Font size
WorksheetsCertified in Cybersecurity (CC): Full Coverage Mastery Exam 1
Total questions: 101
Worksheet time: 51mins
In a system, Alice, a programmer, attempts to access a code repository. In terms of access control, how would Alice and the code repository be classified?
Alice is the object, the code repository is the subject
Alice is the subject, the code repository is the object
Both Alice and the code repository are subjects
Both Alice and the code repository are objects
As an IT manager at a financial institution, you are designing a system to ensure that any transaction made cannot be denied by the party making it. This security measure is known as:
Confidentiality
Non-repudiation
Authorization
Encryption
In a financial company, a system requires both the manager and the accountant to simultaneously use their access codes to transfer funds exceeding $10,000. What security concept does this scenario illustrate?
Defense in depth
Principle of least privilege
Two-person integrity
Mandatory Access Control (MAC)
You've just discovered that an unknown attacker has obtained unauthorized access to your company's client database. This situation is best defined as:
Exploit
Breach
Intrusion
Zero Day
The IT team at XYZ Corp is working on identifying potential threats to their network. They are also assessing the impact of these threats and planning how to respond if any of these threats occur. What is the IT team engaged in?
Risk Management
Incident Response
Asset Management
Compliance Management
In the context of user authentication, which factors typically fall under the categories of "something you are" and "something you have"?
Username and password
Fingerprint and mobile phone
Security questions and PIN
Smart card and email address
A company implements multiple layers of security controls, including firewalls, intrusion detection systems, encryption, and regular security awareness training for employees. This approach is an example of:
Defense in Depth
Least Privilege
Separation of Duties
Single Sign-On
An organization wants to ensure that a message sent over the internet cannot be read if intercepted. What technique should they use?
Encryption
Tokenization
Authentication
Authorization
As a cybersecurity analyst, your supervisor instructs you to create a document outlining the step-by-step process for configuring firewall rules in the organization's network infrastructure. What type of document are you creating?
Policy
Procedure
Standard
Guideline
In risk management, the term "impact" refers to:
Confidentiality
The severity or consequences of a risk event
The potential vulnerabilities in a system or process
The actions taken to transfer or mitigate risks
Which of the following options is an example of a logical access control?
Physical locks on doors
Security cameras monitoring a facility
Passwords
Security guards patrolling an area
A company employs mantraps/turnstiles at the entrance to their high-security data center. This physical access control measure is primarily aimed at:
Preventing tailgating
Detecting motion within the data center
Restricting access based on time of day
Alerting security personnel in case of an intrusion
Your company is based in the US and wants to extend its services to the European market. Which regulation should your company comply with to protect the personal data of its European users?
Health Insurance Portability and Accountability Act (HIPAA)
General Data Protection Regulation (GDPR)
National Institutes of Standards and Technology (NIST)
Institute of Electrical and Electronics Engineers (IEEE)
For a large healthcare organization seeking to streamline user access management based on specific job titles like doctor, nurse, and administrator, which access control model offers the most efficiency and minimal administrative overhead?
Discretionary Access Control (DAC)
Mandatory Access Control (MAC)
Role-Based Access Control (RBAC)
Attribute-Based Access Control (ABAC)
If Alice and Bob are using symmetric cryptography for secure communication, and Alice wants to send an encrypted message to Bob, which key should she use?
Bob's private key
Alice's public key
Bob's public key
The shared symmetric key
In which cloud service model does the IT department have the least responsibility for managing and maintaining the underlying infrastructure and software?
Infrastructure as a Service (IaaS)
Platform as a Service (PaaS)
Software as a Service (SaaS)
On-Premises Deployment
As part of a risk mitigation strategy, an organization decides to share the financial impact of potential data breaches with a third-party. This strategy is an example of:
Risk Acceptance
Risk Avoidance
Risk Transference
Risk Mitigation
In the context of cybersecurity, what is the primary purpose of data backups?
To prevent unauthorized access to sensitive information
To recover lost or corrupted data in the event of a disaster
To ensure the availability of network resources
To monitor and detect potential security breaches
In the event of a major earthquake, what should be the immediate priority?
Ensuring the safety of individuals
Activating the disaster recovery plan for systems
Assessing the physical damage to infrastructure
Implementing additional security measures
Which device is typically responsible for directing or guiding traffic between different networks in a typical home or small business network?
Firewall
Modem
Switch
Router
John, an IT manager, receives an alert that the company's website has been defaced. Which principle of cybersecurity has been primarily violated?
Confidentiality
Integrity
Availability
Non-repudiation
Alice is tasked with configuring a network design that separates an organization's public-facing servers (like the web server and email server) from its internal network to enhance security. What should she implement?
VLAN
VPN
IDS
DMZ
At ABC Company, the cybersecurity team identifies a group of hackers who are known for exploiting a specific weakness in network security. What does this group represent for ABC Company? •
Threat Actors
Threat Vector
Risk
Vulnerability
What type of cyberattack involves an attacker encrypting a victim's data and then demanding payment in exchange for the decryption key?
Phishing Attack
SQL Injection Attack
Ransomware Attack
Denial-of-Service (DoS) Attack
In securing Protected Health Information (PHI), which of the following is a key principle of information security?
Confidentiality
Compliance
Availability
Authentication
As a cybersecurity analyst, you discover a known vulnerability in a web application that could allow an attacker to execute arbitrary code on the server. What term is used to describe the act of taking advantage of this vulnerability?
Vulnerability
Threat
Exploitation
Risk
To improve the security of your organization's information system, you have been tasked to perform a vulnerability assessment. Which of the following will you primarily focus on? • • (Correct) •
Identifying potential threat actors
Identifying potential weaknesses in the system
Assessing the potential impacts of threat
Ensuring availability of data
Which port is commonly used for secure web communication over HTTPS?
Port 80
Port 443
Port 22
Port 53
What does the term "Governance" refer to in an organizational context?
The process of how an organization is managed, including decision-making policies and roles
The implementation of security controls to protect organizational assets
The monitoring and assessment of security controls to ensure compliance
The identification and management of risks within an organization
Firewalls, intrusion detection systems, and antivirus software are examples of which type of cybersecurity control?
Logical control
Physical control
Administrative control
Operational control
ABC Company has hired a cybersecurity consultant to assess the value of their proprietary software, customer databases, and brand reputation. What is the consultant evaluating?
Threats
Vulnerabilities
Assets
Risks
A company installs a perimeter fence equipped with motion detectors and alarms to protect its manufacturing facility from unauthorized access. This access control method primarily falls under:
Logical access control
Physical access control
Technical access control
Administrative access control
What does the term "Risk Tolerance" refer to in cybersecurity?
The level of risk an entity is willing to assume in order to achieve a potential desired result
The level of risk associated with a specific vulnerability or threat
The process of assessing and mitigating risks in an organization
The likelihood of a risk event occurring and its potential impact
Your company's IT department has noticed an unusual amount of outgoing network traffic during non-business hours from several company computers. No significant harm has been done yet, but the traffic pattern is consistent with a potential malware infection. How would you classify this situation?
Cybersecurity Alert
Cybersecurity Vulnerability
Cybersecurity Incident
Cybersecurity Threat
Which cloud service model is specifically designed to enable businesses and developers to host, build, and deploy consumer-facing apps?
Infrastructure as a Service (IaaS)
Platform as a Service (PaaS)
Software as a Service (SaaS)
Hybrid Cloud
What is the purpose of subnet masks in IP addressing?
Subnet masks define the maximum number of devices allowed on a network.
Subnet masks determine the network portion and host portion of an IP address.
Subnet masks provide encryption for secure communication over the internet.
Subnet masks assign IP addresses to devices within a local network.
In the Incident Response Plan, which phase involves learning from the incident to improve the existing plan?
Preparation
Detection and Analysis
Containment
Post-Incident Activity
What is the primary purpose of a digital signature in cryptography?
To ensure data confidentiality by encrypting messages
To verify the integrity and authenticity of digital data
To facilitate secure key exchange between two parties
To compress and optimize the size of digital files
Which of the following organizations is a private non-profit organization that develops and promotes voluntary Internet standards, in particular the standards that comprise the Internet protocol suite (TCP/IP)?
National Institute of Standards and Technology (NIST)
Internet Engineering Task Force (IETF)
Institute of Electrical and Electronics Engineers (IEEE)
International Organization for Standardization (ISO)
You work for an online travel agency that collects customer information for bookings. Which of the following examples would be considered Personally Identifiable Information (PII)?
Customer's travel destination
Customer's passport number
Customer's preferred airline
Employee's department name
During an incident response, what is the highest priority of first responders?
To identify the attacker
To preserve evidence
To restore services as quickly as possible
To update the security policies
Your organization's primary data center is located in an area prone to earthquakes. In the context of disaster recovery and business continuity planning, which of the following best describes the nature of an earthquake?
Vulnerability
Threat
Impact
Zero Day
As the new head of cybersecurity at your organization, you are tasked with preparing a Business Impact Analysis (BIA). What is the primary purpose of a BIA?
