Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

SEC+ Mod 6 Part 4

Total questions: 86

Worksheet time: 43mins

Name
Class
Date
1.

What is privilege escalation?

a)

Gaining control of the target system with the privileges of the compromised process.

b)

Increasing the memory capacity of a system.

c)

Enhancing the speed of a network.

d)

Upgrading the operating system to a newer version.

2.

Which programming languages offer memory safety features to help prevent buffer overflows?

a)

Python, Java, and C#

b)

HTML, CSS, and JavaScript

c)

PHP, Ruby, and Perl

d)

SQL, NoSQL, and MongoDB

3.

Which of the following is NOT a security practice to mitigate buffer overflow vulnerabilities?

a)

Input validation

b)

Boundary checks

c)

Using unsafe functions like strcpy in C/C++

d)

Avoiding the use of unsafe functions

4.

What is the purpose of Data Execution Prevention (DEP) and Address Space Layout Randomization (ASLR)?

a)

To enhance the difficulty for attackers attempting to exploit buffer overflows.

b)

To increase the speed of data processing.

c)

To improve the graphical user interface of the operating system.

d)

To reduce the power consumption of the system.

5.

Which of the following is NOT an endpoint hardening technique?

a)

Changing default passwords

b)

Host-based firewalls

c)

Host-based IPSs

d)

Increasing the screen resolution

6.

What do host-based enterprise hardening techniques focus on?

a)

Securing individual endpoints or hosts within an organization's network.

b)

Enhancing the visual appearance of the user interface.

c)

Increasing the storage capacity of servers.

d)

Reducing the number of software applications installed.

7.

Which of the following is a fundamental security measure to prevent unauthorized access by changing default settings?

a)

Removing unnecessary software

b)

Disabling unused ports and protocols

c)

Changing default passwords

d)

Implementing host-based firewalls

8.

What is the primary benefit of removing unnecessary software from a system?

a)

It increases the attack surface

b)

It minimizes potential security risks

c)

It enhances device-level security

d)

It allows for better network traffic management

9.

Which of the following practices helps in reducing the potential for unauthorized access by disabling unused ports and protocols?

a)

Implementing host-based firewalls

b)

Changing default passwords

c)

Removing unnecessary software

d)

Disabling unused ports and protocols

10.

What is the role of a host-based firewall in a security system?

a)

To monitor and protect individual hosts from various forms of malicious activity

b)

To manage inbound and outbound network traffic and enforce access policies

c)

To disable unused ports and protocols

d)

To change default passwords

11.

Which security measure is designed to monitor and protect individual hosts from various forms of malicious activity and intrusion attempts?

a)

Host-based firewall

b)

Disabling unused ports and protocols

c)

Host-based Intrusion Prevention System (HIPS)

d)

Removing unnecessary software

12.

What is the primary purpose of endpoint protection solutions?

a)

To enhance the speed of individual devices

b)

To safeguard individual devices and endpoints from malware and other security threats

c)

To improve the graphical interface of software applications

d)

To increase the storage capacity of devices

13.

Which of the following is NOT a feature of endpoint protection suites?

a)

Host-based firewall to control network traffic

b)

Managing and enforcing policies related to external devices

c)

Increasing the processing power of devices

d)

Providing a centralized console for managing security

14.

What does Full-Disk Encryption (FDE) secure?

a)

Only user files

b)

Only applications

c)

The entire storage drive of a device

d)

Only the operating system

15.

Which of the following is a built-in FDE tool for Windows operating systems?

a)

FileVault

b)

VeraCrypt

c)

LUKS

d)

BitLocker

16.

What is the macOS equivalent of BitLocker?

a)

VeraCrypt

b)

FileVault

c)

LUKS

d)

Symantec Endpoint Encryption

17.

Which encryption software is compatible with Windows, macOS, and Linux operating systems?

a)

BitLocker

b)

FileVault

c)

VeraCrypt

d)

LUKS

18.

What does file-level encryption allow you to do?

a)

Encrypt the entire storage drive of a device

b)

Encrypt specific files or folders on a host

c)

Encrypt only the operating system

d)

Encrypt only user files

19.

Which of the following tools is a built-in file-level encryption feature for Windows operating systems?

a)

AxCrypt

b)

Encrypto (Mac)

c)

Microsoft EFS (Encrypting File System)

d)

Boxcryptor

20.

Which encryption tool is specifically designed for Mac and simplifies the process of encrypting individual files?

a)

GNU Privacy Guard (GPG)

b)

Encrypto (Mac)

c)

Boxcryptor

d)

AxCrypt

21.

