wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Testout Security 4.1-4.2

Total questions: 20

Worksheet time: 11mins

Name
Class
Date
1.

You have hired 10 new temporary workers who will be with the company for three months. You want to make sure that the user accounts cannot be used for login after that time period. What should you do?

a)

Configure account expiration in the user accounts.

b)

Configure account lockout in Group Policy.

c)

Configure account policies in Group Policy.

d)

Configure day/time restrictions in the user accounts.

2.

Which Microsoft tool can be used to review a system's security configuration against recommended settings?

a)

Windows Defender

b)

Registry Editor

c)

Microsoft Internet Explorer

d)

Microsoft Security Compliance Toolkit

3.

Which type of update should be prioritized even outside of a normal patching window?

a)

Monthly updates

b)

Microsoft updates

c)

Security updates

d)

Critical updates

4.

Prepare to Document means establishing the process you will use to document your network.

Which of the following makes this documentation more useful?

a)

Automate administration as much as possible.

b)

Have a printed hard copy kept in a secure location.

c)

Identify the choke points on the network.

d)

Identify who is responsible for each device.

5.

Documenting procedures and processes are part of which milestone in the NSA's Manageable Network Plan?

a)

Document Your Network

b)

Control Your Network

c)

Prepare to Document

d)

Reach Your Network

6.

In which milestone should you use a network scanner and then confirm the scan manually with a room-by-room walkthrough?

a)

Prepare to Document

b)

Protect Your Network

c)

Reach Your Network

d)

Map Your Network

7.

Windows Server Update Services (WSUS) is used to accomplish which part of a manageable network?

a)

Documentation

b)

Device accessibility

c)

Patch management

d)

User access

8.

You have recently been hired as the new network administrator for a startup company. The company's network was implemented prior to your arrival. One of the first tasks you need to complete in your new position is to develop a manageable network plan for the network.

You have already completed the first and second milestones, in which documentation procedures were identified and the network was mapped. You are now working on the third milestone, which is identifying ways to protect the network.

Which tasks should you complete as a part of this milestone? (Select two.)

a)

Identify and document each user on the network.

b)

Apply critical patches whenever they are released.

c)

Physically secure high-value systems.

d)

Create an approved application list for each network device.

e)

Set account expiration dates.

9.

For Milestone 4 (Reach Your Network), which of the following would be considered a secure protocol to use to reach your network?

a)

Telnet

b)

FTP

c)

HTTP

d)

SSH

10.

As you go through the process of making your network more manageable, you discover that employees in the sales department are on the same network segment as the human resources department.

Which of the following steps can be used to isolate these departments?

a)

Move the sales department into the DMZ.

b)

Create a separate VLAN for each department.

c)

Identify the choke points on your network.

d)

Implement the principle of least privilege for the human resources department.

11.

Which of the following tools can you use on a Windows network to automatically distribute and install software and operating system patches on workstations? (Select two.)

a)

Security Configuration and Analysis

b)

Security Templates

c)

WSUS

d)

Group Policy

12.

Which of the following describes a configuration baseline?

a)

A set of performance statistics that identifies normal operating performance

b)

A list of common security settings that a group or all devices share

c)

A collection of security settings that can be automatically applied to a device

d)

The minimum services required for a server to function

13.

What should you consider security baselines?

a)

Unchangeable

b)

Suggestion

c)

Dynamic

d)

Static

14.

By definition, what is the process of reducing security exposure and tightening security controls?

a)

Social engineering

b)

Passive reconnaissance

c)

Active scanning

d)

Hardening

15.

Which of the following is the strongest form of multi-factor authentication?

a)

Two-factor authentication

b)

A password, a biometric scan, and a token device

c)

A password and a biometric scan

d)

Two passwords

16.

You have recently experienced a security incident with one of your servers. After some research, you determine that a new hotfix has recently been released, which would have protected the server.

Which of the following recommendations should you follow when applying the hotfix?

a)

Apply the hotfix immediately to the server. Apply the hotfix to other devices only as the security threat manifests itself.

b)

Test the hotfix and then apply it to the server that had the problem.

c)

Test the hotfix and then apply it to all servers.

d)

Apply the hotfix immediately to all servers.

17.

Which of the following actions should you take to reduce the attack surface of a server?

a)

Install anti-malware software.

b)

Install the latest patches and hotfixes.

c)

Disable unused services.

d)

Install a host-based IDS.

18.

Which of the following do security templates allow you to do? (Select two.)

a)

Block malicious websites

b)

Quickly apply settings to multiple computers

c)

Fix a specific software problem

d)

Apply new software patches

e)

Configure consistent security settings between devices

19.

You have just purchased a new network device and are getting ready to connect it to your network. Which of the following actions should you take to increase its security? (Select two.)

a)

Apply all patches and updates.

b)

Remove any backdoors.

c)

Implement separation of duties.

d)

Change default account passwords.

e)

Conduct privilege escalation.

20.

Which of the following is defined as an operating system that comes hardened and validated to a specific security level as defined in the Common Criteria for Information Technology Security Evaluation (CC)?

a)

OS X

b)

TOS

c)

UNIX

d)

Windows