updated 2025-2026(latest
version verified for accuracy)
(Questions + Answers) Solved
100% Correct!!
__________ provide the detailed steps needed to carry out
___________. - ANSWER ✔✔Procedures, policies
A __________ grants the authority to perform an action on a system. A
__________ grants access to a resource. - ANSWER ✔✔right,
permission
A business continuity plan (BCP) is an example of a(n): - ANSWER
✔✔security plan
,A hacker wants to launch an attack on an organization. The hacker uses
a tool to capture data sent over the network in cleartext, hoping to gather
information that will help make the attack successful. What tool is the
hacker using? - ANSWER ✔✔a packet analyzer
A threat is any activity that represents a possible danger, which includes
any circumstances or events with the potential to cause an adverse
impact on all of the following, except: - ANSWER ✔✔assessments
A(n) ____________ assessment attempts to identify vulnerabilities that
can be exploited. - ANSWER ✔✔exploit
An access control such as a firewall or intrusion prevention system
cannot protect against which of the following? - ANSWER ✔✔Social
engineering
Another term for data range and reasonableness checks is: -
ANSWER ✔✔input validation
Background checks, software testing, and awareness training are all
categories of: - ANSWER ✔✔procedural controls.
Bill is a security professional. He is in a meeting with co-workers and
describes a system that will make web sessions more secure. He says
when a user connects to the web server and starts a secure session, the
, server sends a certificate to the user. The certificate includes a public
key. The user can encrypt data with the public key and send it to the
server. Because the server holds the private key, it can decrypt the data.
Because no other entity has the private key, no one else can decrypt the
data. What is Bill describing? - ANSWER ✔✔Public key infrastructure
(PKI)
Bonding is a type of __________ that covers against losses by theft,
fraud, or dishonesty. - ANSWER ✔✔Insurance
Complete the equation for the relationship between risk, vulnerabilities,
and threats: Risk equals: - ANSWER ✔✔Vulnerability × Threat .
Functionality testing is primarily used with: - ANSWER ✔✔Software
Development
Ideally, when should you perform threat modeling? - ANSWER
✔✔Before writing an application or deploying a system
In a SQL injection attack, an attacker can: - ANSWER ✔✔read
sections of a database or a whole database without authorization.
Piggybacking is also known as: - ANSWER ✔✔Tailgating
3
COPYRIGHT©JOSHCLAY 2025/2026. YEAR PUBLISHED 2026. COMPANY REGISTRATION NUMBER: 619652435. TERMS OF USE. PRIVACY
STATEMENT. ALL RIGHTS RESERVED