wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Security+ Cengage Module6: Mobile and Embedded Device Security

Total questions: 20

Worksheet time: 11mins

Name
Class
Date
1.

Ahmet is explaining to his team members the security constraints that have made it a challenge to protect a new embedded system. Which of the following would Akira NOT include as a constraint?

a)

Authentication

b)

Cost

c)

Power

d)

Ease of use

2.

Yusuf has been asked to experiment with different hardware to create a controller for a new device on the factory floor. He needs a credit-card sized motherboard that has a microcontroller instead of a microprocessor. Which would be the best solution?

a)

SoC

b)

Raspberry Pi

c)

Arduino

d)

FPGA

3.

Musa needs a tool with a single management interface that provides capabilities for managing and securing mobile devices, applications, and content. Which tool would be the best solution?

a)

UEM

b)

MDM

c)

MCCM

d)

MMAM

4.

In a job interview, Deniz asks about the company policy regarding smartphones. He is told that employees may choose from a limited list of approved devices but that he must pay for the device herself; however, the company will provide her with a monthly stipend. Which type of enterprise deployment model does this company support?

a)

BYOD

b)

DYOD

c)

CYOD

d)

Corporate-owned

5.

Eren has been asked to provide information regarding adding a new class of Android smartphones to a list of approved devices. One of the considerations is how frequently the smartphones receive firmware OTA updates. Which of the following reasons would Eren NOT list in their report as a factor in the frequency of Android firmware OTA updates?

a)

OEMs are hesitant to distribute Google updates because it limits their ability to differentiate themselves from competitors if all versions of Android start to look the same through updates

b)

Because many of the OEMs have modified Android, they are reluctant to distribute updates that could potentially conflict with their changes

c)

Wireless carriers are reluctant to provide firmware OTA updates because of the bandwidth it consumes on their wireless networks

d)

Because OEMs want to sell as many devices as possible, they have no financial incentive to update mobile devices that users would then continue to use indefinitely

6.

What is the process of identifying the geographical location of a mobile device?

a)

Geotracking

b)

Geolocation

c)

GeoID

d)

Geomonitoring

7.

Which of the following is NOT an advantage of COPE for an enterprise?

a)

Simplified IT infrastructure

b)

Cost savings

c)

Flexibility in management

d)

More oversight

8.

Ceyhun received a request by a technician for a new portable computer. The technician noted that they wanted USB OTG support and asked Ceyhun’s advice regarding it. Which of the following would Ceyhun NOT tell them is an advantage?

a)

A device connected via USB OTG can function as a peripheral for external media access.

b)

A device connected via USB OTG can function as a host.

c)

USB OTG is only available for connecting Android devices to a portable computer

d)

Connecting a mobile device to an infected computer using USB OTG could allow malware to be sent to that device

9.

Ozan has received a phone call from his supervisor that a new employee has attempted to download and install an unapproved app that allows her to circumvent the built-in limitations on her Android smartphone. What is this called?

a)

Rooting

b)

Sideloading

c)

Jailbreaking

d)

Ducking

10.

What is another name for run-time verification?

a)

Static code analysis

b)

Dynamic code analysis

c)

Fuzzering

d)

Weighted code analysis

11.

What is dead code?

a)

A block of code that does not run

b)

Code that has been tagged to be removed from an application.

c)

A branch in a code that calls in a subroutine but always returns a null value.

d)

A section of an application that executes but performs no meaningful function.

12.

Cahill is writing an application using SecDevOps and wants to prevent XSS and CSRF attacks. What coding technique would he use?

a)

Obfuscation

b)

Code signing

c)

Input validation

d)

Normalization

13.

What does containerization do?

a)

It splits operating system functions only on specific brands of mobile devices.

b)

It places all keys in a special vault.

c)

It slows down a mobile device to half speed.

d)

It separates personal data from corporate data.

14.

What allows a device to be managed remotely?

a)

MDM

b)

MAM

c)

MRM

d)

MWM

15.

Which of these is NOT a security feature for locating a lost or stolen mobile device?

a)

Remote lockout

b)

Last known good configuration

c)

Alarm

d)

Thief picture

16.

What enforces the location in which an app can function by tracking the location of the mobile device?

a)

Location resource management

b)

Geofencing

c)

GPS tagging

d)

Graphical Management Tracking (GMT)

17.

Which of these is considered the strongest type of passcode to use on a mobile device?

a)

Password

b)

PIN

c)

Fingerprint swipe

d)

Draw connecting dots pattern

18.

Which of the following is NOT a means by which untrusted content can be sent to a mobile device?

a)

SMS

b)

MMS

c)

RCS

d)

XRX

19.

Which tool manages the distribution and control of apps?

a)

MAM

b)

MDM

c)

MCM

d)

MFM

20.

Which type of OS is typically found on an embedded system?

a)

SoC

b)

RTOS

c)

OTG

d)

COPE