QUESTIONS AND CORRECT ANSWERS
Clark, a network security specialist, was assigned to secure an organization's network. Clark
implemented a network defense approach that can tackle network attacks such as DoS and DDoS and
includes security monitoring methods such as IDS, SIMS, TRS, and IPS.
Which of the following network defense approaches did Clark implement in the above scenario? -
CORRECT ANSWER Reactive Approach
David, a new employee at an organization, received a call from HR on one Saturday (weekend) to
upload his certificates on the shared drive. David connects to the corporate network to access the drive
online from his residence.
Which of the following information assurance principles was demonstrated in the above scenario? -
CORRECT ANSWER Availability
Which of the following information assurance principles ensures that a party in a communication
cannot deny sending the message? - CORRECT ANSWER Nonrepudiation
Abey, a software developer, is working on a prestigious project. John, a colleague of Abey, is a
disgruntled employee in the same company. John, with malicious intent, decides to access confidential
information regarding the project, which Abey is sharing with the higher management. For this
purpose, he uses sniffing programs and captures the traffic originating from Abey's system. As a
result, he is able to obtain crucial project details.
Identify the information assurance principle on which John has performed the attack in the above
scenario. - CORRECT ANSWER Confidentiality
Which of the following network defense techniques examines the causes for attacks in networks by
using fault-finding mechanisms, security forensics techniques, and post-mortem analysis? -
CORRECT ANSWER Retrospective Approach
Which of the following components of technical security controls protects the information passing
through the network and preserves the privacy and reliability of the data? - CORRECT ANSWER
Encryption and Protocols
Which of the following components of technical network security controls examines the network
devices and identifies weaknesses in the network? - CORRECT ANSWER Auditing
,Bob has recently purchased a new laptop and enabled all the required security controls. The next day
while verifying whether all the security mechanisms were enabled on his system or not, he found that
the "firewall" was disabled. He immediately enabled the firewall option on his laptop.
Identify the component of technical security controls that Bob enabled to protect his laptop from
network-related threats. - CORRECT ANSWER Network security devices
Clark, a thief, escaped from the civil forces and tried to enter the nearest company's premises. The
security systems installed at the entrance identified the unauthorized entry into the organization's
premises and triggered an alarm to activate security teams.
Which of the following types of security control system triggered an alarm in the above scenario
when the unauthorized intrusion attempt was made? - CORRECT ANSWER Detection
Controls
James, a network specialist joined an organization. He was provided with administrator privileges,
through which he can access the files and servers and perform administrative activities.
Which of the following information assurance principles authorizes James to access the server or
system files? - CORRECT ANSWER Authentication
Which of the following information assurance principles ensures that the information is not modified
or tampered by any unauthorized parties? - CORRECT ANSWER Integrity
Bob has recently purchased a new laptop and enabled all the required security controls. The next day
while verifying whether all the security mechanisms were enabled on his system or not, he found that
the "firewall" was disabled. He immediately enabled the firewall option on his laptop.
Identify the component of technical security controls that Bob enabled to protect his laptop from
network-related threats. - CORRECT ANSWER Network security devices
TACACS+ authentication involves the following steps:
1.) The router and the user exchange authentication parameters
2.) The server responds with the REPLY message based on the provided information
3.) A user initiates the connection for authentication
4.) The router sends the parameters to the server for authentication
I
, dentify the correct order of steps involved. - CORRECT ANSWER 3-1-4-2
Which of the following protocols provides centralized authentication, authorization, and accounting
(AAA) for remote access servers to communicate with a central server? - CORRECT ANSWER
RADIUS
Which of the following protocols is an application layer protocol used for sending digitally signed and
encrypted email messages? - CORRECT ANSWER S/MIME
Margaret, a system administrator, regularly administers the devices connected to the organizational
network. She found that certain devices are vulnerable to sniffing attacks. To protect the device from
such attacks, Margaret employed a protocol that encrypts the entire communication between the client
and the server, including the user's password, which protects it from sniffing attacks.
Identify the protocol employed by Margaret in the above scenario. - CORRECT ANSWER
TACACS+
Benson, a security professional plans to implement more stringent security practices in his
organization. For this reason, he uses a protocol that provides cryptographic security by encrypting the
email messages and digitally signing them to ensure confidentiality, integrity, and nonrepudiation of
messages.
Which of the following protocols was employed by Benson in the above scenario? - CORRECT
ANSWER S/MIME
James, a software engineer, is working from a remote location and connects his laptop to the
company's server through a VPN. The company has implemented a security protocol that provides
authentication as well as encryption of the data passing through the VPN tunnels.
Identify the network security protocol implemented by the company for secure communication. -
CORRECT ANSWER IPsec
Sally, a security professional, implemented a protocol for authenticating requests in computer
networks. The protocol implemented by Sally is based on the client-server model, and uses encryption
technology and a "ticket" mechanism to prove the identity of a user on a non-secure network.
Identify the protocol implemented by Sally in the above scenario. - CORRECT ANSWER
Kerberos