dengan port 443

a)

proses komunikasi data antara browser dan web. port 80 itu HTTP jadi tidak terenkripsi, sedang 443 HTTPS terenkripsi.

b)

proses komunikasi data antara browser dan web. port 80 itu HTTP jadi tidak terenkripsi, sedang 443 HTTP jadi tidak terenkripsi.

64.

Kita bisa mengatur security group di?

a)

AWS management console

b)

a

65.

What is an Amazon Web Services (AWS) security group?

a)

A group of users that are allowed to access resources

b)

A group of servers that are configured to protect resources

c)

A firewall that protects resources

d)

An application that is installed on resources to protect them

66.

Which type of resource does a security group protect?

a)

Virtual server

b)

Router

c)

Subnet

d)

Switch

67.

What are the basic parts of a security group rule? (Select TWO.)

a)

Media Access Control (MAC) address

b)

IP address

c)

Virtual Private Cloud (VPC) name

d)

Port number

e)

Route table name

68.

Which statement describes the stateful nature of a security group?

a)

Responses to allowed inbound traffic require a separate outbound rule to flow out.

b)

All inbound traffic is allowed by default.

c)

Responses to allowed inbound traffic are automatically allowed to flow out.

d)

All outbound traffic is blocked by default.

69.

Which statement describes security groups?

a)

A security group is configured by using Linux permissions.

b)

A security group controls traffic at the subnet level.

c)

A security group contains only one rule.

d)

A security group controls traffic at the instance level.

70.

menonatifkan perangkat jaringan dapat memengaruhi sebagian besar jaringan. sehingga kita harus menerapkan: authentication, authorization, and accounting (AAA). cara membatasi akses:

a)

Limit who is allowed administrative access.

b)

Limit how the devices are accessed

c)

Limit where the devices are accessed

71.

1. How many firewalls should you have in your network?

a)

As many as make sense. More specifically, the answer will depend on your network topology and security requirements.

b)

a

72.

Where should you place network firewalls?

a)

Position firewalls at the junction points of the network as close to the source as possible to identify bad traffic, stop bad traffic, or do both.

b)

a

73.

Network segmentation berguna untuk

a)

untuk meningkatkan keamanan

b)

a

74.

Menonaktifkan discovery protocol berguna untuk

a)

mencegah pihak luar menggunakan protokol tersebut untuk mendapatkan informasi penting tentang jaringan Anda.

b)

a

75.

Mendirikan akses secure

a)

menonaktifkan protokol yg tidak aman: TELNET, HTTP, SNMP v1

b)

membatasi subnet di mana lalu lintas manajemen dapat berasal

c)

menghapus semua jalan traffic akses ke device secara langsung

d)

AAA

76.

What is a technique that is used for network hardening?

a)

Allowing all users remote administrative access.

b)

Connecting all resources by using a single network.

c)

Implementing authentication, authorization, and accounting (AAA).

d)

Configuring all routers to use the default settings.

77.

What is logging access an example of in authentication, authorization, and accounting (AAA)?

a)

Availability

b)

Authentication

c)

Authorization

d)

Accoutning

78.

What is an example of segmenting a network?

a)

Team A is in subnet A and team B is in subnet B.

b)

Team A and B are in one subnet.

c)

Team A has administrator permissions to access all of Team B's resources.

d)

All members of team B have root permissions in their own subnet.

79.

Which protocol should be disabled if it isn’t used and protected if used?

a)

Secure Sockets Layer (SSL)

b)

Secure HTTP (HTTPS)

c)

Simple Network Management Protocol (SNMP) v1

d)

Transport Layer Security (TLS)

80.

What is a best practice for traffic filtering?

a)

Explicitly allow all traffic and deny restricted sites.

b)

Explicitly deny all traffic, then permit only needed traffic.

c)

Filter traffic through a firewall furthest from the server as possible.

d)

Accept all traffic that is directed to network control devices.

81.

disiplin ilmu yang mewujudkan prinsip dan teknik untuk menyediakan keamanan data, termasuk kerahasiaan dan integritas data.

a)

Cryptography

b)

a

82.

Ada 3 jenis enkripsi

a)

symmetric,

b)

asymmetric,

c)

hybrid.

83.

Symetric encription? (choose 3)

a)

Advanced Encryption Standard (AES)

b)

International Data Encryption Algorithm (IDEA)

c)

Twofish

d)

Rivest–Shamir–Adleman (RSA)

e)

Diffie-Hellman (DH)

84.

Symetric encription? (choose 3)

a)

ElGamal

b)

International Data Encryption Algorithm (IDEA)

c)

Twofish

d)

Rivest–Shamir–Adleman (RSA)

e)

Diffie-Hellman (DH)

85.

Protokol yang menggunakan enkripsi hybrid adalah

a)

Transmission Layer Security (TLS), juga dikenal sebagai Secure Sockets Layer (SSL).

b)

a

86.

Contoh penggunaan data encryption pada data at rest (select 2)

a)

Encrypting a file system

b)

Drive encryption

c)

SSL

d)

Kerberos

87.

Contoh penggunaan data encryption pada data at montion (select 4)

a)

IP Security (IPsec)

b)

Instant messaging or secure email

c)

SSL

d)

Kerberos

e)

Drive encryption

88.

Untuk memastikan integritas data kita menggunakan teknik?

a)

enkripsi

b)

criptography

c)

hash

89.

Macam-macam permission? (Choose 2)

a)

Discretionary

b)

Role-based

90.

Which of the following terms best describes the discipline which embodies the principles and techniques for providing data security?

a)

Data integrity

b)

Encryption

c)

Cryptography

d)

Decryption

91.

Which of the following is an advantages of symmetric encryption?

a)

It can not encrypt and decrypt large amounts of data without compromising speed.

b)

Encryption uses both a private key and a public key (a key pair)

c)

The key is a shared secret between the sender and the receiver.

d)

Symmetric encryption has a complex encryption structure.

e)

Symmetric encryption is considered to be more secure than asymmetric encryption.

92.

What is the goal of encryption?

a)

Confidentiality

b)

Integrity

c)

Accuracy

d)

Authentication

93.

What protocols use the hybrid encryption method as a mode of encryption? (SELECT TWO.)

a)

Transmission Layer Security (TLS)

b)

Transmission Layer Security (TLS)

c)

Transmission Control Protocol (TCP)

d)

Hyper-Text Transfer Protocol (HTTP)

e)

Internet Protocol (IP)

94.

Which of the following is a standard asymmetric encryption algorithm?

a)

Rivest–Shamir–Adleman (RSA)

b)

Advanced Encryption Standard (AES)

c)

International Data Encryption Algorithm (IDEA)

d)

Twofish Encryption

95.

are electronic credentials that are used to represent online identities of individuals, computers, and other entities on a network.

a)

Digital certificates

b)

a

96.

Two types of certificates are available:

a)

Certificates signed by a CA

b)

self-signed certificates

97.

In the AWS Cloud, we can use to obtain certificates from the internal AWS..

a)

AWS Certificate Manager service

b)

a

98.

An expired or revoked certificate cannot be used because

a)

it is added to the certificate revocation list (CRL)

b)

a

99.

What signs and issues certificates to entities, and manages trusts and relationships?

a)

Certificate authorities (CAs)

b)

Certificates

c)

Registration authorities (RAs)

d)

Revocation lists

100.

What is a digital certificate?

a)

An electronic credential that is used to verify and validate an individual or computer

b)

A root certificate that is external, and services other entities

c)

A certificate that is used to represent the online identity or computer

d)

An electronic credential that is used to represent an individual, computer, or other entity's online identity

101.

Which resource is used with Secure Sockets Layer (SSL) and Transport Layer Security (TLS) to establish a secure connection between a client and server?

a)

Public key

b)

Private key and public key

c)

Private key

d)

Certificate authority (CA)

102.

A company's site is giving users an error that the certificate authority (CA) is invalid. What could be the cause of this issue?

a)

The CA certificate is expired.

b)

The user has a connection issue.

c)

The company’s server is down.

d)

The user is using a root CA.

103.

