answers
A city uses fiber optic cable to connect smaller networks throughout the whole
city.
Which type of network is described?
1) WLAN
2) SAN
3) MAN
4) WAN Ans✓✓✓-3) MAN
A Metropolitan Area Network (MAN) is designed to cover a city or a large campus,
connecting multiple Local Area Networks (LANs) within that area. It typically uses
high-speed fiber optic cables to provide efficient communication across a large
geographical area, such as a city.
A company is creating an information security policy document with many sub-
policies.
Which information should be included for each sub-policy to ensure the policy is
clear and comprehensive?
1) A rating of the sub-policy's importance
2) Compliance requirements the sub-policy is designed to meet
3) A list of similar or related sub-policies
4) Contact information for the regional government authority Ans✓✓✓-2)
Compliance requirements the sub-policy is designed to meet
,A company is developing a data protection methodology in order to improve data
protection measures.
What is a strategy that should be used?
1) Require that passwords change weekly
2) Implement wired equivalent privacy (WEP)
3) Avoid the use of asymmetric encryption
4) Implement authentication methodologies Ans✓✓✓-4) Implement
authentication methodologies
Authentication Methodologies: Authentication is a fundamental component of
data protection. Implementing strong authentication methodologies ensures that
only authorized individuals or systems can access sensitive data or resources. This
typically involves verifying the identity of users or devices through various
methods such as passwords, biometrics, two-factor authentication (2FA), or multi-
factor authentication (MFA).
A company is specifically worried about DoS/DDoS attacks.
Which strategy should be used as a mitigation against this type of attack?
1) Require complex passwords
2) Implement intrusion protection software
3) Monitor normal traffic patterns
4) Configure switch port tracing Ans✓✓✓-3) Monitor normal traffic patterns
,A company is updating the devices it provides to employees to ensure that each
employee has consistent network access.
What is the CIA triad component targeted in the scenario?
1) Availability
2) Application
3) Integrity
4) Confidentiality Ans✓✓✓-1) Availability
Availability: Availability ensures that information and resources are accessible and
usable when needed by authorized users. It focuses on ensuring that systems and
data are reliably available to legitimate users.
A company needs to maximize the number of virtual machines that can run on
each host.
Which hypervisor should be used?
1) Open source
2) Type 1
3) Type 2
4) Proprietary Ans✓✓✓-2) Type 1
Type 1 hypervisors, also known as bare-metal hypervisors, run directly on the
host's hardware without the need for a separate operating system. They are
optimized for performance and efficiency, making them ideal for environments
where maximizing the number of VMs per host is a priority.
, A company needs to specify security operations and management of all IT assets
within the seven domains of the IT infrastructure.
Which type of policy should be used?
1) Asset classification policy
2) Asset protection policy
3) Acceptable use policy
4) Asset management policy Ans✓✓✓-4) Asset management policy
Asset Management Policy: An Asset Management Policy defines how IT assets
(hardware, software, data) are managed throughout their lifecycle. It includes
procedures for acquisition, deployment, maintenance, and disposal of assets. This
policy ensures that assets are properly accounted for, maintained securely, and
used effectively to support business operations.
A company set up a firewall to analyze network traffic, considering each packet
and how groups of packets are used.
What is the form of access control involved in this scenario?
1) Discretionary
2) Rule-based
3) Context-based
4) Role-based Ans✓✓✓-3) Context-based