Browse all practice questions for the Security+ Master Deck Practice Test. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Security+ Master Deck Practice Test course image
More practice questions

These questions are part of the practice quiz. Start practicing

  • In the context of network security, what is privilege escalation?
  • What is the most common concern when conducting an application restart for a production application?
  • What should be integrated with security tools as part of threat-hunting activities?
  • What type of control has Alice deployed to address a vulnerability in an embedded device?
  • Which category do lighting and fences best fall under in terms of security controls?
  • What are considerations like database and network connectivity, authentication system access, and network time availability considered in the context of change management processes?
  • What situation is indicated by an empty audit.log file on a Linux system despite active uptime?
  • What type of hardware device facilitates full disk encryption on laptops and tablets?
  • Rick's cloud provider offers a dedicated hardware security module. Which of the following capabilities is it unlikely to offer?
  • What does the term 'secure enclave' primarily refer to?
  • What process is followed in conducting a birthday attack against a digital signature?
  • Which threat actor is primarily motivated by political beliefs and aims to promote change?
  • What method will best help Jared estimate the downtime that will result from a planned change?
  • Which process is primarily concerned with ensuring that software will perform as intended within an organization's infrastructure?
  • What does a digital signature typically provide when applied to a document?
  • What best describes the purpose of a Trusted Platform Module (TPM) in securing devices?
  • How can organizations address concerns about potential threat vectors from third-party managed service providers (MSPs)?
  • What installation can help Alaina prevent vehicle impacts on her organization's backup generator?
  • Which log file in Windows records errors related to installed software?
  • What distinguishes phishing from other types of spam?
  • In data protection strategy, what does the concept of segmentation involve?
  • What type of cyber-attack involves tricking a user into executing malicious software?
  • What is a common defense mechanism against brute force attacks?
  • What is a common target for DNS poisoning attacks?
  • What does the use of HR expense accounts for an SaaS tool indicate about Jack's HR team?
  • What is the primary advantage of using an open public ledger in a blockchain system?
  • What is the best mitigation technique for keeping data and applications of different sensitivity secure in a virtualization environment?
  • Which type of security control is best suited to reduce the threat of compromised credentials for Charles?
  • What type of phishing attack is conducted via text messages?
  • Which of the following situations is not associated with race conditions?
  • During a gap analysis, which information is primarily analyzed?
  • What type of attack leverages multiple compromised systems to disrupt a target's services?
  • What is the reserved time during which Nick's organization performs scheduled maintenance typically called?
  • Which statement is true regarding communication in network security zones in a zero-trust model?
  • What physical security control offers the greatest flexibility for applying security practices?
  • Which of the following is not a common element assessed in a zero-trust model?
  • What technique can be used to strengthen a weak password against brute-force attacks?
  • What is the typical goal of hacktivists?
  • What is not a typical part of a certificate signing request (CSR)?
  • What is the main goal of a DDoS attack?
  • What hardware component is used to generate, store, and manage cryptographic keys?
  • Diffie-Hellman and RSA are examples of which encryption-related solution?
  • A Trojan horse typically appears to be which of the following?
  • Which of the following is NOT a common technique to make passwords harder to crack?
  • Which of the following is not a common control that focuses on availability?
  • What common attack can be identified by accessing a URL with '../' sequences in it?
  • What step should be taken to ensure the decommissioning process protects the organization's sensitive data?
  • What is an advantage of using key stretching techniques?
  • What technology is likely to be deployed for a single sign-on system in cloud services?
  • Which attack method utilizes crafting packets to manipulate network communication?
  • Which of the following best describes social engineering?
  • In a zero-trust environment, what mitigation technique allows users to have rights only when needed?
  • What is the primary purpose of encryption in enterprise environments?
  • What behavior is likely to indicate the presence of a rootkit on a system?
  • What can be done to limit attack vectors associated with messaging tools like Discord and Slack?
  • What should a team do if a major patch release fails according to change management best practices?
  • What role do standard operating procedures (SOPs) play in the change management process?
  • What type of malware grants administrative privileges to an external hacker?
  • What does Scott need to implement when integrating OCSP into his application?
  • What concept is associated with deploying new software in a controlled environment before full integration?
  • What kind of network security measure allows whitelisting of specific software?