How is trust achieved?

a)

Through public keys and private keys that validate the identities of the parties

b)

By an external certificate authority (CA) that validates the identities of the parties

c)

Through the exchange of public keys that validate the identities of the parties

d)

Through the exchange of private keys that validate the identities of the parties

104.

SSO mengizinkan untuk google login ke akun FB (T/F)

a)

TRUE

b)

FALSE

105.

is an example of an identity provider on the AWS Cloud

a)

Amazon Cognito

b)

A

106.

Which of the features below correctly correspond to the step in Identification and Authentication, Authorization and Accountability (IAAA)?

a)

Accounting --> Tracking

b)

Authorization --> Uniqueness

c)

Authentication --> Validation

d)

Identification --> Verification

107.

Which is an authentication factor for something you are?

a)

Fingerprint reader

b)

Passphrase

c)

Smart card

d)

USB key

108.

What type of table is used to store hashes of possible passwords?

a)

Hash table

b)

Horizon table

c)

Rain table

d)

Rainbow table

109.

Select two features of Brute force attacks.

a)

GPUs are used to accelerate cracking

b)

Password cracking tests 10 % of password possibilities within the range of parameters.

c)

Range of parameters are undefined

d)

The brute force attack relies on all password possibilities

110.

What is a form of single sign-on in which one account is used for multiple services?

a)

Independent identities

b)

Federated Identities

c)

Relationship Identities

d)

Directory Identities

111.

You have decided to include a physical object authentication factor in a security plan you are writing for your department.

Which are possible options you could consider for your plan? Select three responses.

a)

Smart card

b)

Password

c)

Physical key

d)

USB key

112.

You have a password policy as an additional layer in your department's security plan. All parameters provide for a strong, secure password EXCEPT:

a)

Minimum of 3 characters

b)

Password must be changed every 30 days

c)

Password must included a mixture of capital & lower case letters, numbers and special characters

d)

Password has reversible encryption capability

113.

Gunakan IAM untuk

a)

Manage the resources that can be accessed and the actions that can be performed on the resources

b)

Define required credentials based on context,

114.

Kita bisa mengakses AWS service dengan menggunakan beberapa cara

a)

AWS Management Console

b)

AWS Command Line Interface (AWS CLI)

c)

Software development kits (SDKs) and application programming interfaces (APIs) from a variety of supported environments

115.

What is the goal of identity management?

a)

Detect security threats and notify users

b)

Identify all systems that can be accessed by users

c)

Manage the responses to security threats based on user type

d)

Administer users and their access permissions

116.

Which security steps are performed during a typical login? (Select TWO.)

a)

Authentication

b)

Consolidation

c)

Authorization

d)

Prevention

e)

Activation

117.

What is an example of an authentication factor?

a)

Encryption algorithm

b)

Certificate

c)

Authentication server

d)

Firewall policy

118.

Which personal attribute works well as an authentication factor?

a)

Height

b)

Retina

c)

Weight

d)

Age

119.

What is a best practice for identity management?

a)

Implement password policies.

b)

Avoid single sign-on.

c)

Manage passwords manually.

d)

Use group accounts.

120.

What is a database injection attack?

a)

An application that takes over other applications in a database server

b)

An attempt to circumvent security controls by deceiving people to reveal backend data

c)

A program that installs itself and infects the memory of a database server

d)

An attack that introduces malicious data to a backend system through a frontend mechanism

121.

Which action can help prevent software vulnerabilities?

a)

Use firewalls.

b)

Perform code reviews.

c)

Verify the integrity of the file system.

d)

Control user permissions.

122.

What is considered to be a highly effective defense against social engineering attacks?

a)

Hiring top security experts

b)

Hardening systems

c)

Rewarding safe employees

d)

Training and education

123.

What is a countermeasure against malware?

a)

Regularly scan systems.

b)

Monitor routers.

c)

Log user access.

d)

Scale virtual servers.

124.

Which threats are a type of malware? (Select TWO.)

a)

Distributed denial of service (DDoS)

b)

Virus

c)

Ransomware

d)

Phishing

e)

Social engineering

125.

