SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Cyber Ops
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Which of the following is used by Jayne - a security administrator - to lower the risks associated with electrostatic discharge - corrosion - and thermal breakdown?
Temperature and humidity controls
Personally owned devices
NAC
Key escrow
2. Which of the following inspects traffic entering or leaving a network to look for anomalies against expected baselines?
WPA2-Enterprise
IPS
TACACS+; SSH
Full disk encryption
3. Which of the following is the MOST important security requirement for mobile devices storing PII?
Remote data wipe
PGP
IV attack
Worm outbreak
4. Jayne - the administrator - has been told to confirm what account an email was sent from. Which of the following is this an example of?
Non-repudiation
E-discovery
File encryption
Fuzzing
5. Which of the following is BEST described by a scenario where organizational management chooses to implement an internal Incident Response Structure for the business?
Disable unused ports
Deploying and using a trusted OS
TPM
Mitigation
6. River Tam - a user - on a public Wi-Fi network logs into a webmail account and is redirected to a search engine. Which of the following attacks may be occurring?
Botnets
Evil twin
Change management
Clustering
7. Which of the following malware types is MOST likely to execute its payload after Starbuck - an employee - has left the company?
Server-side input validation results in a more secure system than client-side input validation.
Logic bomb
MAC filtering
Remote data wipe
8. Which of the following is the BEST incident response procedure to take when a previous employee enters a facility?
9. An administrator responsible for building and validating security configurations is a violation of which of the following security principles?
Separation of duties
TPM
Failsafe
Vulnerability scan
10. An application company sent out a software patch for one of their applications on Monday. The company has been receiving reports about intrusion attacks from their customers on Tuesday. Which of the following attacks does this describe?
Zero day
Personal firewall
Enforced acceptable usage policy - encryption of confidential emails - and monitoring of communications leaving the organization.
SQL injection
11. Jayne - a security administrator - has noticed that the website and external systems have been subject to many attack attempts. To verify integrity of the website and critical files - Jayne should
23
Create file hashes for website and critical system files - and compare the current file hashes to the baseline at regular time intervals.
The capacity of a system to resist unauthorized changes to stored information
SSH
12. Which of the following security controls enforces user permissions based on a job role?
PGP
Device encryption
Group based privileges
Update the CRL; Deploy OCSP
13. Which of the following procedures would be used to mitigate the risk of an internal developer embedding malicious code into a production system?
RAID 5 and a storage area network
Spam fitters
Warm site
Change management
14. Which of the following has a default port of 22?
MD5 checksum
Mandate additional security awareness training for all employees.
SSH
Botnets
15. Mal - a security administrator - has configured and implemented an additional public intermediate CA. Which of the following must Mal submit to the major web browser vendors in order for the certificates - signed by this intermediate - to be trusted?
16. When Mal - an employee - leaves a company - which of the following should be updated to ensure Pete's security access is reduced or eliminated?
Deploy an anti-spam device to protect the network.
Zero day exploit
CRL
Signature based
17. Employees are reporting that they are receiving unusual calls from the help desk for the purpose of verifying their user credentials. Which of the following attack types is occurring?
Vulnerability scan
Disable unused ports
Penetration test
Vishing
18. Mal - a security administrator - would like to implement laptop encryption to protect data. The Chief Executive Officer (CEO) believes this will be too costly to implement and decides the company will purchase an insurance policy instead. Which of th
The IDS does not identify a buffer overflow
Risk avoidance
Vishing
Mitigation
19. Which of the following authentication protocols forces centralized wireless authentication?
Account lockout
WPA2-Enterprise
The capacity of a system to resist unauthorized changes to stored information
MD5
20. Which of the following mitigates the risk of proprietary information being compromised?
File encryption
PEAP
Cable locks
Input validation
21. Jayne's CRL is over six months old. Which of the following could Jayne do in order to ensure he has the current information?
Change management
Update the CRL; Deploy OCSP
Business impact assessment
Remote data wipe
22. Which of the following is an improved version of the LANMAN hash?
Impersonation
Disable unused ports
NTLM
Clustering
23. Which of the following reduces the likelihood of a single point of failure when a server fails?
RADIUS
RAS
It is faster to encrypt an individual file.
Clustering
24. Which of the following web application security weaknesses can be mitigated by preventing the use of HTML tags?
River Tam - the attacker - overwhelms a system or application - causing it to crash and bring the server down to cause an outage.
Separation of duties
Cross-site scripting
SSH
25. The IT Security Department has completed an internal risk assessment and discovered the use of an outdated antivirus definition file. Which of the following is the NEXT step that management should take?
Gray box
Penetration test
Mitigate risk and develop a maintenance plan.
Establish a MAC limit and age
26. Which of the following should River Tam - a security technician - perform as the FIRST step when creating a disaster recovery plan for a mission critical accounting system?
