wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Certification Exam Practice Questions

Total questions: 28

Worksheet time: 14mins

Name
Class
Date
1.

John wants to implement a packet filtering firewall in his organization's network. What TCP/IP layer does a packet filtering firewall work on?

a)

Application layer

b)

Network Interface layer

c)

TCP layer

d)

IP layer

2.

According to the company's security policy, all access to any network resources must use Windows Active Directory Authentication. A Linux server was recently installed to run virtual servers and it is not using Windows Authentication. What needs to happen to force this server to use Windows Authentication?

a)

Edit the ADLIN file

b)

Edit the shadow file

c)

Remove the /var/bin/localauth.conf file

d)

Edit the PAM file to enforce Windows Authentication

3.

What is the correct hierarchy for a security policy implementation?

a)

A. Laws, Policies, Regulations, Procedures and Standards

b)

B. Regulations, Policies, Laws, Standards and Procedures

c)

C. Laws, Regulations, Policies, Standards and Procedures

d)

D. Procedures, Policies, Laws, Standards and Regulations

4.

Kelly is taking backups of the organization's data. Currently, he is taking backups of only those files which are created or modified after the last backup. What type of backup is Kelly using?

a)

Full backup

b)

Incremental backup

c)

Differential Backup

d)

Normal Backup

5.

A company has the right to monitor the activities of their employees on different information systems according to the _______ policy.

a)

Information system

b)

User access control

c)

Internet usage

d)

Confidential data

6.

Which of the following acts as a verifier for the certificate authority?

a)

Certificate Management system

b)

Certificate authority

c)

Directory management system

d)

Registration authority

7.

Identify the spread spectrum technique that multiplies the original data signal with a pseudo random noise spreading code.

a)

FHSS

b)

DSSS

c)

OFDM

d)

ISM

8.

Which OSI layer does a Network Interface Card (NIC) work on?

a)

Physical layer

b)

Presentation layer

c)

Network layer

d)

Session layer

9.

Mark is monitoring the network traffic on his organization's network. He wants to detect a TCP and UDP ping sweep on his network. Which type of filter will be used to detect this on the network?

a)

Tcp.srcport==7 and udp.srcport==7

b)

Tcp.srcport==7 and udp.dstport==7

c)

Tcp.dstport==7 and udp.srcport==7

d)

Tcp.dstport==7 and udp.dstport==7

10.

Harry has successfully completed the vulnerability scanning process and found serious vulnerabilities exist in the organization's network. Identify the vulnerability management phases through which he will proceed to ensure all the detected vulnerabilities are addressed and eradicated.

a)

Mitigation

b)

Assessment

c)

Verification

d)

Remediation

11.

Will is working as a Network Administrator. Management wants to maintain a backup of all the company data as soon as it starts operations. They decided to use a RAID backup storage technology for their data backup plan. To implement the RAID data backup storage, Will sets up a pair of RAID disks so that all the data written to one disk is copied automatically to the other disk as well. This maintains an additional copy of the data. Which RAID level is used here?

a)

RAID 3

b)

RAID 1

c)

RAID 5

d)

RAID 0

12.

Stephanie is currently setting up email security so all company data is secured when passed through email. Stephanie first sets up encryption to make sure that a specific user's email is protected. Next, she needs to ensure that the incoming and the outgoing mail has not been modified or altered using digital signatures. What is Stephanie working on?

a)

Confidentiality

b)

Availability

c)

Data Integrity

d)

Usability

13.

Rick has implemented several firewalls and IDS systems across his enterprise network. What should he do to effectively correlate all incidents that pass through these security controls?

a)

Use firewalls in Network Address Transition (NAT) mode

b)

Implement IPsec

c)

Implement Simple Network Management Protocol (SNMP)

d)

Use Network Time Protocol (NTP)

14.

Blake is working on the company's updated disaster and business continuity plan. The last section of the plan covers computer and data incidence response. Blake is outlining the level of severity for each type of incident in the plan. Unsuccessful scans and probes are at what severity level?

a)

High severity level

b)

Extreme severity level

c)

Mid severity level

d)

Low severity level

15.

Which of the information below can be gained through network sniffing?

a)

Telnet Passwords

b)

Syslog traffic

c)

DNS traffic

d)

Programming errors

16.

Smith is an IT technician that has been appointed to his company's network vulnerability assessment team. He is the only IT employee on the team. The other team members include employees from Accounting, Management, Shipping, and Marketing. Smith and the team members are having their first meeting to discuss how they will proceed. What is the first step they should do to create the network vulnerability assessment plan?

a)

Their first step is to analyze the data they have currently gathered from the company or interviews.

b)

Their first step is to make a hypothesis of what their final findings will be.

c)

Their first step is to create an initial Executive report to show the management team.

d)

Their first step is the acquisition of required documents, reviewing of security policies and compliance.

17.

Management asked their network administrator to suggest an appropriate backup medium for their backup plan that best suits their organization's need. Which of the following factors will the administrator consider when deciding on the appropriate backup medium?

a)

Capability

b)

Accountability

c)

Extensibility

d)

Reliability

18.

John has successfully remediated the vulnerability of an internal application that could have caused a threat to the network. He is scanning the application for the existence of a remediated vulnerability, this process is called a _______ and it has to adhere to the ________

a)

Verification, Security Policies

b)

Mitigation, Security policies

c)

Vulnerability scanning, Risk Analysis

d)

Risk analysis, Risk matrix

19.

Identify the minimum number of drives required to setup RAID level 5.

a)

Multiple

b)

3

c)

4

d)

2

20.

Management decides to implement a risk management system to reduce and maintain the organization's risk at an acceptable level. Which of the following is the correct order in the risk management phase?

a)

B. Risk Treatment, Risk Monitoring & Review, Risk Identification, Risk Assessment

b)

E. Risk Assessment

c)

A. Risk Identification, Risk Assessment, Risk Treatment, Risk Monitoring & Review

d)

C. Risk Assessment, Risk Treatment, Risk Monitoring & Review, Risk Identification

e)

D. Risk Identification

21.

As a network administrator, you have implemented WPA2 encryption in your corporate wireless network. The WPA2's _______ integrity check mechanism provides security against a replay attack

a)

A. CRC-32

b)

B. CRC-MAC

c)

C. CBC-MAC

d)

D. CBC-32

22.

Lyle is the IT director for a medium-sized food service supply company in Nebraska. Lyle's company employs over 300 workers, half of which use computers. He recently came back from a security training seminar on logical security. He now wants to ensure his company is as secure as possible. Lyle has many network nodes and workstation nodes across the network. He does not have much time for implementing a network-wide solution. He is primarily concerned about preventing any external attacks on the network by using a solution that can drop packets if they are found to be malicious. Lyle also wants this solution to be easy to implement and be network-wide. What type of solution would be best for Lyle?

a)

A NEPT implementation would be the best choice.

b)

To better serve the security needs of his company, Lyle should use a HIDS system.

c)

Lyle would be best suited if he chose a NIPS implementation

d)

He should choose a HIPS solution, as this is best suited to his needs.

23.

Nancy is working as a network administrator for a small company. Management wants to implement a RAID storage for their organization. They want to use the appropriate RAID level for their backup plan that will satisfy the following requirements: 1. It has a parity check to store all the information about the data in multiple drives 2. Help reconstruct the data during downtime 3. Process the data at a good speed 4. Should not be expensive. The management team asks Nancy to research and suggest the appropriate RAID level that best suits their requirements. What RAID level will she suggest?

a)

RAID 0

b)

RAID 10

c)

RAID 3

d)

RAID 1

24.

Management wants to bring their organization into compliance with the ISO standard for information security risk management. Which ISO standard will management decide to implement?

a)

ISO/IEC 27004

b)

ISO/IEC 27002

c)

ISO/IEC 27006

d)

ISO/IEC 27005

25.

You are monitoring your network traffic with the Wireshark utility and noticed that your network is experiencing a large amount of traffic from a certain region. You suspect a DoS incident on the network. What will be your first reaction as a first responder?

a)

Avoid Fear, Uncertainty and Doubt

b)

Communicate the incident

c)

Make an initial assessment

d)

Disable Virus Protection

26.

Ivan needs to pick an encryption method that is scalable even though it might be slower. He has settled on a method that works where one key is public and the other is private. What encryption method did Ivan settle on?

a)

Symmetric encryption

b)

Public key encryption (Asymmetric encryption)

c)

Hashing

d)

Digital signatures

27.

Ivan settled on the private encryption method. Ivan settled on the symmetric encryption method. Ivan settled on the asymmetric encryption method. Ivan settled on the hashing encryption method.

a)

A. Ivan settled on the private encryption method.

b)

B. Ivan settled on the symmetric encryption method.

c)

C. Ivan settled on the asymmetric encryption method.

d)

D. Ivan settled on the hashing encryption method.

28.

Which of the following is a best practice for wireless network security?

a)

Enabling the remote router login

b)

Do not changing the default SSID

c)

Do not placing packet filter between the AP and the corporate intranet

d)

Using SSID cloaking