NSVT FINAL EXAM QUESTIONS & ANSWERS
The Cross Domain services/Multi-Layer System (CDS/MLS)
Which service permits hardware software and the transfer of information between
different levels of classification?
VRF what it is and what it does
used to restrict data flow from applications and users to the management resources in
each enclave
SQLSRVUSR | EPOSQL know accounts and what they do
This account is the local log on for the SQL Server service
This account is built into SQL Server Management, and is the account that the ePO
uses to "talk" to the MSSQL database
What servers do rogue sensors need be installed on in CANES
BU01 (and BU02 on SEC enclaves), MTS, VC01, and WEB
SCM security architecture module what it is and what it provides
applies local security to servers on the COMPOSE network
Semantic mail security for exchange what does it provide protection to
scans email messages that pass through the Microsoft Exchange server.
What is Microsoft SCCM
System Center Configuration Manager
Be familiar with the CCRI stages namely administrative review portion
Administrative Review of your security posture. Generally, this inspection takes 1-2
days. This is an internal review of IA and cyber security administration, leadership
engagement, and personnel training and qualifications.
What does traditional security mean?
, broad topic that encompasses the physical environments that we use to hold and
transmit mission sensitive information, as well as the procedures for those who use and
protect this information
When is CND verified
CND is verified during an ATG cyber inspection even though it is already inspected
during CCRI
Be familiar with the incident categories and delivery vectors memorize #2 dev vec
Authorized user
What is operation rolling tide?
f additional inspection and response teams show the increase in actions to address the
security threat that is present in our network environment.
What data compromises are and what they result from
he compromise or probable compromise of classified information resulting from the loss
of control, improper storage, improper classification, or improper escorting of media,
computer equipment (with memory), or computer-generated output.
What is SSH and what port does it use
TCP Port 22
How are baselines and thresholds used to detect events?
comparing abnormal activity to establish baselines and thresholds of known good
system performance and operation
What port number is DNS?
TCP and UDP port 53
Be familiar with the incident response process
The Cross Domain services/Multi-Layer System (CDS/MLS)
Which service permits hardware software and the transfer of information between
different levels of classification?
VRF what it is and what it does
used to restrict data flow from applications and users to the management resources in
each enclave
SQLSRVUSR | EPOSQL know accounts and what they do
This account is the local log on for the SQL Server service
This account is built into SQL Server Management, and is the account that the ePO
uses to "talk" to the MSSQL database
What servers do rogue sensors need be installed on in CANES
BU01 (and BU02 on SEC enclaves), MTS, VC01, and WEB
SCM security architecture module what it is and what it provides
applies local security to servers on the COMPOSE network
Semantic mail security for exchange what does it provide protection to
scans email messages that pass through the Microsoft Exchange server.
What is Microsoft SCCM
System Center Configuration Manager
Be familiar with the CCRI stages namely administrative review portion
Administrative Review of your security posture. Generally, this inspection takes 1-2
days. This is an internal review of IA and cyber security administration, leadership
engagement, and personnel training and qualifications.
What does traditional security mean?
, broad topic that encompasses the physical environments that we use to hold and
transmit mission sensitive information, as well as the procedures for those who use and
protect this information
When is CND verified
CND is verified during an ATG cyber inspection even though it is already inspected
during CCRI
Be familiar with the incident categories and delivery vectors memorize #2 dev vec
Authorized user
What is operation rolling tide?
f additional inspection and response teams show the increase in actions to address the
security threat that is present in our network environment.
What data compromises are and what they result from
he compromise or probable compromise of classified information resulting from the loss
of control, improper storage, improper classification, or improper escorting of media,
computer equipment (with memory), or computer-generated output.
What is SSH and what port does it use
TCP Port 22
How are baselines and thresholds used to detect events?
comparing abnormal activity to establish baselines and thresholds of known good
system performance and operation
What port number is DNS?
TCP and UDP port 53
Be familiar with the incident response process