To assess the potential effects of an interruption to critical business operations
To ensure that all employees are trained in cybersecurity best practices
To identify all potential cybersecurity threats to the organization
To create a plan for responding to a cybersecurity incident
What is the purpose of classifying data in terms of its sensitivity within an organization?
To determine the level of encryption needed for each data type
To identify what information can be made public
To understand the potential impact if the data were to be compromised
To ensure all employees have access to all data
Sam, a system administrator, has been tasked with ensuring that all new hires have the minimum necessary access to perform their job duties. Which principle is Sam applying in this scenario?
Defense in Depth
Principle of Least Privilege
Segregation of Duties
Mandatory Access Control
Which type of cyberattack primarily targets the availability aspect of the CIA triad in cybersecurity, often by overwhelming network resources and causing a disruption in services?
Phishing Attack
Man-in-the-Middle Attack
AttackDenial-of-Service (DoS) Attack
SQL Injection Attack
When a cyber attacker successfully performs a phishing attack and gains unauthorized access to sensitive information, which principle of the CIA triad is primarily violated?
Confidentiality
Integrity
Availability
Non-repudiation
What is the primary purpose of a firewall in network security?
To encrypt data transmitted between network devices.
To filter incoming traffic based on rules and control access to the network.
To identify and remove malicious software from network devices.
To monitor and log network traffic for analysis and troubleshooting.
John, an IT analyst at XYZ Corp, successfully logs into a company system using his unique credentials. Which cybersecurity process is described in this scenario?
Authentication
Authorization
Encryption
Firewall
Which of the following best describes Discretionary Access Control (DAC)?
An access control policy determined by the system administrator
An access control policy where permissions are granted or denied based on user's discretion
An access control policy where permissions are granted based on role of the user
An access control policy that restricts access based on the sensitivity level of the information
ABC Corp has identified a potential risk of unauthorized access to their network. They decide to implement two-factor authentication for all employees to address this risk. What risk strategy are they employing?
Risk Acceptance
Risk Avoidance
Risk Transfer
Risk Mitigation
A company implements a review and approval process for financial transactions, where one employee enters the transaction, another approves it, and a third person verifies the accuracy. This practice primarily aligns with: • • • (Correct) •
Defense in Depth
Least Privilege
Segregation of Duties
Single Sign-On
In the context of a Disaster Recovery (DR) plan, which component primarily focuses on defining the maximum tolerable data loss in the event of a system failure or disaster?
Business Impact Analysis (BIA)
Recovery Time Objective (RTO)
Recovery Point Objective (RPO)
Incident Response Plan (IRP)
Which of the following is a common metric used in quantitative risk analysis?
Color-coded risk level
Descriptive risk ranking (high, medium, low)
Expected Monetary Value (EMV)
Subjective risk labels (critical, substantial, moderate)
As a cybersecurity professional, you are educating your team about Disaster Recovery (DR). Which of the following best describes the primary goal of DR?
To prepare for and prevent any potential cyber incidents
To restore normal business operations as quickly as possible after a disaster
To detect and analyze potential cybersecurity threats
To provide a framework for overall organizational security
You are a cybersecurity professional working for a financial institution. As part of your responsibilities, you are in charge of implementing controls to protect customer data and prevent unauthorized access. Your focus is on establishing guidelines and practices to ensure employees follow proper procedures and adhere to security policies. What type of control are you primarily implementing? • • • (Correct) •
Technical control
Physical control
Administrative control
Operational control
Which type of access control measure is primarily designed to discourage potential attackers from attempting to breach a system, rather than preventing their actions outright?
Compensating Access Control
Corrective Access Control
Detective Access Control
Deterrent Access Control
You are a cybersecurity analyst tasked with prioritizing risks. You decided to rank the risks based on their likelihood and potential impact but without assigning exact numerical values. Which type of risk analysis are you conducting?
Qualitative risk analysis
Quantitative risk analysis
Financial risk analysis
Strategic risk analysis
An IT administrator is setting permissions for folders on the company server. In this scenario, which of the following is considered an 'Object'?
The IT administrator
The permissions being set
The folders on the server
The server management software
A company uses an access control method where employees can set permissions for files they own, choosing who can read, write, or execute them. What type of access control is the company using?
Mandatory Access Control (MAC)
Role-Based Access Control (RBAC)
Discretionary Access Control (DAC)
Rule-Based Access Control (RBAC)
In the context of privileged access management, what is the purpose of just-in-time privileged access management and just-in-time identity?
