Test your basic knowledge |

Comptia Security +: Cyber Ops

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Which of the following allows Mal - a security technician - to prevent email traffic from entering the company servers?






2. Several users' computers are no longer responding normally and sending out spam email to the users' entire contact list. This is an example of which of the following?






3. Which of the following network devices will prevent port scans?






4. Starbuck has a vendors server in-house for shipping and receiving. She wants to ensure that if the server goes down that the server in-house will be operational again within 24 hours. Which of the following should Starbuck define with the vendor?






5. Which of the following is the MOST important security requirement for mobile devices storing PII?






6. The accounting department needs access to network share A to maintain a number of financial reporting documents. The department also needs access to network share B in HR to view payroll documentation for cross-referencing items. River Tam - an admin






7. An SQL injection vulnerability can be caused by which of the following?






8. Which of the following is BEST used to break a group of IP addresses into smaller network segments or blocks?






9. Jayne's CRL is over six months old. Which of the following could Jayne do in order to ensure he has the current information?






10. Mal - a security administrator - has configured and implemented an additional public intermediate CA. Which of the following must Mal submit to the major web browser vendors in order for the certificates - signed by this intermediate - to be trusted?


11. Which of the following is where an unauthorized device is found allowing access to a network?






12. When Mal - an employee - leaves a company - which of the following should be updated to ensure Pete's security access is reduced or eliminated?






13. Which of the following procedures would be used to mitigate the risk of an internal developer embedding malicious code into a production system?






14. Mal - a security administrator - would like to implement laptop encryption to protect data. The Chief Executive Officer (CEO) believes this will be too costly to implement and decides the company will purchase an insurance policy instead. Which of th






15. Which of the following can Mal - an administrator - use to verify that a downloaded file was not corrupted during the transfer?






16. Jayne - a systems security engineer - is determining which credential-type authentication to use within a planned 802.1x deployment. He is looking for a method that does not require a client certificate - has a server side certificate - and uses TLS






17. River Tam - a security guard - reports that the side of the company building has been marked with spray paint. Which of the following could this be an example of?






18. Which of the following malware types is MOST commonly associated with command and control?






19. Which of the following is the BEST incident response procedure to take when a previous employee enters a facility?


20. Which of the following are restricted to 64-bit block sizes?






21. Which of the following attacks is characterized by River Tam attempting to send an email from a Chief Information Officer's (CIO's) non-corporate email account to an IT staff member in order to have a password changed?






22. Which of the following security tools can Starbuck - an administrator - implement to mitigate the risks of theft?






23. Which of the following should be implemented to restrict wireless access to the hardware address of a NIC?






24. Mal is reporting an excessive amount of junk mail on the network email server. Which of the following would ONLY reduce the amount of unauthorized mail?






25. River Tam - a user - on a public Wi-Fi network logs into a webmail account and is redirected to a search engine. Which of the following attacks may be occurring?






26. Traffic has stopped flowing to and from the company network after the inline IPS hardware failed. Which of the following has occurred?






27. Mal - the Chief Executive Officer (CEO) of a company - has increased his travel plans for the next two years to improve business relations. Which of the following would need to be in place in case something happens to Pete?






28. River Tam - the software security engineer - is trying to detect issues that could lead to buffer overflows or memory leaks in the company software. Which of the following would help River Tam automate this detection?






29. When used alone - which of the following controls mitigates the risk of River Tam - an attacker - launching an online brute force password attack?






30. Which of the following describes the ability for a third party to verify the sender or recipient of a given electronic message during authentication?






31. Which of the following is a policy that would force all users to organize their areas as well as help in reducing the risk of possible data theft?






32. Which of the following combinations represents multifactor authentication?






33. Which of the following reduces the likelihood of a single point of failure when a server fails?






34. Which of the following may cause Starbuck - the security administrator - to seek an ACL work around?






35. Which of the following can River Tam - a security administrator - implement to ensure that encrypted files and devices can be recovered if the passphrase is lost?






36. Which of the following mitigates the risk of proprietary information being compromised?






37. While River Tam is logging into the server from her workstation - she notices Mal watching her enter the username and password. Which of the following social engineering attacks is Mal executing?






38. Which of the following functions of a firewall allows Mal - an administrator - to map an external service to an internal host?






39. Starbuck - a user - has reported an increase in email phishing attempts. Which of the following can be implemented to mitigate the attacks?






40. Which of the following risks could IT management be mitigating by removing an all-in-one device?






41. Which of the following should River Tam - a security technician - perform as the FIRST step when creating a disaster recovery plan for a mission critical accounting system?






42. River Tam - an IT administrator - wants to protect a cluster of servers in a DMZ from zero day attacks. Which of the following would provide the BEST level of protection?






43. The Chief Information Security Officer (CISO) tells the network administrator that a security company has been hired to perform a penetration test against their network. The security company asks the CISO which type of testing would be most beneficia






44. To mitigate the adverse effects of network modifications - which of the following should Jayne - the security administrator - implement?






45. Which of the following inspects traffic entering or leaving a network to look for anomalies against expected baselines?






46. Which of the following is an improved version of the LANMAN hash?






47. Which of the following ports should be open in order for River Tam and Mal - users - to identify websites by domain name?






48. Social networking sites are used daily by the marketing team for promotional purposes. However - confidential company information - including product pictures and potential partnerships - have been inadvertently exposed to the public by dozens of emp






49. Which of the following attacks would be used if River Tam - a user - is receiving unwanted text messages?






50. Which of the following security tools can Starbuck - a security administrator - use to deter theft?