What is AWS CloudTrail?

a)

A web service that uses log files to record Amazon Web Service (AWS) application programming interface (API) calls.

b)

A web service that controls other Amazon Web Services (AWS) services through application programming interface (API) calls.

c)

A web service that manages users and permissions.

d)

A web service that assesses application vulnerabilities.

126.

What are key benefits of AWS CloudTrail? (Select TWO.)

a)

It provides visibility by recording users and resource activities.

b)

It improves application security by filtering inbound and outbound data.

c)

It simplifies compliance audits by recording activities and events into logs files.

d)

It simplifies threat detection by detecting malicious activities.

e)

It enables migration from on-premises applications to the Amazon Web Services (AWS) Cloud.

127.

Which types of information are captured by AWS CloudTrail events when a user performs a service request? (Select TWO.)

a)

The Amazon Web Services (AWS) application programming interface (API) calls that the user request triggers

b)

The cost of the call to the service

c)

The size of the request in kilobytes (KB)

d)

The user who performed the request

e)

The IP address where the request originated

128.

Which statements are best practices for working with AWS CloudTrail? (Select TWO.)

a)

Aggregate log files to a single Amazon Simple Storage Service (Amazon S3) bucket.

b)

Enable file validation for CloudTrail.

c)

Integrate CloudTrail with AWS Elastic Compute Cloud (Amazon EC2).

d)

Integrate CloudTrail with AWS Lambda.

e)

Ensure that CloudTrail is available only in one AWS Region.

129.

Why is integrating AWS CloudTrail with AWS CloudWatch considered to be a good practice?

a)

CloudWatch monitors and reacts to events that involve CloudTrail log files.

b)

CloudWatch transforms CloudTrail log files into a file format that the user defines.

c)

CloudWatch secures access to CloudTrail log files.

d)

Users can use CloudWatch to create a dashboard that is based on CloudTrail log files.

130.

What is AWS Config?

a)

A tool that helps reduce cost.

b)

A tool that logs application programming interface (API) calls to Amazon Web Services (AWS) services in log files.

c)

A tool that tracks changes to resources.

d)

A tool that helps configure secure networks on Amazon Web Services (AWS).

131.

What are features of AWS Config? (Select TWO.)

a)

Retrieve inventory from Amazon Web Services (AWS) resources.

b)

Send notifications when a configuration change has occurred in an Amazon Web Services (AWS) resource.

c)

Send a notification when a threat to Amazon Web Services (AWS) resources is detected.

d)

Check for service usage to see the limits of the service.

e)

Enable users to set up more secure security groups.

132.

Which tool enables customers to define custom rules for AWS Config?

a)

AWS Lambda

b)

AWS CloudFormation

c)

AWS Elastic Beanstalk

d)

Amazon API Gateway

133.

What are actions that AWS Config takes when a configuration change occurs on an Amazon Web Services (AWS) service ? (Select TWO.)

a)

The change is logged, and then stored in an Amazon Simple Storage Service (Amazon S3) bucket.

b)

AWS Config calls AWS Trusted Advisor to assess the security level of applications.

c)

AWS Config sends a notification by using AWS Simple Notification Service (AWS SNS).

d)

AWS Config calls AWS CloudTrail to log the change into log files.

134.

Which tasks can an AWS Config rule help achieve?

a)

Logging Elastic IP addresses that are attached to instances

b)

Verifying that multi-factor authentication (MFA) on the account root user is not activated

c)

Sending a warning if a security group has unrestricted access permissions

d)

Sending a warning if server access logging is enabled on Amazon Simple Storage Service (Amazon S3) buckets.

135.

Which types of plans are used to minimize the impact of unplanned downtime? (Select TWO.)

a)

Test plan

b)

Business continuity plan

c)

Disaster recovery (DR) plan

d)

Software management plan

e)

Quality assurance (QA) plan

136.

Which types of plans are used to minimize the impact of unplanned downtime? (Select TWO.)

a)

Test plan

b)

Business continuity plan

c)

Disaster recovery (DR) plan

d)

Software management plan

e)

Quality assurance (QA) plan

137.

What is the purpose of the business continuity plan?

a)

To define how to run the business in a reduced form

b)

To define how to recover from an outage loss

c)

To define how to investigate any security eventx

d)

To define how to investigate any security event

e)

To define the Recovery Time Objective (RTO) and the Recovery Point Objective (RPO)

138.

