Test your basic knowledge |

Comptia Security +: Cyber Ops

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Which of the following BEST explains the security benefit of a standardized server image?






2. River Tam - a security administrator - is noticing a slow down in the wireless network response. River Tam launches a wireless sniffer and sees a large number of ARP packets being sent to the AP. Which of the following type of attacks is underway?






3. An application company sent out a software patch for one of their applications on Monday. The company has been receiving reports about intrusion attacks from their customers on Tuesday. Which of the following attacks does this describe?






4. Which of the following multifactor authentication methods uses biometrics?






5. Which of the following implements two factor authentication based on something you know and something you have?






6. Which of the following security chips does BitLocker utilize?






7. The log management system at Company A is inadequate to meet the standards required by their corporate governance team. A new automated log management system has been put in place. This is an example of which of the following?






8. Which of the following does Starbuck - a software developer - need to do after compiling the source code of a program to attest the authorship of the binary?


9. To mitigate the adverse effects of network modifications - which of the following should Jayne - the security administrator - implement?






10. Which of the following network solutions would BEST allow Starbuck - a security technician - to host an extranet application for her company?






11. Which of the following would be the BEST reason for Starbuck - a security administrator - to initially select individual file encryption over whole disk encryption?






12. While performing basic forensic analysis of a hard drive in River Tam's - the security administrator - possession - which of the following should be verified during the analysis?






13. River Tam - a security analyst - discovers which operating systems the client devices on the network are running by only monitoring a mirror port on the router. Which of the following techniques did River Tam use?






14. Which of the following security tools can Starbuck - an administrator - implement to mitigate the risks of theft?






15. While River Tam is logging into the server from her workstation - she notices Mal watching her enter the username and password. Which of the following social engineering attacks is Mal executing?






16. A packet filtering firewall can protect from which of the following?






17. Which of the following ports would be blocked if Mal - a security administrator - wants to deny access to websites?






18. Starbuck - a user - has reported an increase in email phishing attempts. Which of the following can be implemented to mitigate the attacks?






19. Which of the following allows Mal - a security technician - to prevent email traffic from entering the company servers?






20. Starbuck - a security administrator - has applied security labels to files and folders to manage and restrict access. Which of the following is Starbuck using?






21. River Tam - a security administrator - suspects that a web server may be under attack. The web logs have several entries containing variations of the following entries: 'or 1=1-- or1'=1-- 'or1=1'






22. Starbuck - a security administrator - wants to prevent users in sales from accessing their servers after 6:00 p.m. - and prevent them from accessing accounting's network at all times. Which of the following should Starbuck implement to accomplish the






23. River Tam - a forensic investigator - believes that the system image she was presented with is not the same as the original source. Which of the following should be done to verify whether or not the image has been tampered with?






24. Which of the following administrative controls BEST mitigates the risk of ongoing inappropriate employee activities in sensitive areas?






25. Jayne - a system administrator - wants to establish a nightly available SQL database. Which of the following would be implemented to eliminate a single point of failure in storage and servers?






26. Workers of a small local organization have implemented an off-site location in which the organization can resume operations within 10 business days in the event of a disaster. This type of site is BEST known as which of the following?






27. Which of the following malware types is MOST likely to execute its payload after Starbuck - an employee - has left the company?






28. Social networking sites are used daily by the marketing team for promotional purposes. However - confidential company information - including product pictures and potential partnerships - have been inadvertently exposed to the public by dozens of emp






29. Which of the following is Starbuck - a security administrator - MOST likely implementing when deleting all the unneeded files and modules of a newly install application?






30. Jayne's CRL is over six months old. Which of the following could Jayne do in order to ensure he has the current information?






31. Starbuck has a vendors server in-house for shipping and receiving. She wants to ensure that if the server goes down that the server in-house will be operational again within 24 hours. Which of the following should Starbuck define with the vendor?






32. Which of the following security concepts establishes procedures where creation and approval are performed through distinct functions?






33. Which of the following ports should be open in order for River Tam and Mal - users - to identify websites by domain name?






34. In the event of a mobile device being lost or stolen - which of the following BEST protects against sensitive information leakage?






35. Which of the following malware types is MOST commonly associated with command and control?






36. Which of the following is BEST described by a scenario where organizational management chooses to implement an internal Incident Response Structure for the business?






37. Which of the following is the purpose of the spanning tree protocol?






38. River Tam - an administrator - suspects a denial of service attack on the network - but does not know where the network traffic is coming from or what type of traffic it is. Which of the following would help River Tam further assess the situation?






39. Which of the following would Mal - a security administrator - change to limit how far a wireless signal will travel?






40. Which of the following technologies would allow the removal of a single point of failure?






41. Which of the following BEST describes a denial of service attack?






42. Mal - the Chief Executive Officer (CEO) of a company - has increased his travel plans for the next two years to improve business relations. Which of the following would need to be in place in case something happens to Pete?






43. Which of the following policies is implemented in order to minimize data loss or theft?






44. Jayne - the administrator - has been told to confirm what account an email was sent from. Which of the following is this an example of?






45. Which of the following is the MOST important security requirement for mobile devices storing PII?






46. Which of the following would River Tam - a security administrator - utilize to identity a weakness within various applications without exploiting that weakness?






47. Which of the following may cause Starbuck - the security administrator - to seek an ACL work around?






48. In a wireless network - which of the following components could cause too much coverage - too little coverage - and interference?






49. Which of the following would MOST likely be implemented in order to prevent employees from accessing certain websites?






50. River Tam - a security administrator - has generated a key pair for the company web server. Which of the following should she do next to ensure all web traffic to the company web server is encrypted?