Font size
WorksheetsCyber Security Study Guide
Total questions: 23
Worksheet time: 17mins
You have implemented a regular backup schedule for a Windows system, backing up data files every night and creating a system image backup once a week. For security reasons, your company has decided to not store a redundant copy of the backup media at an offsite location.
Where would be the next best place to keep your backup media?
In a locked fireproof safe.
On a shelf next to the backup device.
In a locked room.
In a drawer in your office.
What is a disadvantage of using the cloud for data storage?
Cloud storage allows you to save files to the internet.
You can access files from any computer with an internet connection.
Cloud storage backups require a reliable internet connection.
Cloud storage allows you to save files to the internet.
Which Internet protocol is used to transmit encrypted data?
DNS
HTTPS
FTP
HTTP
Your company has surveillance cameras in your office, uses strong authentication protocols, and requires biometric factors for access control. These are all examples of what principle?
Non-repudiation
Authentication
Integrity
Authorization
Your company has a disaster recovery plan that says the order to restore data is customer data, financial system, then email. This is an example of what?
Fault tolerance
Cloud backups
Business Plan
Prioritization
You are configuring the local security policy of a Windows system. You want to require users to create passwords that are at least 10 characters long. You also want to prevent log on after three unsuccessful logon attempts.
Which of the following policies are BEST to configure? (Select TWO).
Enforce password history
Maximum password age
Account lockout duration
Account lockout threshold
Minimum password length
Which of the following protocols can be enabled so email is encrypted on a mobile device?
SMTP
SSL
POP3
IMAP
You have purchased new computers and will be disposing of your old computers. Instead of recycling the computers, you decide to resell them by placing an ad on the Internet. These computers were previously used for storing sensitive information.
To properly protect the accidental discovery of the company's sensitive information, which of the following steps MUST be completed prior to getting rid of the computers?
Use data wiping software to clear the hard drives
Delete user data and applications from the hard drives
Reformat the hard drives
Include the original operating system discs and product keys with the computers
Which of the following is not a form of biometrics?
Fingerprint
Face recognition
Smart card
Retina scan
You are configuring the local security policy of a Windows system. You want to prevent users from reusing old passwords. You also want to force them to use a new password for at least 5 days before changing it again.
Which of the following policies are BEST to configure? (Select TWO).
Maximum password age
Minimum password age
Password complexity
Enforce password history
Minimum password length
Gloria is concerned that her online banking transactions could be intercepted if she uses public WiFi. Which of the following could she use to prevent access to her online transactions?
Mandatory Access Control (MAC)
VPN
Multifactor authentication
Single sign-on
You are the PC technician for a company. An employee has gone to a meeting while you fix the computer in her office. She accidentally left a report open next to her computer which states that a friend of yours in accounting will be submitted for review if their poor work performance continues.
Which of the following is the BEST action to take?
Give your friend a heads up about what you found, but don't disclose from where you heard the information.
Tell your friend about the report you saw and whose desk it was on.
Ignore the paper and tell no one of its contents.
Tell your fellow PC technicians about what you saw and let them decide what to do with the information.
Which of the following components of a successful access control framework is the process of proving that you are who you say you are?
Authentication
Accounting
Access control
Authorization
A small business wants to make sure their wireless network is using the strongest encryption to prevent unauthorized access. Which of the following wireless encryption standards should be used?
WEP
WPS
WPA2
WPA
After entering a user ID and password, an online banking user must enter a PIN that was sent as a text message to the user's mobile phone.
Which of the following digital security methods is being used?
Multifactor authentication
Smart card
Firewall
DLP
A technician assists Joe, an employee in the Sales department, who needs access to the client database by granting Joe administrator privileges. Later, Joe discovers he has access to the salaries in the payroll database.
Which of the following security practices was violated?
Entry control roster
Principle of least privilege
Multifactor authentication
Strong password policy
Which of the following are the BEST steps you can take to avoid having your mobile device exploited by a hacker or infected by a virus? (Select two.)
Keep the operating system up to date
Lock the screen with some form of authentication
Avoid anti-virus apps
Turn off location services
Keep an up-to-date remote backup
While configuring a wireless access point device, a technician is presented with several security mode options.
Which of the following options will provide the most secure access?
WPA2 and AES
WPA2 and TKIP
WPA and AES
WEP 128
WPA and TKIP
Which of the following security measures is a form of biometrics?
BIOS password
Fingerprint scanner
TPM
Chassis intrusion detection
You work for a company that offers their services through the Internet. Therefore, it is critical that your website performs well. As a member of the IT technician staff, you receive a call from a fellow employee who informs you that customers are complaining that they can't access your website. After doing a little research, you have determined that you are a victim of a denial-of-service attack.
As a first responder, which of the following is the next BEST step to perform?
Prevent such an incident from occurring again.
Investigate how the attack occurred.
Contain the problem.
Hire a forensic team to gather evidence.
Even if you perform regular backups, what must be done to ensure that you are protected against data loss?
Write-protect all backup media.
Restrict restoration privileges to system administrators.
Configure System Maintenance to automatically defragment system hard drives every night.
Regularly test restoration procedures.
A technician is tasked to add a valid certificate to a mobile device so that encrypted emails can be opened.Which of the following email protocols is being used?
IMAP
S/MIME
IMEI
POP3
What do biometrics use to perform authentication of identity
Biological attributes
Knowledge of passwords
Possession of a device
Ability to perform tasks
