Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 104 pages
Exam (elaborations)

Illinois Security Contractor Licensing Actual Exam And Practice Tests Newest With Complete Questions And Correct Detailed Answers| Brand New Version!

Document preview thumbnail
Preview 4 out of 104 pages

Illinois Security Contractor Licensing Actual Exam And Practice Tests Newest With Complete Questions And Correct Detailed Answers| Brand New Version! A company recently decided to allow its employees to use their personally owned devices for tasks like checking email and messaging via mobile applications. The company would like to use MDM, but employees are concerned about the loss of personal data. Which of the following should the IT department implement to BEST protect the company against company data loss while still addressing the employees' concerns? A. Enable the remote-wiping option in the MDM software in case the phone is stolen. B. Configure the MDM software to enforce the use of PINs to access the phone. C. Configure MDM for FDE without enabling the lock screen. D. Perform a factory reset on the phone before installing the company's applications. B. Configure the MDM software to enforce the use of PINs to access the phone. The concept of connecting a user account across the systems of multiple enterprises is BEST known as: A. federation. B. a remote access policy. C. multifactor authentication. D. single sign-on. A. federation. A user received an SMS on a mobile phone that asked for bank details. Which of the following social-engineering techniques was used in this case? A. SPIM B. Vishing C. Spear phishing D. Smishing D. Smishing A company is working on mobile device security after a report revealed that users granted non-verified software access to corporate data. Which of the following is the MOST effective security control to mitigate this risk? A. Block access to application stores B. Implement OTA updates C. Update the BYOD policy D. Deploy a uniform firmware A. Block access to application stores A security analyst needs to implement security features across smartphones, laptops, and tablets. Which of the following would be the MOST effective across heterogeneous platforms? A. Enforcing encryption B. Deploying GPOs 1 | P a g e C. Removing administrative permissions D. Applying MDM software D. Applying MDM software The new Chief Information Security Officer at a company has asked the security team to implement stronger user account policies. The new policies require: Users to choose a password unique to their last ten passwords Users to not log in from certain high risk countriesWhich of the following should the security team implement? (Choose two.) A. Password complexity B. Password history C. Geolocation D. Geofencing E. Geotagging F. Password reuse B, C Which of the following is MOST likely to outline the roles and responsibilities of data controllers and data processors? A. SSAE SOC 2 B. PCI DSS C. GDPR D. ISO 31000 C. GDPR Which of the following is MOST likely to contain ranked and ordered information on the likelihood and potential impact of catastrophic events that may affect business processes and systems, while also highlighting the residual risks that need to be managed after mitigating controls have been implemented? A. An RTO report B. A risk register C. A business impact analysis D. An asset value register E. A disaster recovery plan B. A risk register A worldwide manufacturing company has been experiencing email account compromises. In one incident, a user logged in from the corporate office in France, but then seconds later, the same user account attempted a login from Brazil. Which of the following account policies would BEST prevent this type of attack? A. Network location B. Impossible travel time C. Geolocation D. Geofencing B. Impossible travel time A new vulnerability in the SMB protocol on the Windows systems was recently discovered, but no patches are currently available to resolve the issue. The security administrator is concerned that servers in the company's DMZ will be vulnerable to external attack; however, the administrator cannot disable the service on the servers, as SMB is used by a number of internal systems and applications on the LAN. Which of the following TCP ports should be blocked for all external inbound connections to the DMZ 2 | P a g e as a workaround to protect the servers? (Choose two.) A. 135 B. 139 C. 143 D. 161 E. 443 F. 445 B, F A recent phishing campaign resulted in several compromised user accounts. The security incident response team has been tasked with reducing the manual labor of filtering through all the phishing emails as they arrive and blocking the sender's email address, along with other time-consuming mitigation actions. Which of the following can be configured to streamline those tasks? A. SOAR playbook B. MDM policy C. Firewall rules D. URL filter E. SIEM data collection A. SOAR playbook A security analyst is reviewing the following output from a system: TCP 192.168.10.10:80 192.168.1.2:60101 time_wait TCP 192.168.10.10:80 192.168.1.2:60102 time_wait TCP 192.168.10.10:80 192.168.1.2:60103 time_wait TCP 192.168.10.10:80 192.168.1.2:60104 time_wait TCP 192.168.10.10:80 192.168.1.2:60105 time_wait TCP 192.168.10.10:80 192.168.1.2:60106 time_wait TCP 192.168.10.10:80 192.168.1.2:60107 time_wait TCP 192.168.10.10:80 192.168.1.2:60108 time_wait TCP 192.168.10.10:80 192.168.1.2:60109 time_wait TCP 192.168.10.10:80 192.168.1.2:601010 time_wait Which of the following is MOST likely being observed? A. ARP poisoning B. Man in the middle C. Denial of service D. DNS poisoning C. Denial of service Which of the following concepts BEST describes tracking and documenting changes to software and managing access to files and systems? A. Version control B. Continuous monitoring C. Stored procedures D. Automation A. Version control A penetration tester is brought on site to conduct a full attack simulation at a hospital. The penetration tester notices a WAP that is hanging from the drop ceiling by its cabling and is reachable. Which of the following recommendations would the penetration tester 3 | P a g e MOST likely make given this observation? A. Employ a general contractor to replace the drop-ceiling tiles. B. Place the network cabling inside a secure conduit. C. Secure the access point and cabling inside the drop ceiling. D. Utilize only access points that have internal antennas C. Secure the access point and cabling inside the drop ceiling. Which of the following techniques eliminates the use of rainbow tables for password cracking? A. Hashing B. Tokenization C. Asymmetric encryption D. Salting D. Salting During a security assessment, a security analyst finds a file with overly permissive permissions. Which of the following tools will allow the analyst to reduce the permissions for the existing users and groups and remove the set-user-ID bit from the file? A. ls B. chflags C. chmod D. lsof E. setuid C. chmod A network administrator is concerned about users being exposed to malicious content when accessing company cloud applications. The administrator wants to be able to block access to sites based on the AUP. The users must also be protected because many of them work from home or at remote locations, providing on-site customer support. Which of the following should the administrator employ to meet these criteria? A. Implement NAC. B. Implement an SWG. C. Implement a URL filter. D. Implement an MDM. B. Implement an SWG. A website developer is working on a new e-commerce website and has asked an information security expert for the most appropriate way to store credit card numbers to create an easy reordering process. Which of the following methods would BEST accomplish this goal? A. Salting the magnetic strip information B. Encrypting the credit card information in transit C. Hashing the credit card numbers upon entry D. Tokenizing the credit cards in the database D. Tokenizing the credit cards in the database Which of the following supplies non-repudiation during a forensics investigation? A. Dumping volatile memory contents first B. Duplicating a drive with dd C. Using a SHA-2 signature of a drive image

Content preview

Illinois Security Contractor Licensing Actual
Exam And Practice Tests Newest With
Complete Questions And Correct Detailed
Answers| Brand New Version!
A company recently decided to allow its employees to use their personally owned
devices for tasks like checking email and messaging via mobile applications. The
company would like to use MDM, but employees are concerned about the loss of
personal data. Which of the following should the IT department implement to BEST
protect the company against company data loss while still addressing the employees'
concerns?
A. Enable the remote-wiping option in the MDM software in case the phone is stolen.
B. Configure the MDM software to enforce the use of PINs to access the phone.
C. Configure MDM for FDE without enabling the lock screen.
D. Perform a factory reset on the phone before installing the company's applications.
B. Configure the MDM software to enforce the use of PINs to access the phone.
The concept of connecting a user account across the systems of multiple enterprises is
BEST known as:
A. federation.
B. a remote access policy.
C. multifactor authentication.
D. single sign-on.
A. federation.
A user received an SMS on a mobile phone that asked for bank details. Which of the
following social-engineering techniques was used in this case?
A. SPIM
B. Vishing
C. Spear phishing
D. Smishing
D. Smishing
A company is working on mobile device security after a report revealed that users
granted non-verified software access to corporate data. Which of the following is the
MOST effective security control to mitigate this risk?
A. Block access to application stores
B. Implement OTA updates
C. Update the BYOD policy
D. Deploy a uniform firmware
A. Block access to application stores
A security analyst needs to implement security features across smartphones, laptops,
and tablets. Which of the following would be the MOST effective across heterogeneous
platforms?
A. Enforcing encryption
B. Deploying GPOs


1|Page

,C. Removing administrative permissions
D. Applying MDM software
D. Applying MDM software
The new Chief Information Security Officer at a company has asked the security team to
implement stronger user account policies. The new policies require: Users to choose a
password unique to their last ten passwords Users to not log in from certain high-
risk countriesWhich of the following should the security team implement? (Choose two.)
A. Password complexity
B. Password history
C. Geolocation
D. Geofencing
E. Geotagging
F. Password reuse
B, C
Which of the following is MOST likely to outline the roles and responsibilities of data
controllers and data processors?
A. SSAE SOC 2
B. PCI DSS
C. GDPR
D. ISO 31000
C. GDPR
Which of the following is MOST likely to contain ranked and ordered information on the
likelihood and potential impact of catastrophic events that may affect business
processes and systems, while also highlighting the residual risks that need to be
managed after mitigating controls have been implemented?
A. An RTO report
B. A risk register
C. A business impact analysis
D. An asset value register
E. A disaster recovery plan
B. A risk register
A worldwide manufacturing company has been experiencing email account
compromises. In one incident, a user logged in from the corporate office in France, but
then seconds later, the same user account attempted a login from Brazil. Which of the
following account policies would BEST prevent this type of attack?
A. Network location
B. Impossible travel time
C. Geolocation
D. Geofencing
B. Impossible travel time
A new vulnerability in the SMB protocol on the Windows systems was recently
discovered, but no patches are currently available to resolve the issue. The security
administrator is concerned that servers in the company's DMZ will be vulnerable to
external attack; however, the administrator cannot disable the service on the servers, as
SMB is used by a number of internal systems and applications on the LAN. Which of the
following TCP ports should be blocked for all external inbound connections to the DMZ

2|Page

,as a workaround to protect the servers? (Choose two.)
A. 135
B. 139
C. 143
D. 161
E. 443
F. 445
B, F
A recent phishing campaign resulted in several compromised user accounts. The
security incident response team has been tasked with reducing the manual labor of
filtering through all the phishing emails as they arrive and blocking the sender's email
address, along with other time-consuming mitigation actions. Which of the following can
be configured to streamline those tasks?
A. SOAR playbook
B. MDM policy
C. Firewall rules
D. URL filter
E. SIEM data collection
A. SOAR playbook
A security analyst is reviewing the following output from a system:
TCP 192.168.10.10:80 192.168.1.2:60101 time_wait
TCP 192.168.10.10:80 192.168.1.2:60102 time_wait
TCP 192.168.10.10:80 192.168.1.2:60103 time_wait
TCP 192.168.10.10:80 192.168.1.2:60104 time_wait
TCP 192.168.10.10:80 192.168.1.2:60105 time_wait
TCP 192.168.10.10:80 192.168.1.2:60106 time_wait
TCP 192.168.10.10:80 192.168.1.2:60107 time_wait
TCP 192.168.10.10:80 192.168.1.2:60108 time_wait
TCP 192.168.10.10:80 192.168.1.2:60109 time_wait
TCP 192.168.10.10:80 192.168.1.2:601010 time_wait
Which of the following is MOST likely being observed?
A. ARP poisoning
B. Man in the middle
C. Denial of service
D. DNS poisoning
C. Denial of service
Which of the following concepts BEST describes tracking and documenting changes to
software and managing access to files and systems?
A. Version control
B. Continuous monitoring
C. Stored procedures
D. Automation
A. Version control
A penetration tester is brought on site to conduct a full attack simulation at a hospital.
The penetration tester notices a WAP that is hanging from the drop ceiling by its cabling
and is reachable. Which of the following recommendations would the penetration tester

3|Page

, MOST likely make given this observation?
A. Employ a general contractor to replace the drop-ceiling tiles.
B. Place the network cabling inside a secure conduit.
C. Secure the access point and cabling inside the drop ceiling.
D. Utilize only access points that have internal antennas
C. Secure the access point and cabling inside the drop ceiling.
Which of the following techniques eliminates the use of rainbow tables for password
cracking?
A. Hashing
B. Tokenization
C. Asymmetric encryption
D. Salting
D. Salting
During a security assessment, a security analyst finds a file with overly permissive
permissions. Which of the following tools will allow the analyst to reduce the
permissions for the existing users and groups and remove the set-user-ID bit from the
file?
A. ls
B. chflags
C. chmod
D. lsof
E. setuid
C. chmod
A network administrator is concerned about users being exposed to malicious content
when accessing company cloud applications. The administrator wants to be able to
block access to sites based on the AUP. The users must also be protected because
many of them work from home or at remote locations, providing on-site customer
support. Which of the following should the administrator employ to meet these criteria?
A. Implement NAC.
B. Implement an SWG.
C. Implement a URL filter.
D. Implement an MDM.
B. Implement an SWG.
A website developer is working on a new e-commerce website and has asked an
information security expert for the most appropriate way to store credit card numbers to
create an easy reordering process. Which of the following methods would BEST
accomplish this goal?
A. Salting the magnetic strip information
B. Encrypting the credit card information in transit
C. Hashing the credit card numbers upon entry
D. Tokenizing the credit cards in the database
D. Tokenizing the credit cards in the database
Which of the following supplies non-repudiation during a forensics investigation?
A. Dumping volatile memory contents first
B. Duplicating a drive with dd
C. Using a SHA-2 signature of a drive image

4|Page

Document information

Uploaded on
April 3, 2026
Number of pages
104
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$22.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Sold
48
Followers
3
Items
263
Last sold
1 month ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions