Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity Security+

Total questions: 79

Worksheet time: 40mins

Name
Class
Date
1.

Which of the following components can have data permanently destroyed or wiped using degaussing methods?

a)

Hard disk drives

b)

Solid-state drives

c)

Optical discs

d)

Flash drives

2.

Usually used in ethical hacker training programs and gamified competitions.

a)

Capture the Flag (CTF)

b)

Penetration Testing

c)

Bug Bounty

d)

Red Teaming

3.

CIA stands for __________, integrity, and availability

a)

Confidentiality

b)

Control

c)

Communication

d)

Coordination

4.

Performs a real-time lookup of a digital certificate’s status.

a)

OCSP

b)

SSL

c)

TLS

d)

DNSSEC

5.

Malware that installs and operates silently until a certain event occurs.

a)

Logic bomb

b)

Worm

c)

Adware

d)

Trojan

6.

A business manager is documenting a set of steps for processing orders if the primary Internet connection fails. These steps would BEST be described as:

a)

Disaster recovery procedures

b)

Network configuration settings

c)

Routine maintenance tasks

d)

Sales forecasting methods

7.

Which of the following risk management strategies would include the purchase and installation of a next-generation firewall?

a)

Risk avoidance

b)

Risk transfer

c)

Risk mitigation

d)

Risk acceptance

8.

The cybersecurity technique designed to detect the presence of threats that have not been discovered by normal security monitoring is known as:

a)

Vulnerability scanning

b)

Threat hunting

c)

Firewall filtering

d)

Patch management

9.

A company would like to securely deploy applications without the overhead of installing a virtual machine for each system. Which of the following would be the BEST way to deploy these applications?

a)

Use containers

b)

Install a virtual machine for each application

c)

Deploy applications on bare metal servers

d)

Use shared hosting environments

10.

You receive an email, with an invoice, stating that you passed through an EZPass lane without paying the toll. What type of attack is this?

a)

Phishing

b)

Denial of Service

c)

Man-in-the-Middle

d)

Brute Force

11.

Windows user accounts are identified as:

a)

Usernames

b)

Passwords

c)

IP addresses

d)

MAC addresses

12.

WPA3?

a)

SAE

b)

TKIP

c)

WEP

d)

EAP

13.

What can be used to prevent shoulder surfing?

a)

Privacy screen

b)

Password manager

c)

Antivirus software

d)

Firewall

14.

A security administrator would like to encrypt all VoIP communication on the corporate network. Which of the following protocols would provide this functionality?

a)

SRTP

b)

FTP

c)

SNMP

d)

Telnet

15.

A hacker identified a number of devices on a corporate network that use the username of admin and the password of admin. Which vulnerability describes this situation?

a)

Default configuration

b)

Phishing attack

c)

SQL injection

d)

Privilege escalation

16.

Which part of the PC startup process verifies that nothing on the computer has been changed by malicious software or other processes?

a)

Measured Boot

b)

Safe Mode

c)

BIOS Update

d)

Disk Cleanup

17.

The VP of Retail Operations sent a request to the server administrator of the company to create daily backups of the retail leads database. The VP of Retail Operations is an example of a:

a)

Data owner

b)

Data custodian

c)

System administrator

d)

Database analyst

18.

What does it mean to collect latent evidence?

a)

It's not visible to the naked eye

b)

It's evidence found in plain sight

c)

It's evidence that is always physical

d)

It's evidence that is always digital

19.

A security administrator is researching the methods used by attackers to gain access to web servers. Which of the following would provide additional information about these techniques?

a)

Honeypot

b)

Firewall

c)

Load balancer

d)

Proxy server

20.

Data which is stored in the RAM

a)

Data in use

b)

Data in backup

c)

Data in archive

d)

Data in cache

21.

Which of the following attacks may allow remote authentication without cracking a password?

a)

Pass the hash

b)

Brute force attack

c)

Dictionary attack

d)

Phishing

22.

What protocol does a smurf attack abuse?

a)

ICMP

b)

TCP

c)

UDP

d)

ARP

23.

A digital certificate that turns the address bar green is a(n)...

a)

Extended Validation SSL Certificate

b)

Domain Validated SSL Certificate

c)

Wildcard SSL Certificate

d)

Organization Validated SSL Certificate

24.

Linux command for managing file permissions

a)

chmod

b)

ls

c)

cat

d)

pwd

25.

What is the primary target in a XSS attack?

a)

Web browser

b)

Database server

c)

Network switch

d)

Operating system

26.

Which of the following describes a monetary loss if one event occurs? ________

a)

SLE

b)

ALE

c)

ROI

d)

MTTR

27.

Changing code to make it difficult to understand or covering your tracks to make it hard for investigators to trace the origin of attack is called ________

a)

Obfuscation

b)

Encryption

c)

Authentication

d)

Replication

28.

You received a support call from an end user who states that they've accidentally installed a virus on their Windows computer. What should be the first step you should take to remediate the situation?

a)

Remove the computer from the network

b)

Run a disk defragmentation

c)

Upgrade the operating system

d)

Install a new printer driver

29.

A corporate security team would like to consolidate and protect the private keys across all of their web servers. Which of these would be the BEST way to securely store these keys?

a)

Use an HSM

b)

Store them in a shared network folder

c)

Save them in a password-protected ZIP file

d)

Keep them in a database with user access controls

e)

Write them to a local text file

30.

Which of the following two reasons explain why two backups are required when protecting evidence following a security incident?

a)

To be used as evidence

b)

To reduce storage costs

c)

To speed up the investigation process

d)

To comply with software licensing

31.

A company is implementing a series of automated processes when responding to a security event. Which of the following would provide a linear checklist of steps to perform?

a)

Runbook

b)

Playbook

c)

Incident Report

d)

Audit Log

32.

Which Windows security feature that marks memory so that it can store data but not execute program instructions?

a)

Data Execution Prevention (DEP)

b)

User Account Control (UAC)

c)

BitLocker

d)

Windows Defender

33.

What name is given to the team that needs to be assembled as part of the incident response policy?

a)

Computer Security Incident Response Team (CSIRT)

b)

Network Operations Team (NOT)

c)

Data Recovery Task Force (DRTF)

d)

System Maintenance Group (SMG)

34.

What are examples of a DoS attack?

a)

Wireless dissociation

b)

Phishing email

c)

SQL injection

d)

Password reuse

35.

When an attacker captures network traffic and retransmits it at a later time, what type of attack are they attempting?

a)

Replay attack

b)

Phishing attack

c)

Man-in-the-middle attack

d)

Denial-of-service attack

36.

How could you prevent the boot order from being manipulated during boot?

a)

Implement a BIOS/UEFI password

b)

Install more RAM

c)

Change the monitor resolution

d)

Update the graphics driver

37.

File type used to save packet captures

a)

.pcap

b)

.docx

c)

.jpg

d)

.mp3

38.

Which of the following BEST describes the modification of application source code that removes white space, shortens variable names, and rearranges the text into a compact format?

a)

Minification

b)

Compilation

c)

Encryption

d)

Debugging

39.

The lock type that involves RFID or smart cards for authentication is:

a)

Biometric lock

b)

Mechanical lock

c)

Electronic lock

d)

Combination lock

40.

According to the OSI Model, what communicates over layer 7?

a)

Applications

b)

Routers

c)

Switches

d)

Firewalls

41.

A security administrator is configuring an IPsec tunnel to a remote site. Which protocol should the administrator enable to protect all of the data traversing the VPN tunnel?

a)

ESP

b)

FTP

c)

SMTP

d)

SNMP

42.

Which of the following authentication protocols would be the BEST way to provide a login to wireless systems using existing credentials from a third-party?

a)

RADIUS

b)

WEP

c)

WPA2-PSK

d)

EAP-TTLS

43.

Which of the following mitigates clickjacking, script injection, and other client-side attacks?

a)

Content Security Policy (CSP)

b)

Cross-Site Request Forgery (CSRF) tokens

c)

SQL Injection prevention

d)

Password hashing

44.

A company has signed an SLA with an Internet service provider. Which of the following would BEST describe the content of this SLA?

a)

The guaranteed level of service and uptime provided by the ISP

b)

The pricing structure for internet packages

c)

The types of hardware used by the ISP

d)

The physical location of the ISP's data centers

45.

Which Windows 10 security feature stores a hash of the UEFI firmware so that it cannot be exploited by malware?

a)

Device Guard

b)

BitLocker

c)

Windows Defender

d)

Secure Boot

46.

A security administrator is designing a network to be PCI DSS compliant. Which of the following would be the BEST choice to provide this compliance?

a)

Implement a dedicated firewall and network segmentation for cardholder data environment

b)

Use only wireless networks for all transactions

c)

Allow unrestricted access to all network segments

d)

Disable all encryption protocols

47.

A user in the accounting department would like to send a spreadsheet with sensitive information to a list of third-party vendors. Which of the following could be used to transfer this spreadsheet to the vendors?

a)

Encrypted email attachment

b)

Public cloud file sharing without password

c)

Posting on social media

d)

Unsecured USB drive

48.

Which of the following features may be included in an EPP?

a)

Antivirus protection

b)

Photo editing tools

c)

Music streaming services

d)

Social media integration

49.

What BEST describes implicit deny?

a)

Block everything except what I allow

b)

Allow everything except what I block

c)

Allow only what is explicitly denied

d)

Block only what is explicitly allowed

50.

What is the point of an entry control roster?

a)

To track visitors in a building

b)

To record employee salaries

c)

To monitor fire alarm systems

d)

To schedule maintenance activities

51.

Which of these cloud deployment models would allow multiple organizations to share the same cloud resources, regardless of the resource's location?

a)

Community

b)

Private

c)

Public

d)

Hybrid

52.

Your company owns a purpose-built appliance that doesn't provide any access to the operating system and doesn't provide a method to upgrade the firmware. Which of the following describes this appliance?

a)

Embedded system

b)

Virtual machine

c)

Cloud server

d)

Workstation

53.

