Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 54 pages
Exam (elaborations)

COMPREHENSIVE INFORMATION SECURITY GUIDE WITH VERIFIED Q&A

Document preview thumbnail
Preview 4 out of 54 pages

Antivirus - ANSWER What specific software can examine a computer for any infections as well as monetary computer activity and skin new documents That might contain a virus Flash memory - ANSWER What type of storage is used on mobile devices Service pack - ANSWER What is the name for a cumulative package of all patches and hot fixes as well as additional features up to a given point SDIO - ANSWER A Wi-Fi enabled micro SD card is an example of what type of device Bayesian Filtering - ANSWER What type of filtering software divides email messages that have been received into two piles, spam and non-spam and then analyzes every word in each email and determines how frequently a word occurs in the spam pile compared to the not spam pile Least functionality - ANSWER What security concept states a user should only be given the minimum set of permissions required to perform necessary task 50 Workstation OS - ANSWER What type of OS managers hardware and software on a client computer 94. What tool is used to lure an attacker so that an administrator can capture, log and analyze the behavior of the attack? § NetFlow § Honeypot § IDS § Nmap - ANSWER § Honeypot 95. For what purpose would a network administrator use the Nmap tool? § To protect the private IP addresses of internal hosts § To identify specific network anomalies § To detect and identify open ports § To collect and analyze security alerts and logs - ANSWER § To detect and identify open ports 96. What is the purpose of a backdoor? § To enable software vendors to update software § For government access 51 § To gain unauthorized access to a system without normal authentication procedures § To allow developers to debug software - ANSWER § To gain unauthorized access to a system without normal authentication procedures 97. Which of the following is not associated typically with Wazuh processes? § Syslog § Applications § Log capture § Log aggregation - ANSWER § Applications 98. Which process allows log files to be enriched with additional data to provide context? § Log aggregation § Log collectors § Log reviews § Syslog - ANSWER § Log aggregation 99. Which of the following are not typically scanned during a vulnerability scan? § End users 52 § Network § Applications § Web applications - ANSWER § End users 100. A web application you are reviewing has an input field for username and indicates the username should be between 6 and 12 characters. You've discovered that if you input a username that's 150 characters or more in length, the application crashes. What is this is an example of? § Memory leak § Buffer overflow § Directory traversal § Content discovery - ANSWER § Buffer overflow 101. To protect software from reverse engineering by attackers, developers can use which of the following? § Dead code § Obfuscation § Binary diversity § Stored procedures - ANSWER § Obfuscation

Content preview

COMPREHENSIVE INFORMATION
SECURITY GUIDE WITH
VERIFIED Q&A
Appliance OS - ANSWER What type of OS and firmware is the
sign to manage a specific device like a video game console?
S What is a feature of a cryptographic hash function?
§ Hashing requires a public and a private key.
§ The hash function is a one-way mathematical function.
§ The output has a variable length.
§ The hash input can be calculated given the output value. -
ANSWER § The hash function is a one-way mathematical
function.
Secure boot - ANSWER What security standard was introduced
in conjunction with UEFI?
Granting users and systems a predetermined level of access -
ANSWER Authorization


Confidence that the system will act in a correct and predictable
manner in every situation - ANSWER Trustworthy Computing



1

,Logging of access and use of information resources - ANSWER
Accounting
stack.
Which type of cybercriminal is the most likely to create malware
to compromise an organization by stealing credit card
information?
§ white hat hackers
§ black hat hackers
§ gray hat hackers
§ script kiddies - ANSWER § black hat hackers


An organization allows employees to work from home two days
a week. Which technology should be implemented to ensure
data confidentiality as data is transmitted?
§ SHS
§ VLANS
§ RAID
§ VPN - ANSWER § VPN


A cybersecurity specialist is working with the IT staff to
establish an effective information security plan. Which
combination of security principles forms the foundation of a
security plan?

2

,§ confidentiality, integrity, and availability
§ technologies, policies, and awareness
§ secrecy, identify, and nonrepudiation
§ encryption, authentication, and identification - ANSWER §
confidentiality, integrity, and availability




Which cybersecurity weapon scans for use of default passwords,
missing patches, open ports, misconfigurations, and active IP
addresses?
§ packet analyzers
§ vulnerability scanners
§ packet sniffers
§ password crackers - ANSWER § vulnerability scanners


A cybersecurity specialist is asked to identify the potential
criminals known to attack the organization. Which type of
hackers would the cybersecurity specialist be least concerned
with?
§ black hat hackers
§ gray hat hackers
§ script kiddies
§ white hat hackers - ANSWER § white hat hackers
3

, Which technology can be used to ensure data confidentiality?
§ hashing
§ identity management
§ encryption
§ RAID - ANSWER § encryption


Users report that the network access is slow. After questioning
the employees, the network administrator learned that one
employee downloaded a third-party scanning program for the
printer. What type of malware might be introduced that causes
slow performance of the network? § virus
§ worm
§ spam
§ phishing - ANSWER § worm


What type of application attack occurs when data goes beyond
the memory areas allocated to the application?
§ buffer overflow
§ RAM Injection
§ SQL injection
§ RAM spoofing - ANSWER § buffer overflow


4

Document information

Uploaded on
January 6, 2025
Number of pages
54
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$18.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Sold
0
Followers
0
Items
49
Last sold
-


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions