1. Which of the following is a key feature of multi-factor authentication
(MFA)?
A. Password complexity requirements
B. Verification through two or more separate authentication factors
C. Biometric authentication only
D. Single sign-on across multiple systems
Answer: B) Verification through two or more separate authentication
factors
Rationale: MFA enhances security by requiring two or more forms of
authentication, such as something you know (password), something you
have (smartphone), or something you are (fingerprint).
2. What is the function of a Web Application Firewall (WAF)?
A. To block unauthorized access to internal networks
B. To monitor and block malicious web traffic to web applications
C. To scan for malware in web applications
D. To prevent denial-of-service attacks
Answer: B) To monitor and block malicious web traffic to web
applications
,Rationale: A WAF is designed to filter and monitor HTTP/HTTPS
traffic to and from a web application, protecting it from attacks such as
SQL injection, cross-site scripting (XSS), and others.
3. What is the main function of a vulnerability scanner?
A. To automatically patch vulnerabilities in systems
B. To identify potential weaknesses in systems and applications
C. To monitor network traffic for malicious activity
D. To block unauthorized users from accessing resources
Answer: B) To identify potential weaknesses in systems and
applications
Rationale: Vulnerability scanners are used to identify potential
vulnerabilities in systems, software, and networks, allowing
organizations to address them before they can be exploited.
4. Which of the following security controls is designed to detect and
prevent unauthorized access to a system or network?
A. Intrusion Prevention System (IPS)
B. Security Information and Event Management (SIEM)
C. Web Application Firewall (WAF)
D. Antivirus software
Answer: A) Intrusion Prevention System (IPS)
, Rationale: An IPS is designed to detect and prevent unauthorized
access or malicious activity by actively blocking or mitigating potential
threats in real-time.
5. What is the purpose of a "kill chain" in the context of cybersecurity
operations?
A. To ensure that sensitive data is encrypted
B. To describe the stages of a cyberattack from initial access to
completion
C. To identify all network traffic for potential malicious activity
D. To evaluate the security posture of external partners
Answer: B) To describe the stages of a cyberattack from initial access to
completion
Rationale: The "kill chain" model outlines the stages of a cyberattack,
from the attacker’s initial access to the final exploitation, helping
defenders recognize and disrupt attacks at various stages.
6. What is the purpose of implementing a Data Loss Prevention (DLP)
solution?
A. To encrypt data in transit
B. To prevent unauthorized access to sensitive data
C. To block malicious websites
D. To monitor user activity across the network
Answer: B) To prevent unauthorized access to sensitive data
(MFA)?
A. Password complexity requirements
B. Verification through two or more separate authentication factors
C. Biometric authentication only
D. Single sign-on across multiple systems
Answer: B) Verification through two or more separate authentication
factors
Rationale: MFA enhances security by requiring two or more forms of
authentication, such as something you know (password), something you
have (smartphone), or something you are (fingerprint).
2. What is the function of a Web Application Firewall (WAF)?
A. To block unauthorized access to internal networks
B. To monitor and block malicious web traffic to web applications
C. To scan for malware in web applications
D. To prevent denial-of-service attacks
Answer: B) To monitor and block malicious web traffic to web
applications
,Rationale: A WAF is designed to filter and monitor HTTP/HTTPS
traffic to and from a web application, protecting it from attacks such as
SQL injection, cross-site scripting (XSS), and others.
3. What is the main function of a vulnerability scanner?
A. To automatically patch vulnerabilities in systems
B. To identify potential weaknesses in systems and applications
C. To monitor network traffic for malicious activity
D. To block unauthorized users from accessing resources
Answer: B) To identify potential weaknesses in systems and
applications
Rationale: Vulnerability scanners are used to identify potential
vulnerabilities in systems, software, and networks, allowing
organizations to address them before they can be exploited.
4. Which of the following security controls is designed to detect and
prevent unauthorized access to a system or network?
A. Intrusion Prevention System (IPS)
B. Security Information and Event Management (SIEM)
C. Web Application Firewall (WAF)
D. Antivirus software
Answer: A) Intrusion Prevention System (IPS)
, Rationale: An IPS is designed to detect and prevent unauthorized
access or malicious activity by actively blocking or mitigating potential
threats in real-time.
5. What is the purpose of a "kill chain" in the context of cybersecurity
operations?
A. To ensure that sensitive data is encrypted
B. To describe the stages of a cyberattack from initial access to
completion
C. To identify all network traffic for potential malicious activity
D. To evaluate the security posture of external partners
Answer: B) To describe the stages of a cyberattack from initial access to
completion
Rationale: The "kill chain" model outlines the stages of a cyberattack,
from the attacker’s initial access to the final exploitation, helping
defenders recognize and disrupt attacks at various stages.
6. What is the purpose of implementing a Data Loss Prevention (DLP)
solution?
A. To encrypt data in transit
B. To prevent unauthorized access to sensitive data
C. To block malicious websites
D. To monitor user activity across the network
Answer: B) To prevent unauthorized access to sensitive data