Font size
WorksheetsDay 4 Warm-up
Total questions: 13
Worksheet time: 7mins
Which best describes network segmentation in modern environments?
Replacing routers with firewalls entirely
Dividing traffic with VLANs and ACLs
Encrypting all data at rest only
Using proxies to cache web content
In Software-Defined Networking (SDN), which plane is centralized for control?
Control plane centralized
Forwarding plane virtualized
Data plane centralized
Management plane removed
Which combination implements Zero Trust for identity?
Continuous authentication
Multi-factor verification
Implicit trust inside LAN
Network address-based access
Least privilege enforcement
Which factor types are valid for MFA?
Something you have
Something you know
Something in the cloud
Something you remember later
Something you are
Containers differ from virtual machines primarily in what resource boundary?
Require dedicated hypervisor hardware
Each with separate physical CPU
Run only on bare metal servers
Share host kernel, isolate processes
Which scenario benefits most from Type 1 hypervisors?
Server consolidation on bare metal
Client apps needing local GUI
Light web browsing on laptops
Single-purpose IoT sensors
CIS Benchmarks and STIGs primarily help teams do what?
Bypass change control processes
Apply secure configuration baselines
Write custom encryption ciphers
Replace vendor operating systems
Which control most effectively supports microsegmentation?
Host-based firewalls per workload
Perimeter-only filtering at edge
SMTP relay on separate VLAN
DNS records with short TTLs
Which access management practice reduces lateral movement risk?
Just-in-time privileged access
Shared admin accounts everywhere
Static credentials with long expiry
Access by IP address alone
Which statement about honeypots in threat intelligence is accurate?
Block all scanning automatically
Replace IDS across the enterprise
Guarantee full attacker attribution
Decoys collect attacker TTPs safely
What is a primary advantage of using SDN controllers in enterprise networks?
They eliminate the need for any physical switches
They centralize network policy and automation
They require manual configuration of each device
They only support legacy protocols
Which technology is commonly used to isolate workloads within the same physical host?
Static routing
Containerization
VLAN trunking
Port mirroring
What is the main function of access control lists (ACLs) in network security?
To encrypt all network traffic
To define rules for permitting or denying traffic
To provide wireless connectivity
To monitor CPU usage on servers
