Controls Practice Exam Questions (Actual
Exam 2026-2027) Correct Detailed &
Verified ANSWERS (100% Accurate
Solutions) ALREADY GRADED
A+||NEWEST VERSION Of The Exam
Guarantee Pass!!
1. A security administrator wants to prevent unauthorized devices
from connecting to a corporate switch. Which control should be
implemented?
A. VLAN tagging
B. Port mirroring
C. Port security
D. Load balancing
Port security restricts switch ports to approved MAC addresses or
device counts, preventing unauthorized devices from connecting.
2. Which security device is designed to inspect and filter traffic
entering or leaving a network?
A. Hub
B. Repeater
C. Firewall
D. Patch panel
,A firewall monitors and controls network traffic based on predefined
security rules.
3. A company wants to separate guest Wi-Fi users from internal
employees. Which technology should be used?
A. RAID
B. VLANs
C. NAT
D. DHCP
Virtual LANs logically separate network segments, allowing guest and
internal traffic to remain isolated.
4. Which firewall type can make decisions based on application-
layer information?
A. Packet-filtering firewall
B. Stateful firewall
C. Next-generation firewall (NGFW)
D. Circuit-level firewall
NGFWs inspect application traffic and include advanced features such
as intrusion prevention and application awareness.
5. Which network security control detects and blocks malicious
network activity automatically?
A. IDS
B. IPS
C. Proxy server
D. Honeypot
,An Intrusion Prevention System (IPS) actively blocks detected threats,
while an IDS only alerts administrators.
6. A security engineer wants to monitor suspicious traffic without
affecting production systems. Which technology should be used?
A. IPS
B. IDS
C. Firewall
D. Router ACL
An IDS passively monitors traffic and generates alerts without directly
blocking traffic.
7. Which device operates primarily at Layer 3 of the OSI model and
can enforce access rules?
A. Switch
B. Hub
C. Router
D. Bridge
Routers operate at Layer 3 and can apply access control lists (ACLs) to
manage traffic.
8. What is the main purpose of a network access control (NAC)
solution?
A. Encrypt files
B. Increase bandwidth
C. Validate devices before granting network access
D. Replace antivirus software
, NAC ensures only compliant and authorized devices can connect to
the network.
9. Which security control provides encrypted remote access to a
corporate network?
A. FTP
B. Telnet
C. VPN
D. SMTP
Virtual Private Networks encrypt network communication, allowing
secure remote connections.
10. Which protocol is commonly used for secure remote
administration?
A. HTTP
B. FTP
C. SSH
D. SNMPv1
SSH provides encrypted remote command-line access and replaces
insecure protocols such as Telnet.
11. A company wants to inspect encrypted web traffic for malware.
Which technology should be deployed?
A. Load balancer
B. SSL inspection
C. Network tap
D. DHCP snooping