What is the purpose of the disaster recovery (DR) plan?

a)

To define how to run the business in a reduced form after a disaster occurs

b)

To define how to restore business functionality quickly after a disaster occurs

c)

To list different disaster scenarios and the actions that the business will take to keep the business running

d)

To define how to minimize the Recovery Time Objective (RTO) and the Recovery Point Objective (RPO)

139.

Which statements describe the purpose of the Recovery Point Objective (RPO)? (Select TWO.)

a)

Its focus is on recovering the entire IT infrastructure.

b)

Its focus is on recovering only data.

c)

It represents how much data loss a business can tolerate.

d)

It establishes the maximum amount of time a resource can be unavailable.

e)

It defines the Work Recovery Time (WRT).

140.

What are best practices for backing up data? (Select TWO.)Fully back up critical data once a year. Use remote storage. Store backups on a portable hard drive. Avoid multiple backup solutions. Encrypt backup files.

a)

Fully back up critical data once a year.

b)

Use remote storage.

c)

Store backups on a portable hard drive.

d)

Avoid multiple backup solutions.

e)

Encrypt backup files.

141.

What does a monitoring policy define? (Select TWO.)

a)

Who performs the monitoring?

b)

Who reviews the policy?

c)

When is the policy approved?

d)

What resources are to be monitored?

e)

Where is the policy stored?

142.

A company has just recovered from a Trojan horse security breach and is performing a security analysis. Which questions should the company ask during the analysis? (Select TWO.)

a)

Can the company file charges against the attacker?

b)

How should the breach be reported to the public?

c)

Who is the manager that allowed the breach to happen?

d)

How did the breach happen?

e)

How could the breach have been prevented?

143.

What is a benefit of monitoring and logging?

a)

It increases application performance.

b)

It prevents security threats.

c)

It provides the data that is used for problem identification.

d)

It corrects security threats.

144.

Which step is performed during root cause analysis (RCA)?

a)

Establish a projection for when business will return to normal.

b)

Establish a timeline, starting with normal operations and ending with the problem’s occurrence.

c)

Describe the actions to perform when a problem occurs.

d)

Implement preventative measures to protect resources.

145.

Which phase of the security life cycle reviews what happened after a security breach?

a)

Analysis

b)

Detection

c)

Prevention

d)

Response

146.

Which are the categories in which Trusted advisor provide best practices? (Select TWO.)

a)

Cost optimization

b)

Events monitoring

c)

Users rights and permissions

d)

Threat detection

e)

Fault tolerance

147.

Which of the following Trusted Advisor checks are available for free? (Select TWO.)

a)

Low utilization of Amazon EC2 instances

b)

Multi-factor authentication (MFA) on the root account

c)

AWS Identity and Access Management (IAM) use

d)

AWS Identity and Access Management (IAM) policy

e)

Amazon S3 bucket logging

148.

What does an AWS Trusted Advisor Red check (Exclamation point (!) ) mean?

a)

Action is recommended

b)

Action is required

c)

Services that raised red flags were deactivated(.)

d)

An Investigation is recommended

149.

What is the service limit threshold that triggers a warning from the service limits check?

a)

80 percent

b)

70 percent

c)

90 percent

d)

95 percent

150.

AWS Trusted Advisor raises a Security Groups - Unrestricted Access Red check (Exclamation point (!) ) status. Which action should be taken?

a)

Add rules that give access to a few known IP addresses to the identified security group

b)

Add a rule that forbids all inbound access to the identified security group

c)

Add a rule that forbids all outbound access to the identified security group

d)

Transform all public subnets into private subnets

151.

What is used to authenticate the Amazon Web Services (AWS ) account root user in the AWS Management Console?

a)

Key pair

b)

Email address

c)

Access key

d)

User name

152.

Which type of permissions does an Amazon Web Services (AWS) account root user have?

a)

Complete access to all AWS services and resources

b)

Administrator access to all AWS services except managed services

c)

Complete access to only AWS security services

d)

Administrator access to AWS Identity and Access Management (IAM), and limited access to all other services

153.

Which logging service should be immediately enabled as a best practice when creating an Amazon Web Services (AWS) account?

a)

Amazon CloudWatch

b)

AWS Config

c)

AWS Control Tower

d)

AWS CloudTrail

154.

What is a best practice when creating a user in an Amazon Web Services (AWS) account?

a)

Include numbers in the user name.

b)

Make the password 10 characters in length.

c)

Require multi-factor authentication (MFA) for access.

d)

Make the password the same as the user name initially.

155.

A systems administrator must provide access to the company’s Amazon Web Services (AWS) account to four new employees who work in the same department. How should the administrator set up the new employees according to best practices for AWS Identity and Access Management (IAM)?

a)

Create one IAM user for the department and assign it to all four employees.

b)

Create an IAM user for each employee.

c)

Create two IAM users and assign them evenly to two employees each.

d)

Give the account root user credentials to all four employees.

156.

Which Amazon Web Services (AWS) resources can customers use to make their application more secure? (Select TWO.)

a)

AWS Free Tier

b)

AWS account teams

c)

AWS Devops and automation toolkit

d)

AWS advisories and bulletins

e)

AWS Developer Tools

157.

Which Amazon Web Services (AWS) resources can customers use to support compliance for their application? (Select TWO.)

a)

AWS auditor learning path

b)

AWS account teams

c)

AWS reference architecture diagrams

d)

AWS technical guides

e)

AWS Cloud Praticioner course

158.

Which offers are part of the AWS Compliance Solutions Guide? (Select TWO.)

a)

Understanding the shared responsibility model

b)

Requesting a compliance report

c)

Scanning AWS resources for security threats

d)

AWS reference architecture diagrams

e)

AWS whitepapers in the Introduction to AWS category

159.

What does Amazon Web Services (AWS) Enterprise Support offer? (Select TWO.)

a)

Support 24/7 through phone, chat, or email

b)

A response time of less than 15 minutes for all issues

c)

A dedicated consultant from AWS Professional Services

d)

A dedicated AWS Technical Account Manager (TAM)

e)

A dedicated consultant from the AWS Partner Network (APN)

160.

Which statement describes the service that Amazon Web Services (AWS) account teams provide?

a)

They guide customers through deployment and implementation.

b)

They provide customer support for deployed applications.

c)

They perform security tests on customer applications, such as penetration testing.

d)

They provide customers with compliance reports of their applications.

161.

What are the roles of Amazon Web Services (AWS), according to the AWS approach to compliance? (Select TWO.)

a)

To provide highly secure and controlled environments

b)

To provide an array of security features

c)

To configure the customer’s IT environments

d)

To scan the customer’s IT infrastructure for security breaches

e)

To scan the customer’s IT infrastructure for security breaches

162.

How does Amazon Web Services (AWS) share security information? (Select THREE.)

a)

By publishing control practices in a newsletter that customers can subscribe to

b)

By obtaining industry certifications and third-party attestations

c)

By publishing information about AWS security in technical papers

d)

By providing documentation to AWS customers directly through nondisclosure agreements (NDAs)

e)

By providing all documentation for AWS security compliance on the AWS website.

163.

Which statements describe the Amazon Web Services (AWS) approach to compliance? (Select TWO.)

a)

AWS assesses compliance certifications and attestations.

b)

Third-party independent auditors deliver attestations of compliance.

c)

Only AWS is responsible for ensuring compliance with laws, regulations, and privacy requirements.

d)

AWS provides security features and documents that customers can use to meet compliance requirements for specific industries.

e)

A significant step for AWS compliance is open source licensing.

164.

Which statements describe the Amazon Web Services (AWS) approach to risk management? (Select TWO.)

a)

AWS regularly scans all endpoint IP addresses for public services.

b)

AWS maintains a security framework and security policies.

c)

AWS offers security training to its customers

d)

AWS offers security certifications to its customers.

e)

AWS regularly scans the customer’s entire IT infrastructure.

165.

Which steps are part of the basic approach to compliance for customers ? (Select TWO.)

a)

Design

b)

Implement

c)

Write acceptance criteria

d)

Review

e)

Develop