  • Once the drives have been wiped or destroyed during server decommissioning, what is the next typical step?
  • What should Yariv do after accidentally exposing his private key to others?
  • Log monitoring is an example of which category of control?
  • What term best describes malicious software that warns of deleting files when a specific event occurs, such as an employee's termination?
  • Which option best describes a zero-day vulnerability?
  • What flaw occurs when a multithreaded application fails to properly handle threads accessing a common value?
  • Which term describes the phenomenon when users are misled to a fraudulent version of a website?
  • Which action is commonly used to protect sensitive information from being accessed without permission?
  • What initial action should Ben take to enable a credential replay attack?
  • What is a common motivation for nation-state threat actors?
  • Which of the following is not a common concern for organizations assessing threats from hardware providers?
  • In a zero-trust system, what should happen after the basic criteria for access have been met?
  • What type of encryption should be selected to prevent data exposure if a device is stolen and is locked or turned off?
  • If malware is exploiting unsecured network services to spread, what type of malware is most likely involved?
  • What cybersecurity objective does full-disk encryption primarily support?
  • In cybersecurity, what does the term "payload" typically refer to?
  • What action should an end user take to install an application in an environment utilizing an application allow list?
  • What type of attack involves exploiting a vulnerability to gain root privileges on a web server?
  • What kind of certificate should be used to manage multiple subdomains for a website?
  • What type of social engineering attack involves impersonating someone to gain information from a target?
  • Which threat vector primarily exploits known software vulnerabilities?
  • How can one protect against SQL injection attacks?
  • What type of security tool has Jack deployed that simulates a vulnerable system?
  • What potential attack surface was discovered during the penetration test by Bob?
  • What kind of malware should be searched for if passwords of a compromised user's account are being used by attackers?
  • What cryptographic protocol is frequently used to enhance encryption on existing protocols?
  • What represents the most common file-based threat vector?
  • What holds the position of the root of trust in a certificate chain?
  • If systems are connecting to remote systems on TCP port 6667, what is the most likely cause?
  • Which motivation is least likely associated with advanced persistent threat (APT) actors?
  • What is a common issue when implementing a mandatory application update?
  • Spyware is classified as what type of malware?
  • What category of security control does conducting a periodic risk assessment fall under?
  • What classification covers malware that spreads without user intervention?
  • What type of attack targets a network connection by intercepting communication between two systems?
  • What type of malware is likely being countered if it copies itself to workstations through a shared fileshare?
  • What technique involves appending a unique string of characters to password hashes for added security?
  • Which statement is true regarding the implementation of access controls?
  • What challenge drives the need for key exchange mechanisms?
  • What information is required for a certificate to be correctly identified in an OCSP request?
  • What is the proper method for sending a public key to another user?
  • What type of attack exploits the trust of a website for an authenticated user?
  • What type of malicious actor typically has the least amount of resources available?
  • What does an application allow list help to manage in a security context?
  • Which human vector is commonly involved in voice call-based attacks?
  • What must a user do first to sideload applications onto an Android phone?
  • Which of the following controls can help deter unauthorized access to a facility?
  • What is the largest driver for new ongoing costs for an unmonitored video surveillance system?
  • Which of the following best describes the concept of a self-signed certificate?
  • Which concern is not typically associated with change management processes for legacy applications?
  • What important encryption feature is not supported by symmetric encryption?
  • What type of monitoring is best suited for detecting environmental attacks against a datacenter?
  • What concern should be raised about implementing an allow list for websites in an organization?
  • An encryption method in which all participants share the same key is known as which type of encryption?
  • What type of vulnerability allows code execution on the host system from code running on a virtual machine?
  • What is a common result of not regularly updating software?
  • Which motivation is not commonly associated with ransomware actors?
  • What functional security control automatically restarts services after detecting a system crash?
  • Which term best describes the theft of a domain configuration without expiration?
  • In a situation where a threat actor is extorting an organization, what term best describes their motive?
  • Which AAA protocol is commonly used for network devices?
  • What would be the focus of a threat intelligence program in a security context?
  • What social engineering technique does wearing a delivery uniform represent?
  • How many keypairs are needed for four individuals to securely communicate using asymmetric encryption?
  • What is one common measure for ensuring security when sharing sensitive information?
  • What should Renee do to ensure that her logs support nonrepudiation?
  • What type of control is John considering when writing a procedure for password disclosure due to phishing attempts?
  • What is the likely outcome of a cryptographic collision attack?
  • Which of the following is the most effective hardening option to protect against ransomware?
  • Which type of employee access management is useful for preventing unauthorized access to sensitive systems or data?
  • In the context of zero-trust architecture, what is a term used to describe devices like laptops and desktops?
  • Which activity should Alaina not restrict as part of her preparation for a change window?
  • What cloud solution provides the highest level of security for storing secrets?
  • When connecting to an unsecure wired network, which threat is least likely to be a concern?
  • What obfuscation method should be chosen to validate customer identities without revealing full access to customer data?
  • Why is key rotation important in cryptographic practices?
  • What concern should Adam raise about implementing an allow list for websites on his servers?
  • Which detective control could Brandon use to address physical security threats?
  • What is a key characteristic of an unskilled attacker in a network context?
  • What is the term for software that includes multiple unnecessary applications preinstalled?
  • What is one essential function of a cryptographic hash function?
  • What term is used to describe a collection of honeypots on a network?
  • What type of security control is being used when restoring backups from a secure system after a ransomware attack?
  • Which method is essential for managing changes in software development?
  • What indicator of compromise should be classified when a scheduled script runs multiple times in one hour?
  • What does "zero-trust" architecture primarily focus on?
  • Which hashing algorithm is recommended for secure file validation?
  • What type of solution is Yasmine's company using when submitting the Windows BitLocker key to a central repository?
  • What information is phishing not typically aimed at acquiring?
  • What solution can be used to make password hashes more resistant to cracking without changing user habits?
  • What practice can help prevent DLL injection vulnerabilities?
  • What change management process will help ensure the most current version of each component in an application is deployed?
  • What security issue is associated with an open TCP port 23?
  • Which of the following is NOT a common concern related to hardware vendor supply chains?
  • What best describes the scenario where employees receive a call about a survey that is suspected to be a scam?
  • What is the main purpose of using encryption protocols?
  • Which malware provides unauthorized administrative access to a system?
  • How does a honeynet support an organization's cyber defense strategy using deception technologies?
  • Which of the following is not considered a common vulnerability in cryptography?
  • What does the creation of a new SSL certificate imply after a compromise?
  • What indicator of compromise is indicated by logging in from two extensive geographical locations in a short time frame?
  • Which protocol is most commonly associated with credential relaying attacks?
  • Which activity typically does NOT result in a need to update policies and procedures?
  • What does the term “attack surface” refer to in information security?
  • Which term describes the unauthorized access to a network through compromising a system's security?
  • Which authentication service uses ticket-granting tickets as part of its process?
  • What role does a subordinate CA play in a certificate authority (CA) hierarchy?
  • What type of malware is characterized by sending private workstation information to a central server?
  • What type of obfuscation option should Carol select to refer to data without exposing it?
  • What technique enhances privacy by concealing parts of sensitive data during processing?
  • What are microwave sensors most frequently used to detect in organizations?
  • What hardening technique can reduce the attack surface and ongoing patch management for a laptop?
  • What kind of flaw allows a user to try to put a 64-bit value into a 4-byte integer variable?
  • Which group is typically not a common stakeholder for an application upgrade in a change management process?
  • Which type of attack is characterized by an attacker exploiting disclosed but unpatched vulnerabilities?
  • Which of the following is not considered a best practice to defend against business email compromise (BEC) attacks?
  • What does 'smishing' stand for?
  • What term describes the function of digital signatures concerning the ownership of a private key?
  • What information can be accessed by Dennis in an on-path attack?
  • What is the focus of a gap analysis within a security framework?
  • What should a person do to verify if they are experiencing a DoS attack in a cloud environment?
  • What type of social engineering attack was Jen a victim of when receiving an email from a look-alike account?
  • Which of the following is not a common type of database encryption?
  • What type of attack is most commonly associated with successful replay attacks?
  • What does the use of a honeyfile help organizations achieve during malicious attempts?
  • What hardening technique can provide maximum protection for a laptop connecting to untrusted networks?
  • If a Linux system's /etc directory is given 777 permissions, how is this reported?
  • What is required to restore functionality to a critical server that crashed after applying new patches?
  • What term describes the attack where unwanted text messages are received in crowded areas and cease when leaving?
  • What identifies a successful execution of a cyber attack using compromised hosts to gain further access?
  • In public key encryption, which key is used to decrypt information sent by another individual?
  • Which of the following is not typically a threat vector associated with SMS-based attacks?
  • Which term describes the processes an organization uses for each change to ensure consistency?
  • What is the primary goal of Trojan malware?
  • What kind of security threat does malware posing as legitimate software represent?
  • Which type of solution should be selected for managing secrets in a cloud-hosted environment?
  • What type of attack involves sending spoofed DNS requests to create larger responses to another target?
  • What type of attack involves sending more data to a variable than it can hold?
  • What is the common term for accessing a system using stolen authentication tokens or credentials?
  • Which of the following attacks requires monitoring for unusual behavior as a preventative measure?
  • Which of the following is an attack that seeks to manipulate a website based on the site's trust in an authenticated user?
  • What type of control does creating a new CSR and securing a new private key after a compromise represent?
  • What does Ujamaa aim to analyze in his gap analysis regarding security?
  • What attack technique is characterized by multiple accounts using the same set of passwords?
  • Using a tool like git is associated with which critical change management process?
  • What type of malware allows unauthorized remote access to a computer and is typically bundled with legitimate software?
  • What type of attack involves attempting a series of password guesses with minor variations?
  • What type of attack utilizes deceptive techniques to extract sensitive information from a user?
  • What type of malware is characterized by disguising itself within seemingly harmless files to access a system?
  • Which of the following terms describes a breach that occurs when malicious firmware is installed?
  • What is most likely occurring if an identified file on a computer cannot be detected by multiple antivirus programs?
  • What risk should be identified when purchasing network devices from a gray market supplier?
  • When Frank connects to an unsecured hotel network, which of the following should he be on the lookout for?
  • What should Sally create to handle the possibility of a failed change in her change management process?
  • If Valerie knows a system is compromised, what action should she take to prevent further impact to the network?
  • When an AI model provides citations that do not exist, how is this categorized?
  • What is the purpose of password salting?
  • What is a crucial element in evaluating threats that may affect organizational infrastructure?
  • Which term describes a phone call where scammers pose as legitimate entities to obtain personal information?
  • What attack targets a specific group of users by infecting websites they commonly visit?
  • What is a key advantage of having a well-documented change management process?
  • What concern does Lucia have regarding open source software provided by a third-party vendor?
  • What is not a common isolation or segmentation option for protecting a legacy platform?
  • Which of the following is not a common post-change activity found in change management practices?
  • Which of the following controls is typically the most expensive to implement?
  • What cloud vulnerability should an organization worry about if system administrators do not effectively manage security groups in AWS?
  • What type of error might occur if a web application mishandles multithreading?
  • What type of attack does a threat actor typically use when attempting to exploit a zero-day vulnerability?
  • What type of network traffic information can be recovered from devices that do not use WPA-2 or WPA-3?
  • What can a root SSL (TLS) certificate do?
  • What is the currently recommended encryption algorithm for secure data protection?
  • To protect sensitive data during file transfers, what type of security solution is most effective?
  • What is the most likely motivation for an internal threat actor?
  • What type of control is suggested when IoT devices become unsupported due to the manufacturer going out of business?
  • What primary purpose does a honeypot serve in network security?
  • If the hardening guidelines allow only encrypted management interfaces, which port should be disabled from an nmap scan showing ports 22, 80, and 443?
  • Which feature is not commonly included in version control systems designed for software source code?
  • What two files are commonly attacked using offline brute-force attacks?
  • What type of data obfuscation is in use when credit card numbers are displayed partially masked?
  • Which authentication option is best suited for system authentication using an AAA system?
  • What control type describes Ben's data loss prevention (DLP) tool that flags certain data types?
  • What role does the policy engine play in a zero-trust environment?
  • What should be done if malware is detected on a system during a security audit?
  • Which process helps to ensure the integrity of a system during software updates?
  • Which method allows for the tracking and management of changes in system configurations?
  • What is the main purpose of salting in hashing?
  • What is the primary purpose of creating an allow list in a network environment?
  • In the context of cybersecurity, what does AAA stand for?
