1. What is the purpose of security awareness training in an
organization?
A. To reduce the number of vulnerabilities in software
B. To ensure that employees follow best practices and recognize
potential threats
C. To monitor employee activities on the network
D. To implement strong encryption for company data
Answer: B) To ensure that employees follow best practices and
recognize potential threats
Rationale: Security awareness training educates employees on
recognizing and responding to security threats like phishing and social
engineering, promoting a culture of security.
2. What is the primary goal of a Disaster Recovery (DR) plan in the
context of security operations?
A. To prevent security breaches from happening
B. To recover systems and data after an attack or disaster
C. To monitor ongoing security incidents in real time
D. To conduct regular vulnerability scans on critical systems
Answer: B) To recover systems and data after an attack or disaster
,Rationale: A Disaster Recovery plan focuses on restoring systems and
data to normal operations after a disaster or attack, ensuring business
continuity.
3. What is the primary objective of an Incident Response (IR) team
during a security incident?
A. To identify and stop the attack as quickly as possible
B. To collect evidence for legal prosecution
C. To ensure the business remains operational at all costs
D. To report the incident to regulatory authorities immediately
Answer: A) To identify and stop the attack as quickly as possible
Rationale: The primary goal of the IR team during a security incident
is to quickly identify the attack and stop it to prevent further damage,
followed by containment and remediation actions.
4. What is the most effective way to mitigate the risk of Distributed
Denial-of-Service (DDoS) attacks?
A. Implementing rate-limiting controls
B. Encrypting sensitive data at rest
C. Monitoring network traffic for unusual patterns
D. Using a Web Application Firewall (WAF)
Answer: A) Implementing rate-limiting controls
, Rationale: Rate-limiting controls help mitigate the impact of DDoS
attacks by limiting the number of requests a system can handle from a
particular source, reducing the effectiveness of such attacks.
5. What is the primary function of an Intrusion Detection System
(IDS)?
A. To detect unauthorized access attempts and log them for analysis
B. To encrypt traffic between devices on the network
C. To block known malicious traffic automatically
D. To create firewall rules based on traffic analysis
Answer: A) To detect unauthorized access attempts and log them for
analysis
Rationale: IDS is designed to detect suspicious or unauthorized
activities on a network and log those events for analysis. It does not
typically block traffic like an Intrusion Prevention System (IPS) would.
6. Which of the following is a key characteristic of an effective disaster
recovery plan?
A. A single recovery strategy for all types of disasters
B. Regular testing to ensure effectiveness and preparedness
C. Limiting the number of employees involved in the plan
D. Allowing employees to independently restore systems
Answer: B) Regular testing to ensure effectiveness and preparedness
organization?
A. To reduce the number of vulnerabilities in software
B. To ensure that employees follow best practices and recognize
potential threats
C. To monitor employee activities on the network
D. To implement strong encryption for company data
Answer: B) To ensure that employees follow best practices and
recognize potential threats
Rationale: Security awareness training educates employees on
recognizing and responding to security threats like phishing and social
engineering, promoting a culture of security.
2. What is the primary goal of a Disaster Recovery (DR) plan in the
context of security operations?
A. To prevent security breaches from happening
B. To recover systems and data after an attack or disaster
C. To monitor ongoing security incidents in real time
D. To conduct regular vulnerability scans on critical systems
Answer: B) To recover systems and data after an attack or disaster
,Rationale: A Disaster Recovery plan focuses on restoring systems and
data to normal operations after a disaster or attack, ensuring business
continuity.
3. What is the primary objective of an Incident Response (IR) team
during a security incident?
A. To identify and stop the attack as quickly as possible
B. To collect evidence for legal prosecution
C. To ensure the business remains operational at all costs
D. To report the incident to regulatory authorities immediately
Answer: A) To identify and stop the attack as quickly as possible
Rationale: The primary goal of the IR team during a security incident
is to quickly identify the attack and stop it to prevent further damage,
followed by containment and remediation actions.
4. What is the most effective way to mitigate the risk of Distributed
Denial-of-Service (DDoS) attacks?
A. Implementing rate-limiting controls
B. Encrypting sensitive data at rest
C. Monitoring network traffic for unusual patterns
D. Using a Web Application Firewall (WAF)
Answer: A) Implementing rate-limiting controls
, Rationale: Rate-limiting controls help mitigate the impact of DDoS
attacks by limiting the number of requests a system can handle from a
particular source, reducing the effectiveness of such attacks.
5. What is the primary function of an Intrusion Detection System
(IDS)?
A. To detect unauthorized access attempts and log them for analysis
B. To encrypt traffic between devices on the network
C. To block known malicious traffic automatically
D. To create firewall rules based on traffic analysis
Answer: A) To detect unauthorized access attempts and log them for
analysis
Rationale: IDS is designed to detect suspicious or unauthorized
activities on a network and log those events for analysis. It does not
typically block traffic like an Intrusion Prevention System (IPS) would.
6. Which of the following is a key characteristic of an effective disaster
recovery plan?
A. A single recovery strategy for all types of disasters
B. Regular testing to ensure effectiveness and preparedness
C. Limiting the number of employees involved in the plan
D. Allowing employees to independently restore systems
Answer: B) Regular testing to ensure effectiveness and preparedness