Granting users permanent and unrestricted access to all resources and services
Assigning specific roles to users based on their job responsibilities
Providing users with temporary elevated privileges when needed
Verifying users' identities through real-time authentication processes Explanation
A company implements a new software system to manage customer data. The company performs a thorough risk assessment, identifies potential vulnerabilities, and implements various security controls. Despite these efforts, the risk assessment reveals that there is still a residual risk associated with the system. This residual risk represents:
The risk level before any security controls are implemented
The total risk exposure faced by the company
The remaining risk after security controls have been implemented
The unidentified or unknown risks within the system
Which of the following statements accurately describes the role of hash functions in data integrity?
Hash functions encrypt data to protect its confidentiality
Hash functions compress data to reduce its size
Hash functions generate unique fingerprints to verify data integrity
Hash functions verify the availability and accessibility of data
Which of the following is a suitable scenario for using degaussing as a data destruction method?
Securely erasing data from a solid-state drive (SSD)
Permanently deleting files from a cloud storage service
Disposing of old magnetic tape backups
Cleaning up unused data partitions on a hard drive
A large software company is concerned about potential security risks within its own systems. The security team identified that several employees have more system permissions than their roles require, due to temporary assignments or promotions that have since ended. What is the term for this situation?
Privilege escalation
Access aggregation
Privilege creep
Permission inflation
Your job is to make sure any changes to a system, like updates or patches, are checked and approved before they're made. What is this process called?
Disaster Recovery
System Hardening
Change Control
Patch Management
Which of the following is an example of behavioral biometrics?
Facial recognition
Fingerprint scanning
Keyboard dynamics
Iris scanning
Which of the following best describes the purpose of Data Loss Prevention (DLP) technology?
To monitor and control inbound network traffic
To prevent unauthorized access to the organization's network
To detect and prevent data breaches or unauthorized data leakage
To encrypt data in transit for secure communication
An audit in a financial institution revealed that two employees were able to bypass the Two-Person Integrity control in a critical system to siphon funds. They were able to do this because each of them held one piece of the required access information. Which of the following terms best describes this scenario?
Privilege Escalation
Collusion
Impersonation
Access Control Bypass
Tom, a cybersecurity analyst, is working for a company that has recently switched to remote work. Employees need a secure way to access the company's internal resources from their homes. What should Tom recommend?
RDP (Remote Desktop Protocol)
VLAN (Virtual Local Area Network)
IDS (Intrusion Detection System)
VPN (Virtual Private Network)
Why is proper provisioning and deprovisioning important in user account management?
To maintain administrative control over user accounts
To ensure the availability of system resources
To reduce the risk of unauthorized access
To enforce compliance with security policies
In an asymmetric encryption system, if Bob wants to send a confidential message to Alice, which key should he use to encrypt the message?
Alice's private key
Bob's private key
Bob's public key
Alice's public key
What is the primary purpose of a password manager?
To generate and store passwords in clear text
To provide a convenient way to remember all passwords without encryption
To securely store and manage complex and unique passwords
To replace the need for passwords altogether Explanation
Who is primarily responsible for publishing and signing cybersecurity policies within an organization?
Human resources
IT administrators
Senior management
Security professionals
Which of the following ports is typically used for the Simple Mail Transfer Protocol (SMTP) that Lisa, a network administrator, needs to set up on a mail server?
Port 22
Port 25
Port 23
Port 21
In your role as a system administrator, you have implemented a change to the network configuration of XYZ Corp. Unfortunately, this has led to unintended system instability. What process would you utilize to restore the system to its previous stable state?
Baseline Identification
Hardening
Change Control
Rollback
What is a valid compressed version of the following IPv6 address: 2001:0db8:0000:0000:0000:ff00:0042:8329?
2001:db8:0:0:0:ff00:42:8329
2001:db8::ff00:42:8329
2001::db8:ff00:42:8329
2001:db8::ff00:42::8329
When a cyber attacker pretends to be someone else to trick people into giving away private information, what is this kind of attack called?
Spoofing
Pretexting
Pharming
Vishing
How many layers are there in the OSI model, which is a conceptual framework used to understand and describe network protocols and functions?
5
6
7
8
Which type of fire suppression system is commonly used in data centers to minimize water damage to sensitive electronic equipment?
Gas-based fire suppression system
Water-based fire suppression system
Foam-based fire suppression system
Powder-based fire suppression system
What measure can be taken to mitigate the risks associated with data remanence?
Using strong encryption for all data
Implementing a robust data backup policy
Performing secure data deletion techniques
Frequently updating software applications
Robert, a system administrator, is concerned about software that could infect the company's systems and potentially destroy or steal data. He wants a solution that can scan, identify, and eliminate such harmful software. What type of solution should Robert consider?
Firewall
Intrusion Detection System (IDS)
Virtual Private Network (VPN)
Anti-malware
Which layer of the OSI model is responsible for managing the formatting and encryption of data to ensure its proper interpretation by the receiving device?
Network Layer
Data Link Layer
Presentation Layer
Transport Layer
Emily, a cybersecurity consultant, is asked to recommend a network design strategy that can effectively control internal traffic flows, both within a data center and between the data center and the internet. Which strategy should Emily suggest?
Implementing an intrusion detection system
Deploying an antivirus solution across all systems
Utilizing microsegmentation
Setting up a Virtual Private Network (VPN)
Why is it important for an organization to maintain an accurate inventory of its data assets, including location, retention period requirement, and destruction requirements?
To ensure efficient use of storage space
To maintain data accuracy and reliability
To ensure compliance with data privacy laws and regulations
To reduce the costs associated with data management
Which of the following best describes the purpose of out-of-band distribution in authentication processes?
To increase the efficiency of authentication
To provide a separate and secure channel for authentication
To eliminate the need for multi-factor authentication
To reduce the complexity of the authentication process
Alice, a security analyst, is working on a system where an attacker might try to gather information indirectly by exploiting implementation characteristics of the system, such as timing information, power consumption, electromagnetic leaks, or even sound to extract data. What type of attack should Alice be concerned about?
Buffer Overflow Attack
Side Channel Attack
Cross-Site Scripting Attack
SQL Injection Attack
What type of malware is Emily likely dealing with if she observes abnormal behavior on her network, including increased network traffic and automatic propagation without user interaction?
Worm
Trojan
Ransomware
Spyware
Which category of encryption does the substitution cipher belong to?
Symmetric encryption
Asymmetric encryption
Hashing
Digital signature
In a secure government facility, access to information is based on the classification level of the data and the clearance level of the user. This is an example of which type of access control?
Discretionary Access Control (DAC)
Mandatory Access Control (MAC)
Role-Based Access Control (RBAC)
Attribute-Based Access Control (ABAC)
Sarah, a security analyst, is responsible for monitoring and analyzing security events and logs from various sources within her organization's network. She needs a centralized system that can collect, correlate, and analyze this data to identify security incidents and provide real-time alerts. Which type of solution should Sarah consider?
Firewall
Intrusion Detection System (IDS)
SIEM (Security Information and Event Management)
VPN (Virtual Private Network)
Which command-line tool is used to display the path that a packet takes to get from the source host to the destination host, while also recording the time taken for each hop?
netstat
nslookup
ping
traceroute
In the context of Business Continuity (BC) and Disaster Recovery (DR), what is the purpose of a Memorandum of Understanding (MOU) or Memorandum of Agreement (MOA)?
To establish an agreement for data sharing between organizations
To create a legally binding contract for financial transactions
To ensure mutual assistance and resource sharing during an emergency situation
To define software licensing terms between two organizations
A company wants to logically segment its network without altering the physical topology. Which network design concept will best serve this purpose? • • • (Correct) •
Network Access Control (NAC)
Virtual Private Network (VPN)
Virtual Local Area Network (VLAN)
Demilitarized Zone (DMZ)
Which of the following statements regarding MAC and IP addresses is true?
Both MAC and IP addresses are easily changed
MAC addresses are fixed, IP addresses can change
IP stays same across networks, MAC changes
Both MAC and IP addresses are hard-coded and fixed
Which process occurs as data moves up the layers of the OSI model?
Encapsulation
De-encapsulation
Segmentation
Concatenation
Which step of the three-way handshake in TCP involves the server acknowledging the client's connection request?
SYN packet
SYN-ACK packet
ACK packet
Data packet
As the new cybersecurity officer at XYZ Corp, you've been tasked with enhancing the organization's security posture. You propose establishing a security baseline. Which of the following BEST describes the primary benefit of this approach?
It ensures that all system patches and updates are applied in real time
It serves as a minimum level of security against which all system changes are evaluated
It guarantees that all network traffic is encrypted to maintain data confidentiality
It optimizes system performance by automatically allocating network resources
What is the primary purpose of a records retention policy in an organization?
To ensure data is stored forever
To determine how long data needs to be maintained before it can be securely disposed of
To minimize the size of data backups
To limit the number of records an organization collects
How many layers are there in the OSI model, which is a conceptual framework used to understand and describe network protocols and functions?
5
6
7
8
Which of the following controls is specifically designed to identify and alert on known patterns or signatures of malicious activities in a network?
Firewalls
Intrusion Detection System (IDS)
Virtual Private Network (VPN)
Access Control Lists (ACLs)
