wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

701 Security Plus Mega Challenge 3

Total questions: 13

Worksheet time: 24mins

Name
Class
Date
1.

Match the following.

a)

Your vulnerability scanner did not find any issues, but there are issues on your computer.

1.

False Negative

b)

Your vulnerability scanner found issues, but there actually aren't any issued on your computer.

2.

False Positive

c)

Adjusting the sensitivity of your scanner to reduce false positives.

3.

Rule Tuning

d)

A scan that is performed while logged into the computer with IT Admin credentials.

4.

Credentialed Scan

e)

A scan that is performed while logged into a computer on a user account without IT admin credentials.

5.

Non-Credentialed Scan

2.

Match the tools to their purpose.

a)

A program you can install that will monitor an endpoint for you, and let you know about events that occur.

1.

EDR

b)

A configuration strategy you can use to observe behaviors of users and determine if they are doing anything they shouldn't be doing.

2.

UBA

c)

A program you can install that looks for intrusions and sounds the alarm when it finds one.

3.

IDS

d)

A program you can install that looks for intrusions, and provides an automated response when it finds one.

4.

IPS

e)

Aggregates log data into a timeline for analysis.

5.

SIEM

3.

Match the following terms.

a)

The primary concern of performing this is that it could cause a disruption to operations.

1.

Vulnerability Assessment

b)

This is known as workforce multiplier, and it enhances automation and orchestration.

2.

SIEM

c)

A cryptographic technology that we use to check the integrity of a data structure.

3.

Hash

d)

The best method to use to store credit card and debit card data in a database.

4.

Tokenization

e)

A technique used to hide data in an image file.

5.

Steganography

4.

Answer the following

a)

A new security regulation is released, our company should perform one of these to ensure we can meet it.

1.

Gap Analysis

b)

Company has a critical system they cannot remove. The system is EOL. They should use this.

2.

Isolated VLAN

c)

This is an example of a physical security control.

3.

ACV

d)

We use this to verify the integrity of software that we want to download.

4.

Hashing

e)

We can feed multiple logs into this and it will analyze them for us.

5.

SIEM

5.

Answer the following

a)

We sign one of these with our vendors to ensure they don't release our critical information.

1.

NDA

b)

We can look here to see a list of all computers our computers are talking to.

2.

Firewall logs

c)

Collecting and duplicating digital evidence is known as this.

3.

Acquisition

d)

Tracking the handling of digital evidence is known done on this.

4.

Chain of Custody

e)

Insider threats exfiltrate data using this.

5.

Unidentified Removable Devices

6.

Match the following threat actors to their motivations.

a)

Motivated by personal beliefs

1.

Hacktivist

b)

Motivated by financial gain

2.

Criminal

c)

Motivated by intelligence/information

3.

State Actor

d)

Motivated by revenge

4.

Insider Threat

e)

A threat actor whose goal is residence

5.

APT

7.

Answer the following

a)

Best way to detect unpatched software in your systems

1.

Vulnerability Scanner

b)

Place where we keep all known risks in our organization

2.

Risk Register

c)

Insider using software that the IT department is unaware of

3.

Shadow IT

d)

Best way to protect all data on a company issued laptop

4.

FDE

e)

Best way to fix known vulnerabilities

5.

Patching

8.

Answer the following.

a)

Company wants to test its employees on clicking on bad links in email.

1.

Simulated Phishing Campaign

b)

Quickest way to get a list of all vulnerabilities on your systems

2.

Automate Scanning

c)

Tool we can use to stop communications with high risk regions

3.

IP Geographical Filtering

d)

Rule that says we must follow all laws based on where we operate

4.

Data Sovereignty

e)

This is a special server dedicated to performing AAA functions.

5.

RADIUS

9.

Answer the following.

a)

Best place to test out malicious software to reverse engineer it.

1.

Sandbox

b)

Granting a user access to a resource is this.

2.

Authentication

c)

Granting a user permissions on a resource is this.

3.

Authorization

d)

Tracking what a user does while accessing a resource is this.

4.

Accounting

e)

This controls email parameters based on whether or not the email passes the security/authentication checks.

5.

DMARC

10.

Answer the following

a)

Automated security controls that help with configuration of cloud security

1.

Guardrails

b)

A Sysadmin is disabling default accounts and removing unnecessary services on a server. What is this called?

2.

Server Hardening

c)

This device protects against insecure communications on a single device.

3.

Host-Based Firewall

d)

This is a way to verify that a device meets security policies and requirements before granting it access to a network.

4.

Compliance Attestation

e)

Specifically protects a web application software by filtering and monitoring web traffic.

5.

WAF

11.

Answer the following

a)

Accommodates a LOW RTO, high cost

1.

Hot Site

b)

Accommodates a HIGH RTO, low cost

2.

Cold Site

c)

A chart that breaks down responsibilities between a CSP and a customer.

3.

Responsibility Matrix

d)

The document that lists the RTO and the RPO

4.

BIA

e)

Creating a false text file designed to attract the attention of an attacker is this.

5.

Honeyfile

12.

This software helps you automate response functions and reduce your workforce requirements.

a)

BYOD

b)

DLP

c)

FIM

d)

SOAR

13.

A preventive control that would stop unauthorized access before it happens.

a)

RADIUS

b)

CSR

c)

UTM

d)

ACL