  • What step should immediately follow after restarting an application post-patching?
  • What is Jared's best option to remediate a Linux kernel vulnerability identified by CVE-2018-5703?
  • Which of the following is not a major concern related to downtime caused by patching and system updates?
  • What issue is Selah attempting to address by asking about a vendor's history and existing clients?
  • In a typical implementation of record-level encryption, how many keys does Gary use for his database?
  • Which of the following is not a step taken when entering a transaction in a blockchain?
  • What type of cyber attack is characterized by a link in an email that appears legitimate but is designed to deceive users?
  • What should Drew's first step be to address a Windows vulnerability with a CVE rating of 9.6?
  • Which component is not typically used for automated data and event-driven policy management in a zero-trust environment?
  • During which phase of change management do stakeholders typically review planned changes?
  • After a security breach, what type of control is removing malicious software from a server classified as?
  • What does Derrick need from the sender to validate a digitally signed message sent with asymmetric encryption?
  • What common tool is used for documenting changes in a change management process?
  • What option provides the most secure salting solution for hashing?
  • What key step is required for an amplified DDoS attack?
  • What password hash security technique is indicated when two users have the same password but different hashes?
  • What process is used to review control objectives to assess if they meet established guidelines?
  • Which type of attack leverages social engineering in voice communication?
  • When Damian issues the command to create a certificate signing request on his Linux server, what has he done?
  • Which operating system is commonly associated with secure enclaves?
  • What concern should Jake have regarding a cryptographic downgrade attack reported by his vulnerability scanner?
  • What technique is primarily associated with image-based threat vectors?
  • What is the primary concern for security professionals regarding legacy hardware?
  • When are concurrent sessions considered indicators of compromise?
  • What should be the first action to secure the web management interfaces of networked printers?
  • What type of control is implemented when a user's password is reset immediately following a phishing incident?
  • What concern might system administrators express regarding the deployment of a host-intrusion prevention system (HIPS) that uses third-party threat feeds?
  • What term describes the situation where two different files compute to the same hash value?
  • What is a common issue addressed by compensating controls?
  • Which type of sensor is commonly used to detect footsteps?
  • Which of the following is not a common firmware defense mechanism for protecting against exploits?
  • In the context of access control measures, what is a vestibule typically used for?
  • What is the main risk associated with full-disk encryption if the key is not adequately managed?
  • What two key features define blockchain ledgers?
  • What type of security tool should Tracy deploy to protect systems from network attacks based on various detection methods?
  • After a breach, what should Selah do if her organization's private keys were exposed?
  • What is the primary difference between agent client-based and agentless software deployments?
  • In a zero trust model, what is a primary concern regarding network security?
  • What does policy-driven access control require to function effectively?
  • Which of the following statements is not true for a secure cryptographic hash system?
  • Which of the following is not a common factor in adaptive authentication for zero trust?
  • What is the type of obfuscation called when additional information is hidden within an image?
  • What advantage do microwave sensors have over infrared sensors?
  • Which of the following is NOT a common reason to implement key escrow?
  • What measurement is critical to assess the success of a change management process?
  • What is a common method of accessing networks by impersonating legitimate access points?
  • What type of control has Frank deployed by configuring an access control list for specific IP addresses?
  • If Olivia discovers data on a newly provisioned virtual machine, what issue has she likely encountered?
  • Which type of threat actor is typically the most sophisticated?
  • What is considered a corrective control for a compromised system?
  • What strategy can be utilized to mitigate the risks of using open source software in an organization?
  • What type of effort do postings from foreign agents during a political campaign represent?
  • What type of certificate is represented by *.example.com, and why is it used?
  • Which term describes a web application vulnerability that allows attackers to escalate privileges?
  • What likely occurred if domain information was changed without the domain expiring?
  • Which of the following is an essential component of a backout plan?
  • To effectively prevent downgrade attacks on Apache web servers, what should Casey do?
  • Which method is NOT effective in preventing server-side request forgery (SSRF) attacks?
  • To mitigate session hijacking, what technology can be utilized?
  • What describes the attack where legitimate domains point to harmful IP addresses?
  • What component of a zero-trust architecture uses rules based on security status and threat data for access control?
  • Which change management process does not commonly involve stakeholders outside of the IT organization?
