NEW
Font size
Worksheets4.3 & 4.4 Application Security Quiz
Total questions: 20
Worksheet time: 10mins
What is the main function of a bug bounty program?
Reward researchers for finding vulnerabilities
Monitor for stolen data
Simulate attacks to find flaws
Provide paid threat intelligence
Why is it important to prioritize vulnerabilities during analysis?
To focus on critical vulnerabilities first
To avoid false positives/negatives
To assign unique IDs to each flaw
To monitor for stolen data
Which of the following best describes "exposure factor"?
The percentage of asset value lost if exploited
The name of the vulnerability
The process of applying vendor updates
The method of isolating vulnerable systems
What is one of the key steps in reporting after addressing a security issue?
Document findings, actions taken, and lessons learned
Ignore the incident
Only inform end users
Delete all related logs
Which of the following is NOT a typical computing resource monitored for security purposes?
CPU, memory, disk, uptime
Errors, crashes, performance
Network traffic, device status
User interface design
Which key monitoring activity involves collecting logs from all systems in one place?
Log aggregation
Verification
Audit
Application monitoring
If an organization wants to use reports for risk assessments and audits, which process are they engaging in?
Reporting
Verification
Log aggregation
Application monitoring
If a security system needs to summarize activity for analysis, which function is being performed?
Reporting
Scanning
Alert tuning
Quarantine
What is the main role of SIEM in a security environment?
Central log analysis
Isolate infected devices
Reduce false positives
Detect and remove malware
What is the purpose of archiving in security operations?
Store logs for compliance and forensics
Notify when thresholds are exceeded
Reduce false positives
Isolate infected devices
Which tool aggregates logs and creates alerts?
SIEM
NetFlow
Vulnerability scanner
SNMP trap
IDS didn’t detect an attack. What should be updated to detect it next time?
Signatures
Trends
Honeypot
Reputation
Which of the following is NOT a key monitoring tool mentioned in the summary checklist?
SIEM
DLP
IDS
Firewall
What is a compensating control in cybersecurity?
A primary security measure
An alternative security measure when the primary isn't feasible
A method for scoring vulnerabilities
A type of firewall log
If you want to investigate the source IP of a port scan, what should you check?
CVSS reports
Firewall logs
DLP alerts
SIEM dashboards
How does the Common Vulnerability Scoring System (CVSS) assist organizations?
By assigning unique IDs to vulnerabilities
By rating the severity of vulnerabilities
By preventing data loss
By detecting network intrusions
Why might an organization use a compensating control?
To replace a failed firewall
When the primary security measure isn't feasible
To score vulnerabilities
To detect intrusions
What is the primary purpose of the Security Content Automation Protocol (SCAP)?
To automate security content and vulnerability management
To provide internet access to users
To encrypt sensitive data
To monitor network traffic
What does the acronym ALE stand for in risk management?
Annualized Loss Expectancy
Automated Log Encryption
Advanced Learning Environment
Application Layer Encryption
If a company wants to measure how often a specific risk is expected to occur in a year, which metric should they use?
Annualized Rate of Occurrence (ARO)
Single Loss Expectancy (SLE)
Recovery Time Objective (RTO)
Security Content Automation Protocol (SCAP)
