wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Sec Plus 1

Total questions: 45

Worksheet time: 2hrs 15mins

Name
Class
Date
1.

You have hired 10 new temporary workers who will be with the company for three months. You want to make sure that the user accounts cannot be used for login after that time period. What should you do?

a)

Configure account lockout in Group Policy.

b)

Configure account policies in Group Policy.

c)

Configure day/time restrictions in the user accounts.

d)

Configure account expiration in the user accounts.

2.

Which type of update should be prioritized even outside of a normal patching window?

a)


Monthly updates

b)

Critical updates

c)

Microsoft updates

d)

Security updates

3.

Prepare to Document means establishing the process you will use to document your network.

Which of the following makes this documentation more useful?

a)

Automate administration as much as possible.

b)

Have a printed hard copy kept in a secure location.

c)

Identify the choke points on the network.

d)

Identify who is responsible for each device.

4.

Documenting procedures and processes are part of which milestone in the NSA's Manageable Network Plan?

a)

Prepare to Document

b)

Control Your Network

c)

Document Your Network

d)

Reach Your Network

5.

In which milestone should you use a network scanner and then confirm the scan manually with a room-by-room walkthrough?

a)

Protect Your Network

b)

Map Your Network

c)

Prepare to Document

d)

Reach Your Network

6.

Windows Server Update Services (WSUS) is used to accomplish which part of a manageable network?

a)

Documentation

b)

Patch management

c)


Device accessibility

d)

User access

7.

You have recently been hired as the new network administrator for a startup company. The company's network was implemented prior to your arrival. One of the first tasks you need to complete in your new position is to develop a manageable network plan for the network.

You have already completed the first and second milestones, in which documentation procedures were identified and the network was mapped. You are now working on the third milestone, which is identifying ways to protect the network.

Which tasks should you complete as a part of this milestone? (Select two.)

a)

Identify and document each user on the network.

b)

Set account expiration dates.

c)

Apply critical patches whenever they are released.

d)

Create an approved application list for each network device.

e)

Physically secure high-value systems.

8.

For Milestone 4 (Reach Your Network), which of the following would be considered a secure protocol to use to reach your network?

a)

Telnet

b)

FTP

c)


SSH

d)

HTTP

9.

As you go through the process of making your network more manageable, you discover that employees in the sales department are on the same network segment as the human resources department.

Which of the following steps can be used to isolate these departments?

a)

Implement the principle of least privilege for the human resources department.

b)


Move the sales department into the DMZ.

c)

Identify the choke points on your network.

d)

Create a separate VLAN for each department.

10.

Which of the following tools can you use on a Windows network to automatically distribute and install software and operating system patches on workstations? (Select two.)

a)

Security Configuration and Analysis

b)

WSUS

c)

Group Policy

d)

Security Templates

11.

What should you consider security baselines?

a)

Dynamic

b)

Static

c)

Unchangeable

d)

Suggestion

12.

By definition, what is the process of reducing security exposure and tightening security controls?

a)

Social engineering

b)

Active scanning

c)

Hardening

d)

Passive reconnaissance

13.

Which of the following is the strongest form of multi-factor authentication?

a)

A password, a biometric scan, and a token device

b)

Two passwords

c)

A password and a biometric scan

d)

Two-factor authentication

14.

Which of the following actions should you take to reduce the attack surface of a server?

a)

Install the latest patches and hotfixes.

b)

Install anti-malware software.

c)

Install a host-based IDS.

d)

Disable unused services.

15.

You have just purchased a new network device and are getting ready to connect it to your network. Which of the following actions should you take to increase its security? (Select two.)

a)

Apply all patches and updates.

b)

Apply all patches and updates.

c)

Conduct privilege escalation.

d)

Implement separation of duties.

e)

Remove any backdoors.

16.

Which of the following is defined as an operating system that comes hardened and validated to a specific security level as defined in the Common Criteria for Information Technology Security Evaluation (CC)?

a)

TOS

b)

OS X

c)

Windows

d)

UNIX

17.

You have placed a File Transfer Protocol (FTP) server in your DMZ behind your firewall. The FTP server is to be used to distribute software updates and demonstration versions of your products. However, users report that they are unable to access the FTP server.

What should you do to enable access?

a)

Define user accounts for all external visitors.

b)

Open ports 20 and 21 for outbound connections.

c)

Install a VPN.

d)

Move the FTP outside of the firewall.

18.

FTPS uses which mechanism to provide security for authentication and data transfer?

a)

Token devices

b)

SSL

c)

IPsec

d)

Multi-factor authentication

19.

You want to close all ports associated with NetBIOS on your network's firewalls to prevent attacks directed against NetBIOS. Which ports should you close?

a)

67, 68

b)

135, 137-139

c)

161, 162

d)

389, 636

20.

To increase security on your company's internal network, the administrator has disabled as many ports as possible. However, now you can browse the internet, but you are unable to perform secure credit card transactions.

Which port needs to be enabled to allow secure transactions?

a)

69

b)

21

c)

443

d)

23

21.

You have a shared folder named Reports. Members of the Managers group have been given Write access to the shared folder.

Mark Mangum is a member of the Managers group. He needs access to the files in the Reports folder, but he should not have any access to the Confidential.xls file.

What should you do?

a)

Remove Mark Mangum from the Managers group.

b)

Add Mark Mangum to the ACL for the Reports directory with Deny permissions.

c)

Add Mark Mangum to the ACL for the Confidential.xls file with Deny permissions.

d)

Configure NTFS permissions for Confidential.xls to allow read-only.

22.

If Mark has a read-write permission to the share \\fileserver\securefiles and a read-only permission to the file coolstuff.docx on the NTFS file system shared by the file share, he is able to perform which action?

a)

Change the contents of the file.

b)


Delete the file.

c)

Rename the file.

d)

Read the file.

23.

You need to increase the security of your Linux system by finding and closing open ports. Which of the following commands should you use to locate open ports?

a)

nslookup

b)

nmap

c)

traceroute

d)

netstat

24.

What does the netstat -a command show?

a)

All listening and non-listening sockets

b)

All connected hosts

c)

All network users

d)

All listening sockets

25.

Where should an organization's web server be placed?

a)

Intranet

b)

Extranet

c)

DMZ

d)

Honeynet

26.

Which of the following is a privately controlled portion of a network that is accessible to some specific external entities?

a)

Intranet

b)

Extranet

c)

Internet

d)

MAN

27.

You want to create a collection of computers on your network that appear to have valuable data but actually store fake data that could entice a potential intruder. Once the intruder connects, you want to be able to observe and gather information about the attacker's methods.

Which feature should you implement?

a)

NIDS

b)

Extranet

c)

NIPS

d)

Honeynet

28.

A honeypot is used for which purpose?

a)

To disable an intruder's system

b)

To entrap intruders

c)

To delay intruders in order to gather auditing data

d)

To prevent sensitive data from being accessed

29.

Which of the following devices can apply quality of service and traffic-shaping rules based on what created the network traffic?

a)

Network access control

b)

Application-aware devices

c)

Proxy server

d)

All-in-one security appliances

30.

You are the office manager of a small financial credit business. Your company handles personal financial information for clients seeking small loans over the internet. You are aware of your obligation to secure clients records, but the budget is an issue for your company.

Which item would provide the BEST security for this situation?

a)

Proxy server with access controls

b)

Network access control system

c)

All-in-one security appliance

d)

Firewall on your gateway server to the internet

31.

You are implementing security at a local high school that is concerned with students accessing inappropriate material on the internet from the library's computers. The students use the computers to search the internet for research paper content. The school budget is limited.

Which content filtering option would you choose?

a)


Allow all content except for the content you have identified as restricted.

b)


Restrict content based on content categories.

c)

Block specific DNS domain names.

d)


Block all content except for content you have identified as permissible.

32.

Which of the following BEST describes a honeyfile?

a)

A default file in the /etc/security directory.

b)

A file used to authenticate.

c)

A file that has been digitally signed.

d)


A single file setup to entice and trap attackers.

33.

Members of the sales team use laptops to connect to the company network. While traveling, they connect their laptops to the internet through airport and hotel networks.

You are concerned that these computers could pick up viruses that could spread to your private network. You would like to implement a solution that prevents the laptops from connecting to your network unless antivirus software and the latest operating system patches are installed.

Which solution should you use?

a)

VLAN

b)

NIDS

c)

NAC

d)

DMZ

34.

A proxy server can be configured to do which of the following?

a)

Act as a unified threat security device or web security gateway.

b)

Block all content except for the content you have identified as permissible.

c)

Restrict users on the inside of a network from getting out to the internet.

d)

Allow all content except for the content you have identified as restricted.

35.

Which of the following terms describes a network device that is exposed to attacks and has been hardened against those attacks?

a)

Circuit proxy

b)

Kernel proxy

c)

Multi-homed

d)

Bastion or sacrificial host

36.

Of the following security zones, which one can serve as a buffer network between a private secured network and the untrusted internet?

a)

DMZ

b)

Padded cell

c)

Extranet

d)

Intranet

37.

Which of the following describes how access control lists can be used to improve network security?

a)

An access control list filters traffic based on the IP header information, such as source or destination IP address, protocol, or socket number.

b)

An access control list filters traffic based on the frame header, such as source or destination MAC address.

c)

An access control list looks for patterns of traffic between multiple packets and takes action to stop detected attacks.

d)

An access control list identifies traffic that must use authentication or encryption.

38.

Jessica needs to set up a firewall to protect her internal network from the internet. Which of the following would be the BEST type of firewall for her to use?

a)

Software

b)

Stateful

c)

Tunneling

d)

Hardware

39.

When designing a firewall, what is the recommended approach for opening and closing ports?

a)

Close all ports.

b)

Close all ports; open only ports required by applications inside the DMZ.

c)

Close all ports; open ports 20, 21, 53, 80, and 443.

d)

Open all ports; close ports that expose common network attacks.

Open all ports; close ports t

40.

You want to connect your small company network to the internet. Your ISP provides you with a single IP address that is to be shared between all hosts on your private network. You do not want external hosts to be able to initiate connection to internal hosts. Which type of Network Address Translation (NAT) should you implement?

a)

Static

b)

Dynamic

c)

Shared

d)

Restricted

41.

Which device is NAT typically implemented on?v

a)

AD server

b)

ISP router

c)

Gateway router

d)

RADIUS server

42.

Which problem does NAT help address?

a)

IPSec not working properly

b)

The shortage of IPv6 addresses

c)

Registering IP addresses with an ISP

d)

The shortage of IPv4 addresses

43.

Which of the following does a NAT router use to associate a port number with a request from a private host?

a)

IPv4

b)

Static NAT

c)

Dynamic NAT

d)

PAT

44.

A network device is given an IP address of 172.16.0.55. Which type of network is this device on?

a)

IPv6 private network

b)

Class A private network

c)

Class C private network

d)

Class B private network

45.

You are the network administrator for a small company that implements NAT to access the internet. However, you recently acquired five servers that must be accessible from outside your network. Your ISP has provided you with five additional registered IP addresses to support these new servers, but you don't want the public to access these servers directly. You want to place these servers behind your firewall on the inside network, yet still allow them to be accessible to the public from the outside.

Which method of NAT translation should you implement for these servers?

a)

Dynamic

b)

Overloading

c)

Restricted

d)

Static