TPM
PEAP-MSCHAPv2
Business impact assessment
Mandated security configurations have been made to the operating system.
27. After setting up a root CA. which of the following can Mal - a security administrator - implement to allow intermediate CAs to handout keys and certificates?
Trust model
Change management
Improper input validation
Server-side input validation results in a more secure system than client-side input validation.
28. While traveling - users need access to an internal company web server that contains proprietary information. Mal - the security administrator - should implement a...
RAS
Mandatory Access Controls
Deploying and using a trusted OS
Accounting should be given read/write access to network share A and read access to network share B. River Tam should be given read access for the specific document on network share A.
29. The public key is used to perform which of the following?
Validate the identity of an email sender;Encrypt messages;Decrypt messages
Passive finger printing
Rootkit
Account expiration
30. Starbuck - a VPN administrator - was asked to implement an encryption cipher with a MINIMUM effective security of 128-bits. Which of the following should Starbuck select for the tunnel encryption?
Blowfish
Fraggle attack
Account lockout
Mandatory access control
31. River Tam - an administrator - suspects a denial of service attack on the network - but does not know where the network traffic is coming from or what type of traffic it is. Which of the following would help River Tam further assess the situation?
Cipher lock combination and proximity badge
Logic bomb
Separation of duties
Protocol analyzer
32. Which of the following is an attack where Mal spreads USB thumb drives throughout a bank's parking lot in order to have malware installed on the banking systems?
Use Starbuck's private key to sign the binary
21
Social engineering
Loop protection
33. Which of the following functions of a firewall allows Mal - an administrator - to map an external service to an internal host?
Port forwarding
It is faster to encrypt an individual file.
Clean desk policy
Risk avoidance
34. A company needs to remove sensitive data from hard drives in leased computers before the computers are returned to the supplier. Which of the following is the BEST solution?
Social engineering
Power levels
Application hardening
Sanitization using appropriate software
35. Social networking sites are used daily by the marketing team for promotional purposes. However - confidential company information - including product pictures and potential partnerships - have been inadvertently exposed to the public by dozens of emp
Signature based
Mandate additional security awareness training for all employees.
Cold site
Zero day
36. Which of the following password policies is the MOST effective against a brute force network attack?
ARP poisoning
Account lockout
Host based firewall
Single point of failure
37. A packet filtering firewall can protect from which of the following?
Port scan
Dictionary; Brute force
Disable unused ports
NIPS
38. Which of the following should be implemented to restrict wireless access to the hardware address of a NIC?
Something you are - something you have
Impersonation
MAC filtering
SNMPv3
39. Which of the following could River Tam - an administrator - use in a workplace to remove sensitive data at rest from the premises?
Personally owned devices
Shoulder surfing
PEAP-MSCHAPv2
Signature based
40. Which of the following network devices will prevent port scans?
IV attack
Firewall
It is faster to encrypt an individual file.
Mandatory vacations
41. Which of the following is the purpose of the spanning tree protocol?
IPS
Loop protection
Gray box
Signature based
42. Which of the following are security relevant policies?
CA
IPS
Information classification policy; Network access policy; Auditing and monitoring policy
Mean time to restore
43. Marketing creates a new folder and requests the following access be assigned: Sales Department - Read Marketing Department - Full Control Inside Sales - Read Write This is an example of which of the following?
Temperature and humidity controls
RBAC
WPA2-PSK
Vishing
44. Mal - the security administrator - is implementing a web content fitter. Which of the following is the MOST important design consideration in regards to availability?
Impersonation
SNMPv3
Accounting should be given read/write access to network share A and read access to network share B. River Tam should be given read access for the specific document on network share A.
Fail state of the system
45. Which of the following is based on X.500 standards?
Single sign-on
Error handling
LDAP
River Tam - the attacker - overwhelms a system or application - causing it to crash and bring the server down to cause an outage.
46. River Tam - a security analyst - discovers which operating systems the client devices on the network are running by only monitoring a mirror port on the router. Which of the following techniques did River Tam use?
Signature based
80
Passive finger printing
IPS
47. While performing basic forensic analysis of a hard drive in River Tam's - the security administrator - possession - which of the following should be verified during the analysis?
Penetration testing
Image hashes
ARP poisoning
LDAP
48. Which of the following would MOST likely be implemented in order to prevent employees from accessing certain websites?
Proxy server
Application hardening
Input validation
Impersonation
49. Which of the following security tools can Starbuck - an administrator - implement to mitigate the risks of theft?
Device encryption
80
Remotely initiate a device wipe
Assign multiple roles to the existing user ID
50. Which of the following technologies would allow the removal of a single point of failure?
Dual-homing a server
GSM phone card and PIN
Shoulder surfing
Risk