NDE CERTIFICATION QUESTIONS (CYBERQ UPDATED
ACTUAL QUESTIONS AND CORRECT ANSWERS
Question:
1. Clark, a network security specialist, was assigned to secure an organization's network. Clark
implemented a network defense approach that can tackle network attacks such as DoS and DDoS and
includes security monitoring methods such as IDS, SIMS, TRS, and IPS. Which of the following network
defense approaches did Clark implement in the above scenario?
Answer:
Reactive Approach
Question:
2. David, a new employee at an organization, received a call from HR on one Saturday (weekend) to
upload his certificates on the shared drive. David connects to the corporate network to access the drive
online from his residence. Which of the following information assurance principles was demonstrated in
the above scenario?
Answer:
Availability
Question:
3. Which of the following information assurance principles ensures that a party in a communication cannot
deny sending the message?
Answer:
Nonrepudiation
Question:
4. Abey, a software developer, is working on a prestigious project. John, a colleague of Abey, is a
disgruntled employee in the same company. John, with malicious intent, decides to access confidential
information regarding the project, which Abey is sharing with the higher management. For this purpose, he
uses sniffing programs and captures the traffic originating from Abey's system. As a result, he is able to
obtain crucial project details. Identify the information assurance principle on which John has performed
the attack in the above scenario.
Answer:
Confidentiality
Question:
5. Which of the following network defense techniques examines the causes for attacks in networks by
using fault-finding mechanisms, security forensics techniques, and post-mortem analysis?
Answer:
Retrospective Approach
Question:
6. Which of the following components of technical security controls protects the information passing
through the network and preserves the privacy and reliability of the data?
,Answer:
Encryption and Protocols
Question:
7. Which of the following components of technical network security controls examines the network
devices and identifies weaknesses in the network?
Answer:
Auditing
Question:
8. Bob has recently purchased a new laptop and enabled all the required security controls. The next day
while verifying whether all the security mechanisms were enabled on his system or not, he found that the
"firewall" was disabled. He immediately enabled the firewall option on his laptop. Identify the component
of technical security controls that Bob enabled to protect his laptop from network-related threats.
Answer:
Network security devices
Question:
9. Clark, a thief, escaped from the civil forces and tried to enter the nearest company's premises. The
security systems installed at the entrance identified the unauthorized entry into the organization's premises
and triggered an alarm to activate security teams. Which of the following types of security control system
triggered an alarm in the above scenario when the unauthorized intrusion attempt was made?
Answer:
Detection Controls
Question:
10. James, a network specialist joined an organization. He was provided with administrator privileges,
through which he can access the files and servers and perform administrative activities. Which of the
following information assurance principles authorizes James to access the server or system files?
Answer:
Authentication
Question:
11. Which of the following information assurance principles ensures that the information is not modified
or tampered by any unauthorized parties?
Answer:
Integrity
Question:
12. TACACS+ authentication involves the following steps:
1.) The router and the user exchange authentication parameters
2.) The server responds with the REPLY message based on the provided information
3.) A user initiates the connection for authentication
4.) The router sends the parameters to the server for authentication I dentify the correct order of steps
involved.
Answer:
3-1-4-2
, Question:
13. Which of the following protocols provides centralized authentication, authorization, and accounting
(AAA) for remote access servers to communicate with a central server?
Answer:
RADIUS
Question:
14. Which of the following protocols is an application layer protocol used for sending digitally signed and
encrypted email messages?
Answer:
S/MIME
Question:
15. Margaret, a system administrator, regularly administers the devices connected to the organizational
network. She found that certain devices are vulnerable to sniffing attacks. To protect the device from such
attacks, Margaret employed a protocol that encrypts the entire communication between the client and the
server, including the user's password, which protects it from sniffing attacks. Identify the protocol
employed by Margaret in the above scenario.
Answer:
TACACS+
Question:
16. Benson, a security professional plans to implement more stringent security practices in his
organization. For this reason, he uses a protocol that provides cryptographic security by encrypting the
email messages and digitally signing them to ensure confidentiality, integrity, and nonrepudiation of
messages. Which of the following protocols was employed by Benson in the above scenario?
Answer:
S/MIME
Question:
17. James, a software engineer, is working from a remote location and connects his laptop to the
company's server through a VPN. The company has implemented a security protocol that provides
authentication as well as encryption of the data passing through the VPN tunnels. Identify the network
security protocol implemented by the company for secure communication.
Answer:
IPsec
Question:
18. Sally, a security professional, implemented a protocol for authenticating requests in computer
networks. The protocol implemented by Sally is based on the client-server model, and uses encryption
technology and a "ticket" mechanism to prove the identity of a user on a non-secure network. Identify the
protocol implemented by Sally in the above scenario.
Answer:
Kerberos
ACTUAL QUESTIONS AND CORRECT ANSWERS
Question:
1. Clark, a network security specialist, was assigned to secure an organization's network. Clark
implemented a network defense approach that can tackle network attacks such as DoS and DDoS and
includes security monitoring methods such as IDS, SIMS, TRS, and IPS. Which of the following network
defense approaches did Clark implement in the above scenario?
Answer:
Reactive Approach
Question:
2. David, a new employee at an organization, received a call from HR on one Saturday (weekend) to
upload his certificates on the shared drive. David connects to the corporate network to access the drive
online from his residence. Which of the following information assurance principles was demonstrated in
the above scenario?
Answer:
Availability
Question:
3. Which of the following information assurance principles ensures that a party in a communication cannot
deny sending the message?
Answer:
Nonrepudiation
Question:
4. Abey, a software developer, is working on a prestigious project. John, a colleague of Abey, is a
disgruntled employee in the same company. John, with malicious intent, decides to access confidential
information regarding the project, which Abey is sharing with the higher management. For this purpose, he
uses sniffing programs and captures the traffic originating from Abey's system. As a result, he is able to
obtain crucial project details. Identify the information assurance principle on which John has performed
the attack in the above scenario.
Answer:
Confidentiality
Question:
5. Which of the following network defense techniques examines the causes for attacks in networks by
using fault-finding mechanisms, security forensics techniques, and post-mortem analysis?
Answer:
Retrospective Approach
Question:
6. Which of the following components of technical security controls protects the information passing
through the network and preserves the privacy and reliability of the data?
,Answer:
Encryption and Protocols
Question:
7. Which of the following components of technical network security controls examines the network
devices and identifies weaknesses in the network?
Answer:
Auditing
Question:
8. Bob has recently purchased a new laptop and enabled all the required security controls. The next day
while verifying whether all the security mechanisms were enabled on his system or not, he found that the
"firewall" was disabled. He immediately enabled the firewall option on his laptop. Identify the component
of technical security controls that Bob enabled to protect his laptop from network-related threats.
Answer:
Network security devices
Question:
9. Clark, a thief, escaped from the civil forces and tried to enter the nearest company's premises. The
security systems installed at the entrance identified the unauthorized entry into the organization's premises
and triggered an alarm to activate security teams. Which of the following types of security control system
triggered an alarm in the above scenario when the unauthorized intrusion attempt was made?
Answer:
Detection Controls
Question:
10. James, a network specialist joined an organization. He was provided with administrator privileges,
through which he can access the files and servers and perform administrative activities. Which of the
following information assurance principles authorizes James to access the server or system files?
Answer:
Authentication
Question:
11. Which of the following information assurance principles ensures that the information is not modified
or tampered by any unauthorized parties?
Answer:
Integrity
Question:
12. TACACS+ authentication involves the following steps:
1.) The router and the user exchange authentication parameters
2.) The server responds with the REPLY message based on the provided information
3.) A user initiates the connection for authentication
4.) The router sends the parameters to the server for authentication I dentify the correct order of steps
involved.
Answer:
3-1-4-2
, Question:
13. Which of the following protocols provides centralized authentication, authorization, and accounting
(AAA) for remote access servers to communicate with a central server?
Answer:
RADIUS
Question:
14. Which of the following protocols is an application layer protocol used for sending digitally signed and
encrypted email messages?
Answer:
S/MIME
Question:
15. Margaret, a system administrator, regularly administers the devices connected to the organizational
network. She found that certain devices are vulnerable to sniffing attacks. To protect the device from such
attacks, Margaret employed a protocol that encrypts the entire communication between the client and the
server, including the user's password, which protects it from sniffing attacks. Identify the protocol
employed by Margaret in the above scenario.
Answer:
TACACS+
Question:
16. Benson, a security professional plans to implement more stringent security practices in his
organization. For this reason, he uses a protocol that provides cryptographic security by encrypting the
email messages and digitally signing them to ensure confidentiality, integrity, and nonrepudiation of
messages. Which of the following protocols was employed by Benson in the above scenario?
Answer:
S/MIME
Question:
17. James, a software engineer, is working from a remote location and connects his laptop to the
company's server through a VPN. The company has implemented a security protocol that provides
authentication as well as encryption of the data passing through the VPN tunnels. Identify the network
security protocol implemented by the company for secure communication.
Answer:
IPsec
Question:
18. Sally, a security professional, implemented a protocol for authenticating requests in computer
networks. The protocol implemented by Sally is based on the client-server model, and uses encryption
technology and a "ticket" mechanism to prove the identity of a user on a non-secure network. Identify the
protocol implemented by Sally in the above scenario.
Answer:
Kerberos