  • What technology is record-level encryption most commonly associated with?
  • Which group of threat actors is most likely to engage in malicious activities for financial gain?
  • What is not a common solution to harden workstations against malware attacks?
  • What common hardening checklist item should be validated first when securing a consumer-grade wireless router?
  • What wireless network security protocol is considered the most secure?
  • What type of malware is likely associated with a freeware stock trading application that caused spyware on a sales manager's computer?
  • Which of the following best characterizes the purpose of hashing logs in IT security?
  • Which of these threats is least likely to be a common email threat vector?
  • What access control solution requires both something a user knows and something they possess?
  • What control type best describes Murali's file integrity monitoring tool?
  • What type of encryption solution should be used to protect files both in motion and at rest, with granular per-user security?
  • What is the purpose of third-party certificates for cloud service customers?
  • Which authentication framework is most commonly used for wireless networks?
  • If a certificate is listed on the CA's certificate revocation list (CRL), which of the following is NOT a possible reason?
  • Which threat actor is most likely to be associated with an advanced persistent threat (APT)?
  • What device can optimize security when storing cryptographic keys in cloud environments?
  • What is Ryan's best option to verify that no unnecessary ports and services are available on his systems without using a vulnerability scanner?
  • What technique will work best with a data loss prevention tool to identify data exfiltration?
  • What is the best method for detecting a broad range of physical attacks?
  • What type of attack does Adam's 6-digit PIN aim to prevent in an RFID system?
  • What technique can be used to prevent impersonation attacks against a helpdesk?
  • What type of attack is characterized by malware flooding a network with packets to an external target?
  • Which of the following is a common characteristic of a zero-day exploit?
  • What is the main downside of using consumer-grade routers in a business setting?
  • What built-in capability can be used to control network traffic based on port, protocol, and IP address?
  • Where should Zoie check for concurrent session usage in her web application?
  • When Valerie receives an authentication prompt in a zero-trust architecture, what component is she interacting with?
  • What is the most common concern when managing dependencies in change management?
  • A former employee threatens to release sensitive data unless a payment is made. How should this be categorized?
  • What do unusual outbound network traffic and geographical irregularities indicate in threat intelligence?
  • Which type of attack involves injecting malicious JavaScript into a text area?
  • What technique is most helpful for risk managers to compare existing security controls to best practice controls?
  • What solution is best suited for identifying and alerting on issues in a large-scale environment?
  • What does Eric need to deliver a compliant malicious update for an organization's application using public key encryption?
  • What is a significant risk associated with using self-signed certificates in a testing environment?
  • What type of malware is identified when a user's files are encrypted and a ransom is demanded for decryption?
  • What is the specialized portion of the Apple system's SoC that stores keys and biometric information called?
  • What type of deception technology involves planting documents that appear to contain sensitive information?
  • What action should security administrators take to find indicators of malicious activity after multiple failed login attempts?
  • What indicator suggests that a workstation may have encountered an on-path attack?
  • What is the most effective way for Mackenzie to prevent firmware vulnerabilities?
  • What is the purpose of installing endpoint protection software in an organization?
  • What type of access badge technology is typically used with a wireless reader?
  • What is one of the common security-related reasons for implementing version control?
  • Which of the following is not a common transport encryption protocol?
  • Which type of control would be considered a deterrent for physical security issues?
  • Which data obfuscation technique uses a lookup table to match data to a randomly generated value?
  • What kind of virtualization attack can encryption of storage volumes prevent when they are created?
  • How best describes unskilled attackers in a security context?
  • What type of control is additional exterior lighting considered in terms of security upgrades?
  • In a physical penetration test, what must an individual accomplish to bypass an access control vestibule?
  • Which type of device is often used to monitor access and enforce security policies in an organization?
  • Which term describes unauthorized devices or applications that disrupt an organization's IT security?
  • What attack involves unauthorized access to data from a Bluetooth connection?
  • Microsoft's Intune and tools like Jamf are primarily used for which mitigation functionality?
  • Who is the most likely threat actor if a website is defaced with messages denouncing the company's policies?
  • What technique will provide the greatest assurance against unauthorized access with a stolen or cloned access badge?
  • What endpoint hardening technique is best suited to preventing data breaches from lost devices?