What is the primary purpose of Transport Layer Security (TLS)?

a)

To secure data at rest

b)

To secure data in transit over a network

c)

To encrypt individual files

d)

To provide drag-and-drop encryption

22.

Which of the following is an open-source file-level encryption tool available for Windows?

a)

Boxcryptor

b)

Microsoft EFS (Encrypting File System)

c)

AxCrypt

d)

Encrypto (Mac)

23.

What does Public Key Infrastructure (PKI) use to secure communications?

a)

Symmetric key cryptography

b)

Digital signatures and encryption of data

c)

File-level encryption

d)

Drag-and-drop encryption

24.

Which encryption tool integrates with cloud storage services like Dropbox, Google Drive, and OneDrive?

a)

AxCrypt

b)

Boxcryptor

c)

GNU Privacy Guard (GPG)

d)

Encrypto (Mac)

25.

Which of the following practices involves applying software updates, patches, and security fixes to eliminate known vulnerabilities in operating systems, applications, and software components?

a)

Decommissioning

b)

Configuration enforcement

c)

Patching

d)

Monitoring

26.

What is the primary goal of decommissioning in the context of security practices?

a)

Applying updates to eliminate vulnerabilities

b)

Safe retirement of hardware and software

c)

Ongoing surveillance of system activities

d)

Maintaining safe configurations

27.

Which security practice is essential for maintaining the security and integrity of an organization's IT infrastructure by addressing identified vulnerabilities in software?

a)

Monitoring

b)

Configuration enforcement

c)

Decommissioning

d)

Patching

28.

What is one of the benefits of applying patches to software systems?

a)

Increasing the number of vulnerabilities

b)

Improving the overall performance and stability of software and systems

c)

Decreasing system reboots and downtime

d)

Reducing the need for change management

29.

Which security practice involves ongoing surveillance of system activities?

a)

Patching

b)

Decommissioning

c)

Configuration enforcement

d)

Monitoring

30.

What challenge might organizations face when applying patches in an enterprise network?

a)

Ensuring patches are compatible with existing software and configurations

b)

Reducing the number of vulnerabilities

c)

Increasing system performance

d)

Decreasing the need for change management

31.

What can organizations use to automate the identification and application of patches across their systems?

a)

Manual patching processes

b)

Patch management tools

c)

System reboots

d)

Downtime management tools

32.

What is the primary purpose of decommissioning in cybersecurity?

a)

To increase the number of assets in use

b)

To enhance the performance of outdated systems

c)

To mitigate security risks associated with aging or unused assets

d)

To reduce the cost of new hardware acquisition

33.

Which of the following is a benefit of decommissioning obsolete systems or software?

a)

Increased operational expenses

b)

Enhanced security monitoring

c)

Increased number of vulnerabilities

d)

Reduced compliance with regulations

34.

What role does data management play in the decommissioning process?

a)

It increases the number of assets

b)

It guarantees secure erasure, safe migration, or compliant archiving of sensitive information

c)

It reduces the need for cybersecurity measures

d)

It increases the lifecycle of hardware

35.

What is the primary purpose of configuration enforcement in cybersecurity?

a)

To increase the number of configurations

b)

To prevent misconfigurations and security weaknesses

c)

To reduce the number of security tools

d)

To enhance the performance of outdated systems

36.

Which standard is used for configuring and assessing security settings on computer systems?

a)

ISO 9001

b)

SCAP

c)

PCI DSS

d)

GDPR

37.

What is the primary purpose of security monitoring in an organization's cybersecurity strategy?

a)

To increase the number of security events

b)

To identify and respond to signs of suspicious or unauthorized activities

c)

To reduce the number of security tools

d)

To enhance the performance of outdated systems

38.

Which of the following tools collects and correlates data from various sources such as firewalls, intrusion detection systems, and log files for real-time monitoring, analysis, and reporting of security events?

a)

Intrusion Detection Systems (IDS)

b)

Endpoint Detection and Response (EDR)

c)

Security Information and Event Management (SIEM)

d)

Vulnerability Scanners

39.

What is the primary function of Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS)?

a)

To store and analyze log data

b)

To detect and respond to suspicious network traffic or behavior

c)

To monitor and respond to threats at the endpoint level

d)

To use machine learning and behavior analysis to detect abnormal activities

40.

Which security tool focuses on monitoring and responding to threats at the endpoint level?

a)

Log management systems

b)

User and Entity Behavior Analytics (UEBA)

c)

Endpoint Detection and Response (EDR)

d)

Firewalls and next-generation firewalls

41.

What is the role of log management systems in security monitoring?

a)

To detect and respond to suspicious network traffic

b)

To collect and correlate data from various sources

c)

To store, analyze, and manage log data from multiple systems and applications

d)

To use machine learning to detect abnormal user activities

42.

Which tool uses machine learning and behavior analysis to help identify insider threats or new threats that endpoint detection systems have not characterized?

a)

Vulnerability Scanners

b)

User and Entity Behavior Analytics (UEBA)

c)

Security Information and Event Management (SIEM)

d)

Firewalls and next-generation firewalls

43.

What is the primary purpose of firewalls and next-generation firewalls in security monitoring?

a)

To detect and respond to suspicious network traffic

b)

To monitor and control network traffic

c)

To store and analyze log data

d)

To use machine learning to detect abnormal user activities

44.

What is the primary purpose of access control in an organization?

a)

To grant users unlimited access to all resources

b)

To manage and regulate who can access specific resources or systems

c)

To eliminate the need for authentication

d)

To allow unrestricted network traffic

45.

Which of the following is NOT a component of access control mechanisms?

a)

Usernames and passwords

b)

Multi-factor authentication

c)

Role-Based Access Control (RBAC)

d)

Unrestricted access permissions

46.

What is the principle of least privilege?

a)

Granting users the minimal level of access necessary

b)

Allowing users to access all systems and data

c)

Providing maximum access to all employees

d)

Eliminating the need for access control

47.

What should be done before implementing ACLs on firewalls?

a)

Allow all traffic by default

b)

Identify security objectives and determine traffic rules

c)

Disable all security protocols

d)

Ignore continuous monitoring

48.

What is the role of segmentation in network security?

a)

To grant users unlimited access

b)

To split the network into smaller zones

c)

To eliminate the need for firewalls

d)

To allow unrestricted data flow

49.

What is the purpose of configuring folder ACLs in Windows or Linux systems?

a)

To manage access based on the principle of least privilege

b)

To provide unrestricted access to all users

c)

To disable file and directory permissions

d)

To allow all users to modify system files

50.

What is the benefit of continuous monitoring in access control?

a)

To ensure that access control rules are never updated

b)

To adapt to changing security requirements

c)

To eliminate the need for firewalls

d)

To allow unrestricted network traffic

51.

Which mode in Linux uses letters and symbols to represent file permissions?

a)

Octal mode

b)

Symbolic mode

c)

Numeric mode

d)

Absolute mode

52.

In symbolic mode, what does the letter 'u' stand for?

a)

User/Owner

b)

Group

c)

Others

d)

All

53.

What does the '+' operator represent in symbolic mode?

a)

To remove permissions

b)

To add permissions

c)

To set permissions explicitly

d)

To view permissions

54.

Which of the following represents the 'execute' permission in symbolic mode?

a)

r

b)

w

c)

x

d)

e

55.

What does the 'a' stand for in symbolic mode?

a)

User/Owner

b)

Group

c)

Others

d)

All (equivalent to ugo)

56.

What does the numeric value 4 represent in the octal mode for file permissions?

a)

Write (w)

b)

Execute (x)

c)

Read (r)

d)

No permissions

57.

Which command would you use to give the user read and write permissions and remove execute permission for a file?

a)

chmod u+rwx filename

b)

chmod u+rw-x filename

c)

chmod g+rx filename

d)

chmod o-wx filename

58.

What does the numeric value 7 represent in the octal mode for file permissions?

a)

Read and write

b)

Read, write, and execute

c)

Write and execute

d)

Read only

59.

What is the principle of least privilege?

a)

Granting users the maximum level of access required to perform their tasks.

b)

Granting users the minimum level of access required to perform their tasks.

c)

Granting users no access to perform their tasks.

d)

Granting users full administrative access.

60.

What does the command "chmod 755 [filename]" do?

a)

Grants the owner read, write, and execute permissions; the group and others no permissions.

b)

Grants the owner read and write permissions; the group and others read and execute permissions.

c)

Grants the owner read, write, and execute permissions; the group and others read and execute permissions.

d)

Grants the owner read and execute permissions; the group and others write and execute permissions.

61.

What is the primary focus of an application allow list in an organization's IT environment?

a)

Blocking known malicious software

b)

Permitting only approved and trusted applications to run

c)

Allowing all applications to run

d)

Blocking all applications

62.

How does network segmentation enhance security within an IT environment?

a)

By allowing all network segments to communicate freely

b)

By splitting a network into smaller, isolated segments or zones

c)

By combining all network segments into one large network

d)

By removing all firewalls and access control policies

63.

What is the primary objective of network isolation?

a)

To allow free movement of data across all network segments

b)

To establish highly segregated and self-contained network environments

c)

To combine all network segments into one large network

d)

To remove all security measures such as firewalls and access controls

64.

Which of the following is NOT a benefit of using application allow lists?

a)

Mitigating the risk of malware infections

b)

Allowing only pre-vetted applications to run

c)

Blocking all applications from running

d)

Maintaining the integrity and reliability of critical systems and data

65.

What is a key element in maintaining a robust security posture and compliance with regulatory requirements?

a)

Allowing all network segments to communicate freely

b)

Combining all network segments into one large network

c)

Network segmentation

d)

Removing all firewalls and access control policies

66.

What is the first step in hardening a network router?

a)

Update firmware

b)

Enable strong authentication

c)

Change default credentials

d)

Enable encryption

67.

Why is it important to update the router's firmware regularly?

a)

To improve the router's speed

b)

To ensure known vulnerabilities are patched

c)

To increase the router's range

d)

To reduce power consumption

68.

What does enabling strong authentication on a router typically involve?

a)

Using a single password

b)

Implementing multi-factor authentication (MFA)

c)

Disabling unused services

d)

Updating the router's firmware

69.

What is the purpose of disabling unused services and ports on a router?

a)

To increase the router's speed

b)

To reduce the attack surface

c)

To improve the router's range

d)

To save energy

70.

What is the role of Access Control Lists (ACLs) in network security?

a)

To control which devices or IP addresses are allowed to access the router

b)

To increase the router's speed

c)

To update the router's firmware

d)

To enable strong encryption

71.

Which of the following is a method to secure communication with the router?

a)

Using HTTP

b)

Using FTP

c)

Using SSH or HTTPS

d)

Using Telnet

72.

Why is it important to log and monitor router activity?

a)

To increase the router's speed

b)

To identify and respond to potential threats

c)

To improve the router's range

d)

To reduce power consumption

73.

Which of the following is a method to isolate various sections of a network to prevent lateral movement during a security breach?

a)

MAC address filtering

b)

Network segmentation

c)

Backup configuration settings

d)

Physically secure the router

74.

What is the purpose of disabling Wi-Fi Protected Setup (WPS) on a router?

a)

To allow more devices to connect

b)

To enhance the speed of the network

c)

To mitigate susceptibility to brute-force attacks

d)

To improve the range of the Wi-Fi signal

75.

Which security measure involves using MAC address filtering?

a)

To control which devices are allowed to connect to the network

b)

To back up the router's configuration settings

c)

To physically secure the router

d)

To disable WPS on the router

76.

Why is it important to regularly back up the router's configuration settings?

a)

To increase the speed of the network

b)

To ensure a known good configuration in case of a security incident

c)

To allow more devices to connect

d)

To improve the range of the Wi-Fi signal

77.

What is the primary goal of physically securing the router?

a)

To prevent unauthorized physical access to the device

b)

To increase the speed of the network

c)

To allow more devices to connect

d)

To improve the range of the Wi-Fi signal

78.

What type of attack targets the control systems and devices responsible for managing the infrastructure of an organization?

a)

True

b)

False

79.

Which type of attack involves compromising the security and integrity of physical systems and infrastructure?

a)

Environmental attack

b)

Brute force attack

c)

RFID cloning

d)

Phishing attack

80.

What does RFID cloning exploit?

a)

The open access of RFID databases.

b)

The visibility of RFID signals to unauthorized devices.

c)

The vulnerability in the secure communication of RFID devices.

d)

The encryption algorithms of RFID technology.

81.

What are "indicators of compromise" (IOCs) and "indicators of attack" (IOAs) used for?

a)

To monitor environmental changes

b)

To provide insights into potential security threats

c)

To manage network traffic

d)

To control physical access to buildings

82.

Which of the following is an example of a physical attack with environmental implications?

a)

Phishing attack

b)

Water treatment system compromise

c)

Social engineering

d)

Password cracking

83.

What was the consequence of the cyber/ransomware attack on Colonial Pipeline in May 2021?

a)

Unauthorized access to personal data

b)

Disruption of one of the nation's largest fuel pipeline operators

c)

Manipulation of air quality data

d)

Shutdown of a water treatment plant

84.

What can attacks on the power grid's control systems result in?

a)

Leaks and spills

b)

Unauthorized access to personal data

c)

Outages or overloads

d)

Manipulation of water quality parameters

85.

What is a potential consequence of environmental monitoring system manipulation?

a)

Disruption of fuel supply

b)

Inaccurate data on air quality

c)

Unauthorized access to network systems

d)

Physical damage to buildings

86.

What can environmental attacks on dam control systems lead to?

a)

Unauthorized access to personal data

b)

Downstream flooding and environmental damage

c)

Disruption of fuel supply

d)

Manipulation of air quality data