wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Sec + CH.2 Pre-Assessment

Total questions: 8

Worksheet time: 4mins

Name
Class
Date
1.

You are comparing different types of authentication. Of the following

choices, which one uses multifactor authentication?

a)

A system that requires users to enter a username and password

b)

A system that checks an employee’s fingerprint and does a vein

scan

c)

A cipher door lock that requires employees to enter a code to open

the door

d)

A system that requires users to have a smart card and a PIN

2.

The chief information officer (CIO) at your organization suspects

someone is entering the data center after normal working hours and stealing

sensitive data. Which of the following actions can prevent this?

a)

Upgrade the CCTV system.

b)

Require smart cards to enter the data center.

c)

Implement time-based logins.

d)

Enable advanced auditing.

3.

A SQL database server was recently attacked. Cybersecurity

investigators discovered the attack was self-propagating through the

network. When it found the database server, it used well-known credentials

to access the database. Which of the following would be the BEST action to

prevent this from occurring again?

a)

Change the default application password.

b)

This describes a worm.

c)

Implement 2FA.

d)

Conduct a code review.

4.

You are reviewing security controls and their usefulness. You notice that

account lockout policies are in place. Which of the following attacks will

these policies thwart? (Select TWO.)

a)

Brute force

b)

DNS poisoning

c)

Dictionary

d)

Replay

e)

Buffer overflow

5.

IT administrators created a VPN for employees to use while working

from home. The VPN is configured to provide AAA services. Which of the

following would be presented to the AAA system for identification?

a)

Password

b)

Permissions

c)

Username identification

d)

Tunneling certificate

e)

Hardware token

6.

After a recent attack, security investigators discovered that attackers

logged on with an administrator account. They recommend implementing a

solution that will thwart this type of attack in the future. The solution must

support the following requirements:

Allow authorized users to access the administrator account

without knowing the password.

Allow authorized users to check out the credentials when

needed.

Log each time the credentials are used.

Automatically change the password.

Which of the following answers would meet these requirements?

a)

Privileged access management

b)

OpenID Connect

c)

MAC scheme

d)

MFA

7.

Lisa wants to implement a secure authentication system on a website.

However, instead of collecting and storing user passwords, she wants to use

a third-party system. Which of the following is the BEST choice to meet

this goal?

a)

SAML

b)

Kerberos

c)

SSH

d)

OAuth

8.

Your organization is implementing an SDN. Management wants to use

an access control scheme that controls access based on attributes. Which of

the following is the BEST solution?

a)

DAC

b)

MAC

c)

Role-BAC

d)

ABAC