PAPER 2026 QUESTIONS WITH
ANSWERS GRADED A+
◍ You suspect that an attacker has been using beaconing intrusion in your
network, and you want to detect that type of activity.Which of the following
is a common method for detecting beaconing activity in a network?.
Answer: Capturing metadata about all the sessions established or attempted
and analyzing it for patterns that constitute suspicious activity.
◍ What are the three provincial levels of court?.
Answer: Provincial court, Court of Appeal, Court of Queens Bench.
◍ A company employee has recently added a browser extension on their
company laptop to help organize the data on their computer. However, the
employee has noticed something strange going on with their data, and you
suspect that the extension is maliciously stealing the employee's data and
transferring it to an attacker's server.Which of the following data exfiltration
methods is being used?.
Answer: Social media
◍ As a security analyst for a large financial advisory company, you are
constantly looking for ways to streamline your security operations.For
example, you want to continuously monitor threat intelligence feeds to
automatically detect new threats and indicators of compromise (IoC) in
real-time and without manual intervention.Which of the following security
processes would you use to accomplish this goal?.
Answer: Orchestrate threat intelligence data.
◍ Which of the following is a potential security risk associated with
implementing a single sign-on (SSO) solution in a security operations
, environment?.
Answer: Increased risk of phishing attacks
◍ An organization is reviewing its incident response plan and wants to
improve its overall security posture by streamlining the authentication
process for its employees during a security incident.Which of the following
approaches can help achieve this goal without compromising security?.
Answer: Federation
◍ In a dispute situation a security officer should....
Answer: observe and await the arrival of police.
◍ You are checking the registry on a Windows server, as you suspect an
autorun key has been compromised.Which of the following are keys you
should check to verify that the autorun keys are still secure? (Select two.).
Answer: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceHKLM
◍ Threat actors can be divided into different types based on their methods and
motivations.Which type of hacker works for a government and attempts to
gain top-secret information by hacking other governments' devices?.
Answer: Nation-state
◍ Which of the following BEST describes the purpose of CVE?.
Answer: A list of standardized identifiers for known software vulnerabilities
and exposures.
◍ When writing 6:30 p.m. in your report, you should write.
Answer: 1830
◍ What are fundamental freedoms?.
Answer: Freedom of conscience and religionFreedom of thought, belief,
opinion and expression, including freedom of the press and other media of
communicationFreedom of peaceful assemblyfreedom of association
◍ Discrimination is.
Answer: Treating some people better or worse than others.Discrimination is
Illegal