Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 47 pages
Exam (elaborations)

CYSA CORRECT FINAL EXAM QUESTIONS AND ANSWERS SURE A.pdf

Document preview thumbnail
Preview 4 out of 47 pages

CYSA CORRECT FINAL EXAM QUESTIONS AND ANSWERS SURE A.pdf

Content preview

CYSA CORRECT FINAL EXAM QUESTIONS AND
ANSWERS SURE A+
✔✔What type of data can frequently be gathered from images taken on smartphones? -
✔✔EXIF

✔✔EXIF or Exchangeable Image Format data often includes ________________,
allowing the images to be mapped and identified to a specific device or type of camera.
- ✔✔location and camera data

✔✔Which Cisco log level is the most critical? - ✔✔0

✔✔Which Cisco log level is used for debugging information and is at the bottom of the
scale? - ✔✔7

✔✔During passive intelligence gathering, you are able to run netstat on a workstation
located at your target's headquarters. What information would you not be able to find
using netstat on a Windows system? - ✔✔Active IPX connections

✔✔Active TCP connections and the executables that are associated with them, and
route table information are all available via ____________. - ✔✔Netstat

✔✔Which type of Windows log is most likely to contain information about a file being
deleted? - ✔✔security logs

✔✔What organization manages the global IP address space? - ✔✔IANA

✔✔Before Ben sends a Word document, he uses the built-in Document Inspector to
verify that the file does not contain hidden content. What is this process called? -
✔✔metadata purging

,✔✔What type of analysis is best suited to identify a previously unknown malware
package operating on a compromised system? - ✔✔heuristic analysis

✔✔Which of the following is not a common DNS anti-harvesting technique? -
✔✔registering manually

✔✔CAPTCHAs, rate limiting, and blacklisting systems or networks that are gathering
data are all common ___________ techniques. - ✔✔anti-DNS harvesting

✔✔The __________ flag indicates a zone transfer in both the dig and host utilities. -
✔✔axfr

✔✔Which of the following is not a reason that penetration testers often perform packet
capture while conducting port and vulnerability scanning? - ✔✔plausible deniability

✔✔A ____________ is often used to document work, including the time that a given
scan or process occurred, and it can also be used to provide additional data for further
analysis. - ✔✔packet capture

✔✔What process uses information such as the way that a system's TCP stack responds
to queries, what TCP options it supports, and the initial window size it uses? - ✔✔OS
detection

✔✔What tool would you use to capture IP traffic information to provide flow and volume
information about a network? - ✔✔netflow

✔✔__________ provides information about local connections, which applications have
made them, and other useful local system information. - ✔✔netstat

✔✔What method used to replicate DNS information between DNS servers can also be
used to gather large amounts of information about an organization's systems? -
✔✔zone transfer

✔✔Selah believes that an organization she is penetration testing may have exposed
information about their systems on their website in the past. What site might help her
find an older copy of their website? - ✔✔The Internet Archive

✔✔During an information gathering exercise, Chris is asked to find out detailed
personal information about his target's employees. What is frequently the best place to
find this information? - ✔✔social media

,✔✔Which lookup tool provides information about a domain's registrar and physical
location? - ✔✔Whois

✔✔____________ will provide IP address or hostname information. - ✔✔nslookup

✔✔__________ will provide IPv4 and IPv6 information as well as email service
information. - ✔✔host

✔✔___________ attempts to identify the path to a remote host as well as the systems
along the route. - ✔✔traceroute

✔✔What federal law requires the use of vulnerability scanning on information systems
operated by federal government agencies? - ✔✔FISMA

✔✔Gary is the system administrator for a federal agency and is responsible for a variety
of information systems. Which systems must be covered by vulnerability scanning
programs? - ✔✔high-, moderate-, and low-impact systems

✔✔What tool can administrators use to help identify the systems present on a network
prior to conducting vulnerability scans? - ✔✔asset inventory

✔✔The asset inventory supplements automated tools with other information to detect
systems present on a network. The asset inventory provides critical information for
__________________. - ✔✔vulnerability scans

✔✔Tonya is configuring vulnerability scans for a system that is subject to the PCI DSS
compliance standard. What is the minimum frequency with which she must conduct
scans? - ✔✔quarterly

✔✔Which is not an example of a vulnerability scanning tool? - ✔✔snort

✔✔QualysGuard, Nessus, and OpenVAS are all examples of ___________________. -
✔✔vulnerability scanning tools

✔✔Bethany is the vulnerability management specialist for a large retail organization.
She completed her last PCI DSS compliance scan in March. In April, the organization
upgraded their point-of-sale system, and Bethany is preparing to conduct new scans.
When must she complete the new scan? - ✔✔immediately

✔✔Renee is configuring her vulnerability management solution to perform credentialed
scans of servers on her network. What type of account should she provide to the
scanners? - ✔✔read only

, ✔✔Jason is writing a report about a potential security vulnerability in a software product
and wishes to use standardized product names to ensure that other security analysts
understand the report. Which SCAP component can Jason turn to for assistance? -
✔✔common product enumeration

✔✔Common Product Enumeration (CPE) is a ________________ component that
provides standardized nomenclature for product names and versions. - ✔✔SCAP

✔✔Bill would like to run an internal vulnerability scan on a system for PCI DSS
compliance purposes. Who is authorized to complete one of these scans? - ✔✔any
qualified individual

✔✔Which type of organization is the most likely to face a regulatory requirement to
conduct vulnerability scans? - ✔✔government agency

✔✔What minimum level of impact must a system have under FISMA before the
organization is required to determine what information about the system is discoverable
by adversaries? - ✔✔high

✔✔What term describes an organization's willingness to tolerate risk in their computing
environment? - ✔✔risk appetite

✔✔If an organization is extremely ____________, it may choose to conduct scans more
frequently to minimize the amount of time between when a vulnerability comes into
existence and when it is detected by a scan. - ✔✔risk averse

✔✔Which one of the following factors is least likely to impact vulnerability scanning
schedules? - ✔✔staff availability

✔✔Barry placed all of his organization's credit card processing systems on an isolated
network dedicated to card processing. He has implemented appropriate segmentation
controls to limit the scope of PCI DSS to those systems through the use of VLANs and
firewalls. When Barry goes to conduct vulnerability scans for PCI DSS compliance
purposes, what systems must he scan? - ✔✔systems on the isolated network

✔✔Ryan is planning to conduct a vulnerability scan of a business critical system using
dangerous plug-ins. What would be the best approach for the critical scan? - ✔✔run the
scan in a test environment

✔✔Which one of the following activities is not part of the vulnerability management life
cycle? - ✔✔reporting

Document information

Uploaded on
July 10, 2026
Number of pages
47
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$16.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
EXAMCAFE
3.4
(19)
Sold
154
Followers
7
Items
26055
Last sold
7 hours ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions