Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

CNDA – CERTIFIED NETWORK DEFENSE ARCHITECT | FINAL EXAM PREP 2026/2027 | QUESTIONS AND 100% VERIFIED ANSWERS | 100% PASS GUARANTEE

Rating
-
Sold
-
Pages
27
Grade
A+
Uploaded on
15-07-2026
Written in
2025/2026

CNDA – CERTIFIED NETWORK DEFENSE ARCHITECT | FINAL EXAM PREP 2026/2027 | QUESTIONS AND 100% VERIFIED ANSWERS | 100% PASS GUARANTEE

Institution
CNDA – CERTIFIED NETWORK DEFENSE ARCHITECT
Course
CNDA – CERTIFIED NETWORK DEFENSE ARCHITECT

Content preview

CNDA – CERTIFIED NETWORK DEFENSE ARCHITECT | FINAL EXAM
PREP 2026/2027 | QUESTIONS AND 100% VERIFIED ANSWERS |
100% PASS GUARANTEE




CNDA – Certified Network Defense Architect


Q: What is the CIA Triad? ANSWER Confidentiality, Integrity, and Availability;
the core model for information security.
Q: What is Confidentiality? ANSWER The principle ensuring that data is
accessible only to authorized individuals.
Q: What is Integrity? ANSWER The principle ensuring that data is accurate,
complete, and has not been altered by unauthorized entities.
Q: What is Availability? ANSWER The principle ensuring that authorized users
have reliable and timely access to data and resources.
Q: What is Defense-in-Depth (DiD)? ANSWER A security strategy using multiple
layered security controls so if one fails, others still provide protection.
Q: What is a Threat? ANSWER Any potential danger that can exploit a
vulnerability to cause harm to an asset.
Q: What is a Vulnerability? ANSWER A weakness or flaw in a system, design, or
implementation that can be exploited by a threat.
Q: What is Risk? ANSWER The potential for loss or damage when a threat
exploits a vulnerability.
Q: What is the formula for Risk? ANSWER Risk = Threat × Vulnerability.
Q: What is an Asset? ANSWER Anything of value to an organization, including
hardware, software, data, and personnel.
Q: What is a Zero-Day vulnerability? ANSWER A flaw in software that is
unknown to the vendor and for which no patch is available.

,Q: What is Risk Assessment? ANSWER The process of identifying, evaluating,
and prioritizing risks to an organization's assets.
Q: What is Risk Mitigation? ANSWER Implementing controls to reduce the
likelihood or impact of a risk.
Q: What is Risk Transference? ANSWER Shifting the risk to a third party, such
as by purchasing cybersecurity insurance.
Q: What is Risk Acceptance? ANSWER Acknowledging the risk but choosing
not to take action, often because the cost of mitigation exceeds the potential
damage.
Q: What is Risk Avoidance? ANSWER Eliminating the risk entirely by ceasing
the activity that introduces the risk.
Q: What is an APT (Advanced Persistent Threat)? ANSWER A prolonged,
targeted cyberattack where an intruder gains access to a network and remains
undetected for a long time.
Q: What is the difference between a threat actor and an attack vector?
ANSWER A threat actor is the entity performing the attack (e.g., hacker); an
attack vector is the method or path used (e.g., phishing email).
Q: What is a Security Policy? ANSWER A high-level document that dictates
management's intent regarding security rules and objectives.
Q: What is a Security Standard? ANSWER Mandatory rules or requirements
that support the security policy (e.g., using AES-256 for encryption).
Q: What is a Security Guideline? ANSWER Recommended, optional actions
that provide flexibility in implementing standards.
Q: What is a Security Procedure? ANSWER Detailed, step-by-step instructions
for performing specific security tasks.
Q: What is Due Care? ANSWER The legal obligation to take reasonable steps to
protect others and their assets.
Q: What is Due Diligence? ANSWER The continual practice of maintaining and
verifying that security measures are effective over time.
Q: What is the difference between a vulnerability scan and a penetration test?
ANSWER A vuln scan identifies known weaknesses automatically; a pen test
actively attempts to exploit those weaknesses.

, Module 2: Network Security Controls, Protocols, & Appliances (26-50)
Q: What is a Firewall? ANSWER A network security device that monitors and
filters incoming and outgoing network traffic based on an organization's
security policies.
Q: What is a Packet Filtering Firewall? ANSWER A first-generation firewall that
checks the header of packets (IP, port, protocol) against ACL rules.
Q: What is a Stateful Inspection Firewall? ANSWER A firewall that keeps track
of the state of active connections and makes decisions based on the context of
the traffic.
Q: What is a Next-Generation Firewall (NGFW)? ANSWER A firewall that
integrates traditional stateful inspection with advanced features like deep
packet inspection, application awareness, and IPS.
Q: What is an IDS (Intrusion Detection System)? ANSWER A device or software
that monitors network traffic for malicious activity and alerts administrators
but does not block it.
Q: What is an IPS (Intrusion Prevention System)? ANSWER A device or
software that monitors network traffic, detects malicious activity, and actively
blocks it.
Q: What is a Signature-based IDS/IPS? ANSWER A system that detects attacks
by comparing traffic against a database of known threat patterns (signatures).
Q: What is an Anomaly-based IDS/IPS? ANSWER A system that establishes a
baseline of "normal" network behavior and alerts/blocks traffic that deviates
from it.
Q: What is a False Positive in IDS/IPS? ANSWER An alert generated when
benign traffic is mistakenly identified as malicious.
Q: What is a False Negative in IDS/IPS? ANSWER When malicious traffic passes
through the system without being detected or generating an alert.
Q: What is a Web Application Firewall (WAF)? ANSWER A firewall specifically
designed to protect web applications by filtering, monitoring, and blocking
HTTP traffic to and from a web application.

Written for

Institution
CNDA – CERTIFIED NETWORK DEFENSE ARCHITECT
Course
CNDA – CERTIFIED NETWORK DEFENSE ARCHITECT

Document information

Uploaded on
July 15, 2026
Number of pages
27
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

  • cnda
  • cnda
  • cnda
$16.19
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
luzlinkuz Chamberlain University
View profile
Follow You need to be logged in order to follow users or courses
Sold
1566
Member since
4 year
Number of followers
853
Documents
31332
Last sold
6 days ago

3.8

322 reviews

5
140
4
63
3
62
2
17
1
40

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions