wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

palo 1

Total questions: 52

Worksheet time: 26mins

Name
Class
Date
1.

Which capability of a Zero-Trust segmentation platform uses a combination of anti-malware, intrusion prevention, and cyberthreat prevention technologies to provide comprehensive protection against both known and unknown threats, including threats on mobile devices?

a)

Inspection of all traffic

b)

Secure access

c)

Least privilege access control

d)

Cyberthreat protection

2.

Which Security Operating Platform capability allows organizations to exert positive control based on applications, users, and content, with support for open communication, orchestration, and visibility?

a)

Provide full visibility

b)

Reduce the attack surface

c)

Prevent all known threats, fast

d)

Detect and prevent new, unknown threats with automation

3.

The Security Operating Platform consists of a tightly integrated system of components and services, including a partner ecosystem, that delivers consistent security across the network, endpoints, and cloud.

a)

True

b)

False

4.

Which Secure the Cloud technology functions as a multimode cloud access security broker – CASB – , offering inline and API-based protection working together to minimize the range of cloud risks that can lead to breaches?

a)

Prisma SaaS

b)

CloudGuard

c)

McAfee MVISION Cloud

d)

Symantec CloudSOC

5.

Which of the following are important characteristics and capabilities of advanced malware? Select all that apply.

a)

Hiding techniques such as obfuscation

b)

Hiding techniques such as polymorphism and metamorphism

c)

Multi-functionality

d)

Distributed, fault-tolerant architecture

6.

One problem with LLMs is ____________, which can result from model training associating data with a particular demographic.

a)

bias

b)

hallucination

c)

overreliance

d)

manipulation

7.

AI can provide enhanced incident response management by performing which of the following?

a)

generate accurate and timely reports

b)

managing reputational risks associated with security breaches

c)

all of the above

8.

Supervised Learning LLM training is performed using ____________.

a)

unlabeled data

b)

labeled data

c)

parameter prompts

d)

output filters

9.

____________ uses clustering, grouping unlabeled examples together by identifying similarities between data.

a)

Unsupervised learning

b)

Supervised learning

c)

Pre-trained learning

d)

Parameter learning

10.

__________ is the way we communicate with computers using human language.

a)

Data processing

b)

Vision processing

c)

Machine learning

d)

NLP - natural language processing

11.

Which type of Wildfire analysis method supports a custom-built, evasion-resistant virtual environment in which previously unknown submissions are executed within a virtualized test environment to determine real world effects and behavior?

a)

Static

b)

Dynamic

c)

Machine

d)

Bare Metal

12.

Which type of attacker is motivated by political or social causes?

a)

Cybercriminal

b)

Hacktivist

c)

Cyberterrorist

d)

State-affiliated

13.

What type of attack is intended to rapidly cause damage to the victim's network and system infrastructure, as well as their business and reputation?

a)

Man in the Middle Attack – MITM

b)

Distributed Denial of Service - DDoS

c)

Social Engineering Attack

d)

Reconnaissance Attack

14.

Which of the following WLAN standards is the LEAST secure? Pick two.

a)

Wireless Protected Access - WPA

b)

Wired Equivalent Privacy - WEP

c)

Wireless Protected Access 2 - WPA2

d)

WiFi Protected Setup - WPS

15.

Which Secure the Enterprise network security management technology enables centralized control, log collection, and policy workflow automation across all your next-generation firewalls - scalable to tens of thousands of firewalls: from a single pane of glass?

a)

Next Generation Firewall

b)

Panorama

c)

VM Series Firewall

d)

Subscription Services

16.

What type of malware typically targets a computer network by replicating itself in order to spread rapidly?

a)

Logic Bomb

b)

Virus

c)

Worm

d)

Backdoor

17.

Wired Equivalent Privacy – WEP - is the most effective protocol for securing wireless networks.

a)

True

b)

False

18.

Which Security Operating Platform capability supports a coordinated security platform that accounts for the full scope of an attack, across the various security controls that compose the security posture. This allows organizations to quickly identify and block known threats.

a)

Prevent all known threats, fast.

b)

Full Visibility.

c)

Reduce the attack surface

d)

Detect and prevent new, unknown threats with automation.

19.

The Security Operating Platform prevents successful attacks and stops attacks in progress while providing consistent protection to secure the enterprise, the cloud, and the future.

a)

True

b)

False

20.

LLM supervised learning requires ____________.

a)

transformers

b)

prompts

c)

natural language

d)

data labels and classifications

21.

The Security Operating Platform proactively blocks known threats, which provides baseline defenses against known exploits, malware, malicious URLs, and C2 activity.

a)

True

b)

False

22.

LLM input and data quality assessment can be hindered by a lack of input ___________.

a)

diversity

b)

validation

c)

bias

d)

sampling

23.

Which technique is NOT used to break the command and control – CnC - phase of the Cyber Kill Chain®?

a)

Blocking outbound traffic to known malicious sites and IP addresses

b)

DNS sinkholing

c)

Vulnerability and Patch Management

d)

DNS poisoning

24.

Someone with limited hacking and/or programming skills that uses malicious programs (malware: written by others to attack a computer or network) is known as a newbie.

a)

True

b)

False

25.

A vulnerability is a small piece of software code, part of a malformed data file, or a sequence - string - of commands created by an attacker to cause unintended or unanticipated behavior in a system or software.

a)

True

b)

False

26.

The term for LLM generated text that is not logically consistent with input, but still sounds plausible to a human reader is ___________.

a)

facsimile

b)

neural cross-connect

c)

parallel assumption

d)

hallucination

27.

Which of the following is not a benefit of implementing a Zero-Trust network?

a)

Clearly improved effectiveness in mitigating data loss with visibility and safe enablement of applications.

b)

Greater efficiency for achieving and maintaining compliance with security and privacy mandates.

c)

Improved ability to securely enable transformative IT initiatives.

d)

Higher total cost of ownership – TCO - with a consolidated and fully integrated security operating platform.

28.

One of the vulnerabilities of open source LLMs is _________

a)

they deliver consistent, predictable outputs

b)

they do not function with encrypted content

c)

they quickly identify malicious prompt injections

d)

all of the above

29.

It is possible for an organization to be compliant with all applicable security and privacy regulations for its industry, yet still not be secure.

a)

True

b)

False

30.

What is an easy way to make your WiFi security stronger and make it more difficult for hackers to discover your wireless network?

a)

Change the Access Point – AP - Password

b)

Change the Service Set Identifier - SSID

c)

Change the Initialization Vector - IV

d)

Change the Extensible Authentication Protocol - EAP

31.

Malicious software or code that typically damages, takes control of, or collects information from an infected endpoint is known as:

a)

Exploit

b)

Malware

c)

Vulnerability

d)

Anti-Virus

32.

What type of malware allows an attacker to bypass authentication to gain access to a compromised system?

a)

Logic Bomb

b)

BootKit

c)

Rootkit

d)

Backdoor

33.

Which cybersecurity regulation strengthens data protection for European Union - EU - residents and addresses the export of personal data outside the EU?

a)

Canada Personal Information Protection and Electronic Documents Act - PIPEDA

b)

General Data Protection Regulation - GDPR

c)

North American Electric Reliability Corporation - NERC

d)

Critical Infrastructure Protection - CIP

e)

Payment Card Industry Data Security Standard - PCI DSS

34.

Which cybersecurity act defines individual rights with respect to the privacy of their personal information and governs how private sector organizations collect, use, and disclose personal information in the course of business?

a)

Australian Privacy Principles Act - APPA

b)

California Consumer Privacy Act - CCPA

c)

Canada Personal Information Protection and Electronic Documents Act - PIPEDA

d)

U.S. Cybersecurity Information Sharing Act - CISA.

35.

Which is not a Zero Trust design principle?

a)

Ensure that all resources are accessed securely, regardless of location

b)

Adopt a least privilege strategy and strictly enforce access control

c)

Allow internal users to access network services through remote access

36.

The cloud computing service model in which a provider’s applications run on a cloud infrastructure and the consumer does not manage or control the underlying infrastructure is known as:

a)

Infrastructure as a Service - IaaS

b)

Software as a Service - SaaS

c)

Platform as a Service - PaaS

37.

A Zero Trust network security model is based on which of the following security principles?

a)

Due Diligence

b)

Least privilege

c)

Non-repudiation

d)

Negative Control

38.

The Cyber-Attack Lifecycle framework is a five-step process that an attacker can implement in order to attack a network.

a)

True

b)

False

39.

PCI DSS is mandated and administered by the:

a)

U.S. Federal Government

b)

European Union - EU

c)

United Nations - UN

d)

PCI Security Standards Council - SSC

40.

What type of malware is triggered by a specific condition, such as a specific date or a particular user account being disabled?

a)

Logic Bomb

b)

TROJAN HORSE

c)

Rootkit

d)

Backdoor

41.

Which Wildfire verdict indicates no security risk but might display obtrusive behavior - for example, adware, spyware, and browser helper objects?

a)

Benign

b)

Grayware

c)

Malware

d)

Phishing

42.

__________ are forms of digitally altered media that use AI to create believable messages engineered to encourage people to provide access to information or systems they would otherwise protect.

a)

Deepfakes

b)

Altered Learning Agents - AGAs

c)

Mirror transformers

d)

Rogue Agents

43.

Which Secure the Future technology is the only security orchestration, automation, and response system that combines security orchestration, incident management, and interactive investigation to serve security teams across the incident lifecycle?

a)

Cortex XDR

b)

AutoFocus

c)

Cortex Data Lake

d)

Cortex XSOAR

44.

An effective security strategy is to deploy Perimeter-Based Network defenses, where countermeasures are defined at a handful of well-defined ingress/egress points to the network. You can then assume that everything on the internal network can be trusted.

a)

True

b)

False

45.

The primary issue with a perimeter-based network security strategy in which countermeasures are deployed at a handful of well-defined ingress and egress points to the network is that it relies on the assumption that everything on the internal network can be trusted.

a)

True

b)

False

46.

A lower __________ parameter can reduce LLM hallucinations.

a)

consistency

b)

temperature

c)

accuracy

d)

coherence

47.

Most Botnets are designed to withstand the loss of a command and control - CnC:server - , meaning that the entire Botnet infrastructure must be disabled almost simultaneously.

a)

True

b)

False

48.

The principle of least privilege in network security requires that only the permission or access rights necessary to perform an authorized task is denied.

a)

True

b)

False

49.

Effective LLM data policies and file plans should include change management and ________ controls.

a)

version

b)

retention

c)

expiration

d)

all of the above

50.

Which of the following are examples of an endpoint? Choose 3.

a)

Mainframe

b)

Smartphone

c)

Point of Sale Terminal - POS

d)

Desktop

51.

An attacker only needs to successfully execute one step of the Cyber-Attack Lifecycle in order to infiltrate a network, whereas a defender must “be right every time” and break every step of the chain to prevent an attack.

a)

True

b)

False

52.

Select the DevOps process in which developers or IT operations teams can programmatically provision and manage the infrastructure stack - such as virtual machines, networks, and connectivity - for an application in software.

a)

IaaS

b)

Paac

c)

IaC

d)

SaaS