An unauthorized AP broadcasting an identical SSID as a corporate network is considered a/an...

a)

Evil Twin

b)

Rogue Gateway

c)

Phantom Bridge

d)

Shadow Node

54.

In WPA3, what replaces CCMP to ensure perfect forward secrecy of packets?

a)

GCMP

b)

TKIP

c)

AES

d)

WEP

55.

Maintaining the integrity and proper handling of evidence from collection, to analysis, to storage, and then to presentation is known as________

a)

Chain of Custody

b)

Evidence Tampering

c)

Data Encryption

d)

Forensic Imaging

56.

Which of the following best describes whaling?

a)

Spear phishing executives

b)

Sending spam emails to random users

c)

Phishing for credit card information from the public

d)

Hacking into social media accounts

57.

Which of the following control types is associated with a bollard?

a)

Physical

b)

Technical

c)

Administrative

d)

Logical

58.

Which of the following software can be used to recover data from slack space?

a)

Autopsy

b)

Photoshop

c)

WinRAR

d)

Notepad

59.

A security administrator has installed a network-based DLP solution to determine if file transfers contain PII. Which of the following describes the data during the file transfer?

a)

In-transit

b)

At-rest

c)

In-use

d)

Encrypted

60.

A company's security policy requires that login access should only be available if a person is physically within the same building as the server. Which of the following would be the BEST way to provide this requirement?

a)

Biometric scanner

b)

VPN access

c)

Password authentication

d)

Remote desktop

61.

What type of attack involves an attacker putting a layer of code between an original device driver and the operating system?

a)

Shimming

b)

Spoofing

c)

Phishing

d)

Rootkit

62.

An organization is installing a UPS for their new data center. Which of the following would BEST describe this type of control?

a)

Compensating

b)

Detective

c)

Corrective

d)

Preventive

63.

A company would like to protect the data stored on laptops used off-site. Which of the following would be the BEST choice for this requirement?

a)

SED

b)

RAID

c)

VPN

d)

Firewall

64.

Which of the following would limit the type of information a company can collect from their customers?

a)

Minimization

b)

Maximization

c)

Diversification

d)

Aggregation

65.

An organization maintains a large database of customer information for sales tracking and customer support. Which person in the organization would be responsible for managing the access rights to this data?

a)

Data custodian

b)

Sales manager

c)

Customer support representative

d)

Database administrator

66.

What is the advantage of using an EPP instead of a traditional AV?

a)

EPP combines additional security functions, increasing security

b)

EPP is only compatible with older operating systems

c)

EPP requires less frequent updates than AV

d)

EPP is less effective against malware than AV

67.

Which of the following is known as eavesdropping?

a)

Capturing and reading data packets as they move over the network

b)

Encrypting data before transmission

c)

Blocking unauthorized access to a network

d)

Sending spam emails to users

68.

Which of the following cloud deployments would include CPU, storage, and networking, but not include any operating system or application?

a)

IaaS

b)

PaaS

c)

SaaS

d)

FaaS

69.

Rules can be added to a Linux-based NOS firewall by using the command...

a)

iptables

b)

netstat

c)

ping

d)

chmod

70.

Which of the following would be the BEST way to determine if files have been modified after the forensics data acquisition process has occurred?

a)

Create a hash of the data

b)

Check the file size only

c)

Review the file names

d)

Rely on file timestamps

71.

A network administrator is installing a series of access points in a public library. Which of the following would be the BEST way to prevent theft of his laptop while performing this work?

a)

Cable lock

b)

Password protect the laptop

c)

Install antivirus software

d)

Enable firewall

72.

In China, the National Data Center was compromised due to a Chinese hacker group hacking a number of Chinese government websites that was frequently visited. What type of an attack is this?

a)

Watering hole

b)

Phishing

c)

Man-in-the-middle

d)

SQL injection

73.

Which of the regulatory compliance laws ensures proper handling of patient health information?

a)

HIPAA

b)

SOX

c)

FERPA

d)

GLBA

74.

You have two APs within close proximity. Both are emitting SSIDs from a 2.4GHz radio. One AP is set to channel 1 and the other AP is set to channel 2. What is this an example of?

a)

Adjacent channel interference

b)

Co-channel interference

c)

Hidden node problem

d)

Signal attenuation

75.

If you want to encrypt a file or folder in Windows, what can you use?

a)

EFS

b)

NTFS

c)

FAT32

d)

BitLocker

76.

What is the policy of preventing any one individual performing the same role or tasks for too long?

a)

Job rotation

b)

Job enrichment

c)

Job enlargement

d)

Job specialization

77.

What next-gen endpoint protection system specializes in containment of the threat versus eradication?

a)

Endpoint Detection & Response (EDR)

b)

Antivirus Software

c)

Firewall

d)

Intrusion Prevention System (IPS)

78.

Which of the following is a stateless firewall?

a)

Packet filtering

b)

Stateful inspection

c)

Application proxy

d)

Circuit-level gateway

79.

Where can you implement a password policy that can be applied to an entire network?

a)

Group Policy Management

b)

Local Security Policy

c)

User Account Control

d)

Control Panel