Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 4 fuera de 54 páginas
Examen

COMPREHENSIVE INFORMATION SECURITY GUIDE WITH VERIFIED Q&A

Document preview thumbnail
Vista previa 4 fuera de 54 páginas

Antivirus - ANSWER What specific software can examine a computer for any infections as well as monetary computer activity and skin new documents That might contain a virus Flash memory - ANSWER What type of storage is used on mobile devices Service pack - ANSWER What is the name for a cumulative package of all patches and hot fixes as well as additional features up to a given point SDIO - ANSWER A Wi-Fi enabled micro SD card is an example of what type of device Bayesian Filtering - ANSWER What type of filtering software divides email messages that have been received into two piles, spam and non-spam and then analyzes every word in each email and determines how frequently a word occurs in the spam pile compared to the not spam pile Least functionality - ANSWER What security concept states a user should only be given the minimum set of permissions required to perform necessary task 50 Workstation OS - ANSWER What type of OS managers hardware and software on a client computer 94. What tool is used to lure an attacker so that an administrator can capture, log and analyze the behavior of the attack? § NetFlow § Honeypot § IDS § Nmap - ANSWER § Honeypot 95. For what purpose would a network administrator use the Nmap tool? § To protect the private IP addresses of internal hosts § To identify specific network anomalies § To detect and identify open ports § To collect and analyze security alerts and logs - ANSWER § To detect and identify open ports 96. What is the purpose of a backdoor? § To enable software vendors to update software § For government access 51 § To gain unauthorized access to a system without normal authentication procedures § To allow developers to debug software - ANSWER § To gain unauthorized access to a system without normal authentication procedures 97. Which of the following is not associated typically with Wazuh processes? § Syslog § Applications § Log capture § Log aggregation - ANSWER § Applications 98. Which process allows log files to be enriched with additional data to provide context? § Log aggregation § Log collectors § Log reviews § Syslog - ANSWER § Log aggregation 99. Which of the following are not typically scanned during a vulnerability scan? § End users 52 § Network § Applications § Web applications - ANSWER § End users 100. A web application you are reviewing has an input field for username and indicates the username should be between 6 and 12 characters. You've discovered that if you input a username that's 150 characters or more in length, the application crashes. What is this is an example of? § Memory leak § Buffer overflow § Directory traversal § Content discovery - ANSWER § Buffer overflow 101. To protect software from reverse engineering by attackers, developers can use which of the following? § Dead code § Obfuscation § Binary diversity § Stored procedures - ANSWER § Obfuscation

Vista previa del contenido

COMPREHENSIVE INFORMATION
SECURITY GUIDE WITH
VERIFIED Q&A
Appliance OS - ANSWER What type of OS and firmware is the
sign to manage a specific device like a video game console?
S What is a feature of a cryptographic hash function?
§ Hashing requires a public and a private key.
§ The hash function is a one-way mathematical function.
§ The output has a variable length.
§ The hash input can be calculated given the output value. -
ANSWER § The hash function is a one-way mathematical
function.
Secure boot - ANSWER What security standard was introduced
in conjunction with UEFI?
Granting users and systems a predetermined level of access -
ANSWER Authorization


Confidence that the system will act in a correct and predictable
manner in every situation - ANSWER Trustworthy Computing



1

,Logging of access and use of information resources - ANSWER
Accounting
stack.
Which type of cybercriminal is the most likely to create malware
to compromise an organization by stealing credit card
information?
§ white hat hackers
§ black hat hackers
§ gray hat hackers
§ script kiddies - ANSWER § black hat hackers


An organization allows employees to work from home two days
a week. Which technology should be implemented to ensure
data confidentiality as data is transmitted?
§ SHS
§ VLANS
§ RAID
§ VPN - ANSWER § VPN


A cybersecurity specialist is working with the IT staff to
establish an effective information security plan. Which
combination of security principles forms the foundation of a
security plan?

2

,§ confidentiality, integrity, and availability
§ technologies, policies, and awareness
§ secrecy, identify, and nonrepudiation
§ encryption, authentication, and identification - ANSWER §
confidentiality, integrity, and availability




Which cybersecurity weapon scans for use of default passwords,
missing patches, open ports, misconfigurations, and active IP
addresses?
§ packet analyzers
§ vulnerability scanners
§ packet sniffers
§ password crackers - ANSWER § vulnerability scanners


A cybersecurity specialist is asked to identify the potential
criminals known to attack the organization. Which type of
hackers would the cybersecurity specialist be least concerned
with?
§ black hat hackers
§ gray hat hackers
§ script kiddies
§ white hat hackers - ANSWER § white hat hackers
3

, Which technology can be used to ensure data confidentiality?
§ hashing
§ identity management
§ encryption
§ RAID - ANSWER § encryption


Users report that the network access is slow. After questioning
the employees, the network administrator learned that one
employee downloaded a third-party scanning program for the
printer. What type of malware might be introduced that causes
slow performance of the network? § virus
§ worm
§ spam
§ phishing - ANSWER § worm


What type of application attack occurs when data goes beyond
the memory areas allocated to the application?
§ buffer overflow
§ RAM Injection
§ SQL injection
§ RAM spoofing - ANSWER § buffer overflow


4

Información del documento

Subido en
6 de enero de 2025
Número de páginas
54
Escrito en
2024/2025
Tipo
Examen
Contiene
Preguntas y respuestas
$18.49

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Vendido
0
Seguidores
0
Artículos
49
Última venta
-


Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes