ITSY-2300 Midterm Exam Questions And
Answers
The first step in responding to an attack is to know an attack has
occurred or is occurring. T/F -
correct answer ✅True
Security controls are mechanisms used to protect information. T/F -
correct answer ✅True
Security information and event management (SIEM) tools collect
and aggregate security-related information from multiple sources
and devices. T/F -
correct answer ✅True
Phishing is specially crafted malicious code used to attack web
applications. T/F -
correct answer ✅False
Attackers look for vulnerabilities, or weaknesses, in an operating
system and application software. T/F -
correct answer ✅True
Each Windows operating system component, and the
communication between components, can be a potential point of
, ITSY-2300 Midterm Exam Questions And
Answers
attack. T/F -
correct answer ✅True
Each entry in a discretionary access control list (DACL) is called an
access control entry (ACE). T/F -
correct answer ✅True
Providing just the necessary access required to carry out a task is
called the principle of least privilege. T/F -
correct answer ✅True
The token that Windows uses to store security identifiers (SIDs) is
called the Security Access Token (SAT). T/F -
correct answer ✅True
The Windows feature of prompting users before escalating to
administrator privileges is called User Account Control (UAC). T/F -
correct answer ✅True
BitLocker To Go protects removable storage devices, such as USB
keys. T/F -
correct answer ✅True
Answers
The first step in responding to an attack is to know an attack has
occurred or is occurring. T/F -
correct answer ✅True
Security controls are mechanisms used to protect information. T/F -
correct answer ✅True
Security information and event management (SIEM) tools collect
and aggregate security-related information from multiple sources
and devices. T/F -
correct answer ✅True
Phishing is specially crafted malicious code used to attack web
applications. T/F -
correct answer ✅False
Attackers look for vulnerabilities, or weaknesses, in an operating
system and application software. T/F -
correct answer ✅True
Each Windows operating system component, and the
communication between components, can be a potential point of
, ITSY-2300 Midterm Exam Questions And
Answers
attack. T/F -
correct answer ✅True
Each entry in a discretionary access control list (DACL) is called an
access control entry (ACE). T/F -
correct answer ✅True
Providing just the necessary access required to carry out a task is
called the principle of least privilege. T/F -
correct answer ✅True
The token that Windows uses to store security identifiers (SIDs) is
called the Security Access Token (SAT). T/F -
correct answer ✅True
The Windows feature of prompting users before escalating to
administrator privileges is called User Account Control (UAC). T/F -
correct answer ✅True
BitLocker To Go protects removable storage devices, such as USB
keys. T/F -
correct answer ✅True