  • What type of device is described by a PCIe adapter card containing a crypto-processor?
  • Which protocol can be used to check if a certificate has been revoked?
  • What best describes malware that spreads rapidly through network services without user interaction?
  • Which method is commonly utilized for ensuring secure wireless network authentication?
  • What best describes the action needed to handle someone who threatens to release sensitive data?
  • What is a common security concern related to legacy hardware?
  • What important encryption challenge does asymmetric encryption help with by using public keys?
  • What characterizes ransomware?
  • Which of the following best describes a third-party IT support’s role in managing cloud services?
  • What type of sensor is best suited for detecting intruders in an open office environment?
  • What is a common technique used by organized crime in the context of cyber threats?
  • In risk management, what is the purpose of implementing corrective controls?
  • Which type of attack does tailgating typically refer to?
  • What type of social engineering attack was targeted at Andrea when the caller impersonated her bank?
  • What key is needed by an individual to digitally sign a file?
  • Which group is not typically part of the impact analysis during a large-scale change?
  • What is a primary benefit of implementing directives in an organization’s security framework?
  • Which of the following is a primary goal of change management?
  • What common security control can be placed at the network boundary to prevent unauthorized access?
  • What type of DNS attack is indicated by an administrator's workstation being compromised to change DNS information?
  • What is the main risk of secondary installations of software, like shareware, on a system?
  • What term describes the attack where a domain name is registered with a spelling that is slightly different from a legitimate one?
  • Which term describes the approach to mitigating risks for vulnerabilities in systems that cannot be directly patched?
  • In what scenario would a rollback plan be necessary in change management?
  • Which security strategies are best for limiting what software can run on company devices?
  • In web logs, what indicates a potential directory traversal attack?
  • If an incorrect transaction is entered in a blockchain, what happens?
  • To check for impossible travel situations for logins on a Linux server, which log should be examined?
  • What practice can Amanda implement to minimize issues related to software dependencies during a change?
  • What type of attack does Jack's method of redirecting visitors on an often-visited site represent?
  • What indicator is commonly associated with a denial-of-service attack?
  • During a port scan, which type of attack is likely associated with a service running on TCP port 1433?
  • What type of physical security solution should be implemented to prevent tailgating attacks?
  • What technique is most effective in preventing resource reuse concerns for storage in a virtual environment?
  • Which of the following is an example of a preventive control?
  • What type of tool is used when monitoring for a file on an isolated network segment?
  • What must users provide to authenticate individuals in an AAA implementation?
  • What best describes the advanced ongoing attacks sponsored by a government?
  • What type of attack is a company facing when dealing with negative social media posts presenting incorrect information?
  • What is commonly used in a distributed denial-of-service (DDoS) attack?
  • What type of control is applied when a device uses 128-bit keys instead of the required 256-bit keys due to performance issues?
  • What is a significant benefit of implementing an allowlist for software restrictions?
  • What term is used to describe the secure module that validates each signed boot stage during the boot process?
  • What type of threat is presented when a staff member installs a remote-access Trojan on a server?
  • What type of control is characterized as a policy or procedure?
  • Which element of the CIA triad is Theresa concerned about due to potential maintenance delays?
  • Which threat vector is greatly affected by the handling of autorun.inf files in Windows?
  • When is data on a drive that uses full-disk encryption at the greatest risk?
  • What technique is used to inject code into memory used by another process in Windows?
  • Which of the following is a common indicator of a phishing attack?
  • What type of attack should Kathleen investigate if her IPS flags traffic with repeated session IDs from different IP addresses?
  • What is the recommended method for validating the integrity of a file?
  • What type of solution should Helen use to prevent staff from sideloading applications on their Android devices?
  • Which of the following is not considered a managerial control?
  • What should an organization do when notified that its hardware is considered end-of-life?
  • Which method is most likely to help Megan assess the impact of a change in her change management process?
  • Which of the following is not typically used to detect intruders in a sensor system?
  • What term describes an unofficial server set up by employees due to unmet needs?
  • In security terms, what is the primary function of video surveillance in a facility?
  • What is a logic bomb?
  • How can Jack ensure the integrity of a file when sending it via email to a new recipient?
  • Which type of analysis compares the effectiveness of current controls against desired objectives?
  • What is true about a decentralized blockchain?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy