Cyber OPS exam study guide
QUESTIONS AND VERIFED
CRRECT ANSWERS GRADED
A+ LATEST 2026-2027 100%
GUARANTEED PASS
What two assurances does digital signing provide about code that is downloaded from the
Internet? - CORRECT ANSWER-The code has not been modified since it left the software
publisher
The code is authentic and is actually sourced by the publisher.
Which measure can a security analyst take to perform effective security monitoring against
network traffic encrypted by SSL technology? - CORRECT ANSWER-Require remote access
connections through IPsec VPN
An administrator is trying to develop a BYOD security policy for employees that are bringing a
wide range of devices to connect to the company network. Which three objectives must the
BYOD security policy address? (Choose three.) - CORRECT ANSWER-Rights and activities
permitted on the corporate network must be defined.
Safeguards must be put in place for any personal device being compromised.
The level of access of employees when connecting to the corporate network must be defined.
,Match the security policy with the description. - CORRECT ANSWER-*Acceptable use
policy(AUP) - identifies network applications and uses that are acceptable to the organization
*Identification and authentication Policy - specifies authorized persons that can have access to
network resources and identity verification procedures
*Network Maintenance Policy - specifies network device operating systems and end user
application update procedures.
*Network Access Policy - identifies how remote users can access a network and what is
accessible via remote connectivity
What type of attack targets an SQL database using the input field of a user? - CORRECT
ANSWER-SQL injection
What are two characteristics of Ethernet MAC addresses? (Choose two.) - CORRECT ANSWER-
They are expressed as 12 hexadecimal digits.
They are globally unique.
A user calls to report that a PC cannot access the internet. The network technician asks the user
to issue the command ping 127.0.0.1 in a command prompt window. The user reports that the
result is four positive replies. What conclusion can be drawn based on this connectivity test? -
CORRECT ANSWER-The TCP/IP implementation is functional.
What characterizes a threat actor? - CORRECT ANSWER-They always try to cause some harm to
an individual or organization.
, A computer is presenting a user with a screen requesting payment before the user data is
allowed to be accessed by the same user. What type of malware is this? - CORRECT ANSWER-a
type of ransomware
Which ICMPv6 message type provides network addressing information to hosts that use SLAAC?
- CORRECT ANSWER-router advertisement
Which tool included in the Security Onion is a series of software plugins that send different
types of data to the Elasticsearch data stores? - CORRECT ANSWER-Beats
Which two types of unreadable network traffic could be eliminated from data collected by
NSM? - CORRECT ANSWER-IPsec traffic
SSL traffic
Which core open source component of the Elastic-stack is responsible for accepting the data in
its native format and making elements of the data consistent across all sources? - CORRECT
ANSWER-Elasticsearch
In the NIST incident response process life cycle, which type of attack vector involves the use of
brute force against devices, networks, or services? - CORRECT ANSWER-attrition
What is a characteristic of CybOX? - CORRECT ANSWER-It is a set of standardized schemata for
specifying, capturing, characterizing, and communicating events and properties of network
operations.
What are two ways that ICMP can be a security threat to a company? - CORRECT ANSWER-by
collecting information about a network
by providing a conduit for DoS attacks
QUESTIONS AND VERIFED
CRRECT ANSWERS GRADED
A+ LATEST 2026-2027 100%
GUARANTEED PASS
What two assurances does digital signing provide about code that is downloaded from the
Internet? - CORRECT ANSWER-The code has not been modified since it left the software
publisher
The code is authentic and is actually sourced by the publisher.
Which measure can a security analyst take to perform effective security monitoring against
network traffic encrypted by SSL technology? - CORRECT ANSWER-Require remote access
connections through IPsec VPN
An administrator is trying to develop a BYOD security policy for employees that are bringing a
wide range of devices to connect to the company network. Which three objectives must the
BYOD security policy address? (Choose three.) - CORRECT ANSWER-Rights and activities
permitted on the corporate network must be defined.
Safeguards must be put in place for any personal device being compromised.
The level of access of employees when connecting to the corporate network must be defined.
,Match the security policy with the description. - CORRECT ANSWER-*Acceptable use
policy(AUP) - identifies network applications and uses that are acceptable to the organization
*Identification and authentication Policy - specifies authorized persons that can have access to
network resources and identity verification procedures
*Network Maintenance Policy - specifies network device operating systems and end user
application update procedures.
*Network Access Policy - identifies how remote users can access a network and what is
accessible via remote connectivity
What type of attack targets an SQL database using the input field of a user? - CORRECT
ANSWER-SQL injection
What are two characteristics of Ethernet MAC addresses? (Choose two.) - CORRECT ANSWER-
They are expressed as 12 hexadecimal digits.
They are globally unique.
A user calls to report that a PC cannot access the internet. The network technician asks the user
to issue the command ping 127.0.0.1 in a command prompt window. The user reports that the
result is four positive replies. What conclusion can be drawn based on this connectivity test? -
CORRECT ANSWER-The TCP/IP implementation is functional.
What characterizes a threat actor? - CORRECT ANSWER-They always try to cause some harm to
an individual or organization.
, A computer is presenting a user with a screen requesting payment before the user data is
allowed to be accessed by the same user. What type of malware is this? - CORRECT ANSWER-a
type of ransomware
Which ICMPv6 message type provides network addressing information to hosts that use SLAAC?
- CORRECT ANSWER-router advertisement
Which tool included in the Security Onion is a series of software plugins that send different
types of data to the Elasticsearch data stores? - CORRECT ANSWER-Beats
Which two types of unreadable network traffic could be eliminated from data collected by
NSM? - CORRECT ANSWER-IPsec traffic
SSL traffic
Which core open source component of the Elastic-stack is responsible for accepting the data in
its native format and making elements of the data consistent across all sources? - CORRECT
ANSWER-Elasticsearch
In the NIST incident response process life cycle, which type of attack vector involves the use of
brute force against devices, networks, or services? - CORRECT ANSWER-attrition
What is a characteristic of CybOX? - CORRECT ANSWER-It is a set of standardized schemata for
specifying, capturing, characterizing, and communicating events and properties of network
operations.
What are two ways that ICMP can be a security threat to a company? - CORRECT ANSWER-by
collecting information about a network
by providing a conduit for DoS attacks