WorksheetsSec + CH.2 Pre-Assessment
Total questions: 8
Worksheet time: 4mins
You are comparing different types of authentication. Of the following
choices, which one uses multifactor authentication?
A system that requires users to enter a username and password
A system that checks an employee’s fingerprint and does a vein
scan
A cipher door lock that requires employees to enter a code to open
the door
A system that requires users to have a smart card and a PIN
The chief information officer (CIO) at your organization suspects
someone is entering the data center after normal working hours and stealing
sensitive data. Which of the following actions can prevent this?
Upgrade the CCTV system.
Require smart cards to enter the data center.
Implement time-based logins.
Enable advanced auditing.
A SQL database server was recently attacked. Cybersecurity
investigators discovered the attack was self-propagating through the
network. When it found the database server, it used well-known credentials
to access the database. Which of the following would be the BEST action to
prevent this from occurring again?
Change the default application password.
This describes a worm.
Implement 2FA.
Conduct a code review.
You are reviewing security controls and their usefulness. You notice that
account lockout policies are in place. Which of the following attacks will
these policies thwart? (Select TWO.)
Brute force
DNS poisoning
Dictionary
Replay
Buffer overflow
IT administrators created a VPN for employees to use while working
from home. The VPN is configured to provide AAA services. Which of the
following would be presented to the AAA system for identification?
Password
Permissions
Username identification
Tunneling certificate
Hardware token
After a recent attack, security investigators discovered that attackers
logged on with an administrator account. They recommend implementing a
solution that will thwart this type of attack in the future. The solution must
support the following requirements:
Allow authorized users to access the administrator account
without knowing the password.
Allow authorized users to check out the credentials when
needed.
Log each time the credentials are used.
Automatically change the password.
Which of the following answers would meet these requirements?
Privileged access management
OpenID Connect
MAC scheme
MFA
Lisa wants to implement a secure authentication system on a website.
However, instead of collecting and storing user passwords, she wants to use
a third-party system. Which of the following is the BEST choice to meet
this goal?
SAML
Kerberos
SSH
OAuth
Your organization is implementing an SDN. Management wants to use
an access control scheme that controls access based on attributes. Which of
the following is the BEST solution?
DAC
MAC
Role-BAC
ABAC
