Font size
WorksheetsCertification Exam Practice Questions
Total questions: 28
Worksheet time: 14mins
John wants to implement a packet filtering firewall in his organization's network. What TCP/IP layer does a packet filtering firewall work on?
Application layer
Network Interface layer
TCP layer
IP layer
According to the company's security policy, all access to any network resources must use Windows Active Directory Authentication. A Linux server was recently installed to run virtual servers and it is not using Windows Authentication. What needs to happen to force this server to use Windows Authentication?
Edit the ADLIN file
Edit the shadow file
Remove the /var/bin/localauth.conf file
Edit the PAM file to enforce Windows Authentication
What is the correct hierarchy for a security policy implementation?
A. Laws, Policies, Regulations, Procedures and Standards
B. Regulations, Policies, Laws, Standards and Procedures
C. Laws, Regulations, Policies, Standards and Procedures
D. Procedures, Policies, Laws, Standards and Regulations
Kelly is taking backups of the organization's data. Currently, he is taking backups of only those files which are created or modified after the last backup. What type of backup is Kelly using?
Full backup
Incremental backup
Differential Backup
Normal Backup
A company has the right to monitor the activities of their employees on different information systems according to the _______ policy.
Information system
User access control
Internet usage
Confidential data
Which of the following acts as a verifier for the certificate authority?
Certificate Management system
Certificate authority
Directory management system
Registration authority
Identify the spread spectrum technique that multiplies the original data signal with a pseudo random noise spreading code.
FHSS
DSSS
OFDM
ISM
Which OSI layer does a Network Interface Card (NIC) work on?
Physical layer
Presentation layer
Network layer
Session layer
Mark is monitoring the network traffic on his organization's network. He wants to detect a TCP and UDP ping sweep on his network. Which type of filter will be used to detect this on the network?
Tcp.srcport==7 and udp.srcport==7
Tcp.srcport==7 and udp.dstport==7
Tcp.dstport==7 and udp.srcport==7
Tcp.dstport==7 and udp.dstport==7
Harry has successfully completed the vulnerability scanning process and found serious vulnerabilities exist in the organization's network. Identify the vulnerability management phases through which he will proceed to ensure all the detected vulnerabilities are addressed and eradicated.
Mitigation
Assessment
Verification
Remediation
Will is working as a Network Administrator. Management wants to maintain a backup of all the company data as soon as it starts operations. They decided to use a RAID backup storage technology for their data backup plan. To implement the RAID data backup storage, Will sets up a pair of RAID disks so that all the data written to one disk is copied automatically to the other disk as well. This maintains an additional copy of the data. Which RAID level is used here?
RAID 3
RAID 1
RAID 5
RAID 0
Stephanie is currently setting up email security so all company data is secured when passed through email. Stephanie first sets up encryption to make sure that a specific user's email is protected. Next, she needs to ensure that the incoming and the outgoing mail has not been modified or altered using digital signatures. What is Stephanie working on?
Confidentiality
Availability
Data Integrity
Usability
Rick has implemented several firewalls and IDS systems across his enterprise network. What should he do to effectively correlate all incidents that pass through these security controls?
Use firewalls in Network Address Transition (NAT) mode
Implement IPsec
Implement Simple Network Management Protocol (SNMP)
Use Network Time Protocol (NTP)
Blake is working on the company's updated disaster and business continuity plan. The last section of the plan covers computer and data incidence response. Blake is outlining the level of severity for each type of incident in the plan. Unsuccessful scans and probes are at what severity level?
High severity level
Extreme severity level
Mid severity level
Low severity level
Which of the information below can be gained through network sniffing?
Telnet Passwords
Syslog traffic
DNS traffic
Programming errors
Smith is an IT technician that has been appointed to his company's network vulnerability assessment team. He is the only IT employee on the team. The other team members include employees from Accounting, Management, Shipping, and Marketing. Smith and the team members are having their first meeting to discuss how they will proceed. What is the first step they should do to create the network vulnerability assessment plan?
Their first step is to analyze the data they have currently gathered from the company or interviews.
Their first step is to make a hypothesis of what their final findings will be.
Their first step is to create an initial Executive report to show the management team.
Their first step is the acquisition of required documents, reviewing of security policies and compliance.
Management asked their network administrator to suggest an appropriate backup medium for their backup plan that best suits their organization's need. Which of the following factors will the administrator consider when deciding on the appropriate backup medium?
Capability
Accountability
Extensibility
Reliability
John has successfully remediated the vulnerability of an internal application that could have caused a threat to the network. He is scanning the application for the existence of a remediated vulnerability, this process is called a _______ and it has to adhere to the ________
Verification, Security Policies
Mitigation, Security policies
Vulnerability scanning, Risk Analysis
Risk analysis, Risk matrix
Identify the minimum number of drives required to setup RAID level 5.
Multiple
3
4
2
Management decides to implement a risk management system to reduce and maintain the organization's risk at an acceptable level. Which of the following is the correct order in the risk management phase?
B. Risk Treatment, Risk Monitoring & Review, Risk Identification, Risk Assessment
E. Risk Assessment
A. Risk Identification, Risk Assessment, Risk Treatment, Risk Monitoring & Review
C. Risk Assessment, Risk Treatment, Risk Monitoring & Review, Risk Identification
D. Risk Identification
As a network administrator, you have implemented WPA2 encryption in your corporate wireless network. The WPA2's _______ integrity check mechanism provides security against a replay attack
A. CRC-32
B. CRC-MAC
C. CBC-MAC
D. CBC-32
Lyle is the IT director for a medium-sized food service supply company in Nebraska. Lyle's company employs over 300 workers, half of which use computers. He recently came back from a security training seminar on logical security. He now wants to ensure his company is as secure as possible. Lyle has many network nodes and workstation nodes across the network. He does not have much time for implementing a network-wide solution. He is primarily concerned about preventing any external attacks on the network by using a solution that can drop packets if they are found to be malicious. Lyle also wants this solution to be easy to implement and be network-wide. What type of solution would be best for Lyle?
A NEPT implementation would be the best choice.
To better serve the security needs of his company, Lyle should use a HIDS system.
Lyle would be best suited if he chose a NIPS implementation
He should choose a HIPS solution, as this is best suited to his needs.
Nancy is working as a network administrator for a small company. Management wants to implement a RAID storage for their organization. They want to use the appropriate RAID level for their backup plan that will satisfy the following requirements: 1. It has a parity check to store all the information about the data in multiple drives 2. Help reconstruct the data during downtime 3. Process the data at a good speed 4. Should not be expensive. The management team asks Nancy to research and suggest the appropriate RAID level that best suits their requirements. What RAID level will she suggest?
RAID 0
RAID 10
RAID 3
RAID 1
Management wants to bring their organization into compliance with the ISO standard for information security risk management. Which ISO standard will management decide to implement?
ISO/IEC 27004
ISO/IEC 27002
ISO/IEC 27006
ISO/IEC 27005
You are monitoring your network traffic with the Wireshark utility and noticed that your network is experiencing a large amount of traffic from a certain region. You suspect a DoS incident on the network. What will be your first reaction as a first responder?
Avoid Fear, Uncertainty and Doubt
Communicate the incident
Make an initial assessment
Disable Virus Protection
Ivan needs to pick an encryption method that is scalable even though it might be slower. He has settled on a method that works where one key is public and the other is private. What encryption method did Ivan settle on?
Symmetric encryption
Public key encryption (Asymmetric encryption)
Hashing
Digital signatures
Ivan settled on the private encryption method. Ivan settled on the symmetric encryption method. Ivan settled on the asymmetric encryption method. Ivan settled on the hashing encryption method.
A. Ivan settled on the private encryption method.
B. Ivan settled on the symmetric encryption method.
C. Ivan settled on the asymmetric encryption method.
D. Ivan settled on the hashing encryption method.
Which of the following is a best practice for wireless network security?
Enabling the remote router login
Do not changing the default SSID
Do not placing packet filter between the AP and the corporate intranet
Using SSID cloaking
