m m m
FUNDAMENTALS OF INFORMATION SEC
m m m m
URITY EXAM 2024 mm m
Whichmcybersecuritymtermmismdefinedmasmthe mpotentialmformanmattackmonmamresource?
AmImpact
BmVulnerability
CmRisk
DmThreatm-mPrecise mAnswerm✔✔D
Whichmsecuritymtype mdeliberatelymexposesmamsystem'smvulnerabilitiesmormresourcesmtomanmattacker?
AmIntrusionmdetection
BmFirewalls
CmHoneypots
DmIntrusionmpreventionm-mPrecise mAnswerm✔✔C
Whichmtoolmcanmbe musedmtommapmdevicesmonmamnetwork,malongmwithmtheirmoperatingmsystemmtypesmandm
versions?
AmPacketmsniffer
BmPacketmfilter
CmPortmscanner
DmStatefulmfirewallm-mPrecise mAnswerm✔✔C
Whichmwebmattackmismamserver-side mattack?
,AmClickjacking
BmCross-site mscripting
CmSQLminjection
DmCross-site mrequestmforgerym-mPrecise mAnswerm✔✔C
AnmorganizationmemploysmamVPNmtomsafeguardmitsminformation.m
Whichmsecuritymprinciple mismprotectedmbymamVPN?
AmDataminmmotion
BmDatamatmrest
CmDataminmuse
DmDataminmstorage m-mPrecise mAnswerm✔✔A
Ammaliciousmhackermwasmsuccessfulminmamdenialmof mservice m(DoS)mattackmagainstmanminstitution'smmailmser
ver.mFortunately,mnomdatamwasmlostmormalteredmwhile mthe mservermwasmoffline.
m
Whichmtype mof mattackmismthis?
m
AmModification
BmFabrication
CmInterception
DmInterruptionm-mPrecise mAnswerm✔✔D
Amcompanymhasmhadmseveralmsuccessfulmdenialmof mservice m(DoS) mattacksmonmitsmemailmserver.
m
Whichmsecuritymprinciple mismbeingmattacked?
AmPossession
BmIntegrity
,CmConfidentiality
DmAvailabilitym-mPrecise mAnswerm✔✔D
Amnewmstart-
upmcompanymhasmstartedmworkingmonmamsocialmnetworkingmwebsite.mThemcompanymhasmmovedmallmitsmso
urce mcode mtomamcloudmprovidermandmwantsmtomprotectmthismsource mcode mfrommunauthorizedmaccess.
m
Whichmcybermdefense mconceptmshouldmthe mstart-
upmcompanymuse mtommaintainmthe mconfidentialitymofmitsmsource mcode?
m
AmAlarmmsystems
BmAccountmpermissions
CmAntivirusmsoftware
DmFile mencryptionm-mPrecise mAnswerm✔✔D
Amcompanymhasmanmannualmauditmof minstalledmsoftware mandmdatamstorage msystems.mDuringmthemaudit,mth
e mauditormasksmhowmthemcompany'smmostmcriticalmdatamismused.mThismdeterminationmhelpsmthe mauditorme
nsure mthatmthe mpropermdefense mmechanismsmare minmplace mtomprotectmcriticalmdata.
m
Whichmprinciple mof mthe mParkerianmhexadmismthe mauditormaddressing?
AmPossession
BmIntegrity
CmAuthenticity
DmUtilitym-mPrecise mAnswerm✔✔D
Whichmwebmattackmismpossible mdue mtomamlackmofminputmvalidation?
m
AmExtraneousmfiles
BmClickjacking
CmSQLminjection
DmCross-site mrequestmforgerym-mPrecise mAnswerm✔✔C
, Whichmfile mactionmimplementsmthe mprinciple mofmconfidentialitymfrommthe mCIAmtriad?
m
AmCompression
BmHash
CmBackup
DmEncryptionm-mPrecise mAnswerm✔✔D
Whichmcybermdefensemconceptmsuggestsmlimitingmpermissionsmtomonlymwhatmismnecessarymtomperformmam
particularmtask?
m
AmAuthentication
BmAuthorization
CmDefense minmdepth
DmPrinciple mof mleastmprivilege m- mPrecise mAnswerm✔✔D
Amcompanyminstitutesmamnewmpolicymthatm"Allmoffice mcomputermmonitorsmmustmfacemtowardmemployeesm
andmmustmfacemawaymfrommdoorways.mThemmonitormscreensmmustmnotmbemvisible mtompeople mvisitingmthe
m office."
m
Whichmprinciple mof mthe mCIAmtriadmismthismcompanymapplying?
AmAvailability
BmConfidentiality
CmUtility
DmIntegritym-mPrecise mAnswerm✔✔B
Atmamsmallmcompany,manmemployee mmakesmanmunauthorizedmdatamalteration.
m
Whichmcomponentmofmthe mCIAmtriadmhasmbeenmcompromised?