ANSWERS | LATEST UPDATE 2026/2027 | GRADED A+
| GUARANTEED PASS.
Which of the following is a recommended USB keyboard mitigation for sites
requiring high security?
A) Disable USB ports in the system.
B) Restrict USB devices with approved PIDs and VIDs.
C) Block the USB devices physically.
D) Restrict USB devices with approved user accounts. - ANSWER C) Block
the USB devices physically.
Which of the following Cisco IOS commands is used to shut the port down
automatically when the maximum number of MAC addresses is exceeded?
A) switchport port-security violation shutdown
B) switchport port-security limit rate source-mac-shutdown
C) switchport port-security violation auto-shutdown
D) switchport port-security mac-exceed-port-shutdown - ANSWER A)
switchport port-security violation shutdown
What is a common failing associated with focusing only on compliance-drive
security?
A) Compliance-driven security tends to focus only on hardening internal
systems.
B) Compliance-driven security tends to focus only on hardening the
perimeter. C) Compliance-driven security tends to be costly in terms of
solutions and
resources.
D) Compliance-driven security tends to fail in the face of a persistent adversary.
- ANSWER D) Compliance-driven security tends to fail in the face of a
persistent adversary.
,Thank you for Purchasing this exam
Study Guide. We provide high-quality
academic materials to help students
excel in exams. Our other Services
include but not limited to: academic
research, University & College
assignments writing, essay writing,
Online Classes, and research projects.
Our services are reliable, affordable,
and plagiarism-free. All the Best in
your Exam. For more information;
Contact us at:
or
0R +254
741484450
Which of the following is described by Lockheed Martin as a countermeasure
action to the Kill Chain?
,Which of the following is the best practice to mitigate against the Cisco
, Discovery Protocol (CDP) information leakage attack?
A) Disable the CDP unless expressly required.
B) No mitigations are needed since CDP is secure by default.
C) Schedule the CDP patch regularly.
D) nable the SECDP feature in the CDP to secure the CDP. - ANSWER A)
Disable the CDP unless expressly required.
What would be one of the first steps for a security architect when building or
redesigning a security architecture to secure an organization?
A) Remove unnecessary egress traffic
B) Perform a perimeter pen test
C) Deploy patches to external systems
D) Identify critical assets - ANSWER D) Identify critical assets
B) Next-gen antivirus
C) NAC controls
E) Private VLANs - ANSWER D) Privat e
VLANs
Which of the following is a method of detecting a BYOAP problem on a
network?
A) Multiple VPN connections from the internal network.
B) Multiple URL requests from the same source IP.
C) Multiple SSIDs in the area.
D) Multiple user agent strings from the same IP address. - ANSWER D)
Multiple user agent strings from the same IP address.
What could be implemented to mitigate the risk of one client pivoting to another
on the same network?
A) Host-based antipivot
Which of the following prevents physical access to the network when plugging
in an unauthorized device?