Font size
WorksheetsWSDip CSF - SSM
Total questions: 76
Worksheet time: 2hrs 51mins
Which of the following is the correct representation of the AAA of Security Framework? (Choose 1 or more answers)
Accounting
Authentication
Authorization
Accessibility
Multi-Factor Authentication (MFA) is a security system where more than ONE method of authentication is used to verify a USER's Identity. Which of the following is a valid independent credential? (Choose 1 or more answers)
What the User knows (Password)
What the User has (Security Token)
What the User is (Biometric Verification)
Where the User is (Location Verification)
Policy Settings in Account Policies are implemented at Domain Level and generally affect all accounts. Which of the following policy can be configured for a particular user or group?
Fine - grained Password Policy
Refined Password Policy
User Password Policy
Group Password Policy
Which of the following policy is part of the Policy Settings in Account Policy? (Choose 1 or more answers)
Account Lockout Policy
Password Policy
Kerberos Policy
Domain Policy
Which of the following action is to be taken to ensure an locked account can only be manually unlocked by an Administrator?
Set Lockout Threshold to 0
Set Reset Account Lockout Counter to 0
Set Lockout Duration to 0
Use the Intruder Lockout Settings
Which of the following setting is valid to ensure Users can attempt to login after 10 mins if their account is locked out due to wrong password?
Lockout Duration = 10
Lockout Threshold = 10
Reset Account Lockout Counter = 10
Maximum Password Age = 10
Any user who enters 3 incorrect password in succession in a 5 minutes period will have their account locked out until manually unlocked by an Administrator.
Which of the following Account Policy setting is valid for the above scenario?
Lockout Duration = 3
Lockout Duration = 5
Lockout Duration = 0
Lockout Duration = 8
Any user who enters 3 incorrect password in succession in a 5 minutes period will have their account locked out until manually unlocked by an Administrator.
Which of the following Account Policy setting is valid for the above scenario?
Lockout Threshold = 3
Lockout Threshold = 5
Lockout Threshold = 0
Lockout Threshold = 8
Any user who enters 3 incorrect password in succession in a 5 minutes period will have their account locked out until manually unlocked by an Administrator.
Which of the following Account Policy setting is valid for the above scenario?
Reset Account Lockout Counter = 3
Reset Account Lockout Counter = 5
Reset Account Lockout Counter = 0
Reset Account Lockout Counter = 8
A user password must be
1) At least 8 characters;
2) Must be different from last 10 passwords used;
3) Must be changed every 30 days;
4) Password can be changed anytime;
5) Difficult to Crack
Which of the following Account Policy setting is valid for the above scenario? (Choose 1 or more answers)
Minimum Password Length = 8
Minimum Password Age = 8
Maximum Password Age = 8
Enforce Password History = 8
Password must meet complexity requirements
A user password must be
1) At least 8 characters;
2) Must be different from last 10 passwords used;
3) Must be changed every 30 days;
4) Password can be changed anytime;
5) Difficult to Crack
Which of the following Account Policy setting is valid for the above scenario? (Choose 1 or more answers)
Minimum Password Length = 10
Minimum Password Age = 10
Maximum Password Age = 10
Enforce Password History = 10
Password must meet complexity requirements
A user password must be
1) At least 8 characters;
2) Must be different from last 10 passwords used;
3) Must be changed every 30 days;
4) Password can be changed anytime;
5) Difficult to Crack
Which of the following Account Policy setting is valid for the above scenario? (Choose 1 or more answers)
Minimum Password Length = 30
Minimum Password Age = 30
Maximum Password Age = 30
Enforce Password History = 30
Password must meet complexity requirements
A user password must be
1) At least 8 characters;
2) Must be different from last 10 passwords used;
3) Must be changed every 30 days;
4) Password can be changed anytime;
5) Difficult to Crack
Which of the following Account Policy setting is valid for the above scenario? (Choose 1 or more answers)
Minimum Password Length = 0
Minimum Password Age = 0
Maximum Password Age = 0
Enforce Password History = 0
Password must meet complexity requirements
Which is NOT a Common Type of Attacks?
Trojan horse
Network scanner
People engineering
Denial of service attacks
Which is NOT a valid Reasons for Network Attacks?
Profit
Revenge
Patching
Personal Satisfaction
Which is NOT a Common Network Vulnerabilities?
User rights
Sudo command
Audit settings
Account passwords
Which is NOT a valid layer in Defense-in-depth?
Data
Storage
Networks
Perimeter
Which is NOT a best practise to increase system security in Server Hardening?
Close unneeded ports
Maximise software installations
Keep security patches up to date
Stop and/or uninstall unneeded services
Which is NOT an area where security settings can be applied using Security Templates?
BIOS: Firmware settings for system hardware
File System : Permissions for folders and files
Event Log : App, system, and security event log settings
System Services: Startup and permissions for system services
Which is NOT a valid method to configure Windows Firewall?
Group Policy
Network Adapter Properties
Windows Firewall with Advanced Security
Basic Firewall configuration in Control Panel
Which is NOT a main criteria used in firewall rules?
IP addresses
Port numbers
MAC addresses
Protocol numbers
AAA of Security Framework for User Accounts DOES NOT include which of the following?
Accounting
Assessment
Authorization
Authentication
Windows Account Policy consists of the following types EXCEPT one of the following.
Radius policy
Password policy
Kerberos policy
Account lockout policy
Which of the following is NOT a correct data security goal?
Validity
Integrity
Availability
Confidentiality
Which of the following is NOT correct about Audit Policies?
Logs are captured in security log
Enabled based on success or failure
Used to track events by activity category
Capture events about system and application failures
Which of the following is NOT a valid Audit Event Category?
Audit account management
Audit account logon events
Audit directory service access
Audit incoming TCP network connections
Which of the following is a common type of cyber attack? (Choose 1 or more answers)
Network Scanner
Trojan Horse
Social Engineering
Denial of Service Attacks
Vulnerabilities
Which of the following is a common Network Vulnerability? (Choose 1 or more answers)
Account Password
Audit Settings
User Rights
Services
Which of the following is a Key Security Principles? (Choose 1 or more answers)
Defense - In - Depth
Least Privilege
Minimized Attack Surface
Maximized Tracking
Which of the following will help in server hardening? (Choose 1 or more answers)
Disable Automatic Updates
Update Security Patches to the latest
Stop Un-needed Services
Close Un-needed Ports
Minimize Software Installations
Which of the following will help in server hardening? (Choose 1 or more answers)
Enable Plug and Play
Use Anti-Malware Software
Un-install Un-needed Services
Run Vulnerability Scans
Disable Un-needed Hardware
Which of the following tool can be used to highlight common administrative vulnerabilities and missing security updates?
Security Configuration Wizard
Microsoft Baseline Security Analyzer
Windows Firewall
Windows Defender
Which of the following is the criteria used in Firewall rules? (Choose 1 or more answers)
IP Addresses
Protocol Numbers
Port Numbers
Packet Sequences
Which of the following is the default rule for Windows Firewall? (Choose 1 or more answers)
On
Allow All Incoming Traffic
Allow All Outgoing Traffic
Block All Incoming Traffic
Block All Outgoing Traffic
Which of the following is NOT an advantage of virtualization?
Underutilizes resources.
Offers flexible infrastructure at low cost.
Makes OS and applications hardware independent.
Runs multiple OS per physical machine concurrently.
Which of the following is a benefit of virtualization?
Decrease hardware utilization.
Improve business continuity.
Establish a decentralized desktop strategy.
Decrease efficiency in development and test activities.
Which of the following is NOT a server virtualization product?
Vmware – Vsphere.
Microsoft - Hyper-V.
Veritas Infoscale Availability 7.0.
Amazon Web Services - Elastic Compute Cloud (EC2).
Which of the following is NOT a characteristic of Type I Virtualization (Native or Bare Metal)?
Host operating system required.
Parent partition creates and manages the child partitions.
Individual virtual machines have their own OS and accesses hardware through the hypervisor.
Hypervisor layer interacts directly with the computer’s physical hardware for better performance.
Which of the following is NOT a characteristic of Type II Virtualization (Hosted)?
Requires a Host operating system.
Does not provide the same performance as separate physical computers.
A virtual hardware environment is shared by all VMs with OS installed.
The host OS shares access to the computer’s processor with the hypervisor.
Which of the following is NOT a valid virtual disk type?
Differencing.
Variable size.
Dynamically expanding.
Physical (or pass through disk).
Which of the following is NOT the purpose of event logs?
It provides an audit trail to understand the activities on the system.
It provides historical information so you can track down system and security problems.
Provide GUI to for command-level intreface
Help to diagnose problems.
Which of the following is NOT a type of Windows event log?
Application
Firewall
Security
Setup
Which of the following is NOT a type of event in a Windows log?
Warnings
Errors
System
Information
Which of the following actions is NOT a valid action taken by the Event Tracker when a log file reaches its maximum file size by default?
It will stop recording
It will delete the logfile
It will overwrite the logfile
It will archive the log file
Which of the following actions will enable you to collect logs from remote servers automatically?
Configure event subscription
Creating a custom view
Configure Log filtering
Change the location of all logfiles.
Which of the following is NOT a type of Windows Updates?
Security Updates
Service Packs
Server Packs
Critical Updates
Which of the following can be used to automate and centrally manage updates?
WSUS
WDS
NAP
Automatic Updates
With WSUS, windows clients do not need to have internet access to download updates.
False
True
Which of the following 3 types are used to categorize Updates on a WSUS server? (Choose 1 or more answers)
Upload
Declined
Removed
Approved
WSUS Administration console is used for the following EXCEPT:
Configure WSUS settings and options
View performance report
View computer status
Manage updates
Which one of the followings is the correct definition of baselining?
A baseline is the level of system activities that you decide is acceptable.
A baseline is the level of system utilizations that you decide is acceptable.
A baseline is the level of system performance that you decide is acceptable.
A baseline is the level of system bottlenecks that you decide is acceptable.
You can view a system’s current performance by using _________.
Performance Alert
Task Scheduler
Task Manager
Data Collector's Set
Identify all the tools you can use to help identify the process which is hogging the system memory? (Choose 1 or more answers)
Reliability Monitor
Performance Monitor
Resource Monitor
Task Manager
Select 2 tools or methods which could be used to view historical data.
Performance Monitor
Event Viewer
Performance log
Task Manager
Which of the following is a Symmetric Encryption Algorithm?
ECC
AES
RSA
MD5
In Windows Encrypting File System, where are the Encryption keys stored?
Registry
User Profile
Digital Certificate
Organisational Unit
Which of the following will NOT help to improve data security
Audit Policy
Bitlocker
Encrypting File System (EFS)
System Restore
Which of the following can recover Encrypted File System (EFS) files other than the user?
Data Recovery Agent
Domain Admins
Enterprise Admins
Administrators
Which of the following is required to recover Encrypted File System (EFS) files?
Data Recovery Key
File
Encryption Key
Operating System
Which of the following log is used to store Audit Events in Windows Operating System (OS)?
Application Log
Security Log
Setup Log
System Log
Which of the following can access a file encrypted using Encrypted File System (EFS)? (Choose 1 or more answers)
User who encrypt the File
Data Recovery Agent
User who is given access to the File
Administrators
Which of the following audit policy need to be enabled to monitor who has been accessing the files on the server?
Logon Events
Object Access
Directory Service Access
System Events
Which of the following action must be taken to track users accessing folders on a server? (Choose 1 or more answers)
Enable Audit Policy (Object Access)
Apply Audit Policy on Files / Folders
Apply NTFS Permissions on Files / Folders
Enable Audit Policy (System Events)
Which of the following settings can help to prevent brute - force attacks?
(Choose 1 or more answers)
Password Age
Password History
Password Length
Password Complexity
Which of the following measures will help to secure records in a Storage Area Network (SAN)?
(Choose 1 or more answers)
Disk Encryption
File Encryption
Database Records Encryption
Data & User Access Controls
Which of the following measures will help secure Internet data traffic between clients' and servers' endpoints?
(Choose 1 or more answers)
Secure Socket Layer
Transport Layer Security
Field Level Encryption
Hypertext Transfer Protocol Secure
Which of the following is NOT a recommended practice to prevent malware infections?
Regularly update antivirus software
Click on suspicious email links
Avoid downloading files from unknown sources
Use a firewall
Which of the following is NOT a valid step to protect sensitive data on a computer?
Encrypt the data
Store passwords in a text file
Use strong passwords
Enable file and folder permissions
Fail2ban is an Intrusion Prevention System (IPS) that can protect systems from brute - force attacks. Which of the following is NOT a characteristic of Fail2ban?
Scan Log Files to Detect Patterns that Indicates Break-In Attempts
Takes Predefined Actions to Block Hosts by Adding Entries in IPtables
Block Hosts & IP Addresses for Specified Periods
Alerts and Takes No Action when Break-In Attempts are Detected
Which of the following group of domain users will be assigned with Hypervisor administrative role?
(Choose 1 or more answers)
ESX Admins
ESXi Admins
Hyper-V Administrators
Administrators
How many virtual hosts can be support by ONE vCenter Service instance?
1000
500
1500
2000
Which of the following is a component of vCenter Server Architecture?
(Choose 1 or more answers)
Core Services
Database Server
Active Directory
User Access Control
Which of the following is a component of vCenter Server Architecture?
(Choose 1 or more answers)
vSphere API
Distributed Services
ESX / ESXi Management
User Access Control
Which of the following is a phase in a malware incident life - cycle?
(Choose 1 or more answers)
Preparation
Detection & Analysis
Containment, Eradication & Recovery
Post - Incident Activities
Which of the following measures will protect the ESXi Host(s) from unauthorised intrusion & misuse?
(Choose 1 or more answers)
Limit User Access
Limit Shell Access
Limit Services Run
Limit Network Connections
Which of the following measures will protect the ESXi Host(s) from unauthorised intrusion & misuse?
(Choose 1 or more answers)
Limit User Access
Limit Shell Access
Patch Host(s) with latest Security Updates
Use Secure Network Connections
