Information Assurance Security
Final Exam Comprehensive
Questions (Frequently Tested)
with Verified Answers Graded A+
Professional Academic Assistance Services
Services Offered
• Proctored Exam Assistance
• Online Class Management (Full Course Support)
• Exam Preparation & Study Materials
• Assignments and Coursework Support
• Essay and Research Paper Writing
• Discussion Posts & Responses
• Editing and Proofreading
• Confidential Academic Consultation
Contact Information
Email:
WhatsApp link: https://wa.me/254704846336
Fast Response | Confidential | Reliable Academic
Support
Helping Students Achieve Academic Excellence
Which one of the following objectives is not one of the three main
objectives that information security professionals must achieve to
,protect their organizations against cyber security threats?
A. Integrity. B. Nonrepudiation
C. Availability. C. Confidentiality - Answer: B
Tommy is assessing the security of several database servers in his
datacenter and realizes that one of them is missing a critical Oracle
security patch. What type of situation has Tommy detected?
A. Risk
B. Vulnerability
C. Hacker
D. Threat - Answer: B
Ben is preparing to conduct a cybersecurity risk assessment for his
organization. If he chooses to follow the standard process proposed by
NIST, which one of the following steps would come first?
A. Determine likelihood
B. Determine impact
C. Identify threats
D. Identify vulnerabilities - Answer: C
Cindy is conducting a cyber security risk assessment, and is considering
the impact that a failure of her city's power grid might have on the
organization. What type of threat is she considering?
A. Adversarial
B. Accidental
C. Structural
D. Environmental - Answer: D
Which one of the following categories of threat requires that
cybersecurity analysts consider the capability, intent, and targeting of
the threat source?
A. Adversarial
,B. Accidental
C. Structural
D. Environmental - Answer: A
Vincent is responding to a security incident that compromised one of
the organizations Web servers. He does not believe that the attackers
modified or stole any information, but they did disrupt access to the
organizations website. What cyber security objective did this attack
violate?
A. Confidentiality
B. Nonrepudiation
C. Integrity
D. Availability - Answer: D
Which one of the following is an example of an operational security
control?
A. Encryption software
B. Network firewall
C. Antivirus software
D. Penetration tests - Answer: D
Paul recently completed a risk assessment, and determined that his
network was vulnerable to hackers connecting to open ports on
servers. He implemented a network firewall to reduce the likelihood of
a successful attack. What risk management strategy did Paul choose to
pursue?
A. Risk mitigation
B. Risk avoidance
C. Risk transference
D. Risk acceptance - Answer: A
Roberts organization has a bring your own device (BYOD) policy, and he
would like to ensure that devices connected to the network under this
, policy you have current antivirus software. What technology can best
assist him with this goal?
A. Network firewall
B. Network access control (NAC)
C. Network segmentation
D. Virtual private network - Answer: B
When performing 802.1x authentication, what protocol does the
authenticator used to communicate with the authentication server?
A. 802.11g
B. EAP
C. PEAP
D. RADIUS - Answer: D
Juan is configuring a new device that would join his organization's
wireless network. The wireless network uses 802.1 X authentication.
What type of agent must be running on the device for it to join this
network?
A. Supplicant
B. Authenticator
C. Authentication server
D. Command and control - Answer: A
Rick is preparing a firewall rules that will allow network traffic from
external systems to a Web server, running the HTTPS protocol. What
TCP port must he allowed to pass through the firewall?
A. 25
B. 80
C. 143
D. 443 - Answer: D
What type of firewall provides the greatest degree of contextual
information, and can include information about users and applications
Final Exam Comprehensive
Questions (Frequently Tested)
with Verified Answers Graded A+
Professional Academic Assistance Services
Services Offered
• Proctored Exam Assistance
• Online Class Management (Full Course Support)
• Exam Preparation & Study Materials
• Assignments and Coursework Support
• Essay and Research Paper Writing
• Discussion Posts & Responses
• Editing and Proofreading
• Confidential Academic Consultation
Contact Information
Email:
WhatsApp link: https://wa.me/254704846336
Fast Response | Confidential | Reliable Academic
Support
Helping Students Achieve Academic Excellence
Which one of the following objectives is not one of the three main
objectives that information security professionals must achieve to
,protect their organizations against cyber security threats?
A. Integrity. B. Nonrepudiation
C. Availability. C. Confidentiality - Answer: B
Tommy is assessing the security of several database servers in his
datacenter and realizes that one of them is missing a critical Oracle
security patch. What type of situation has Tommy detected?
A. Risk
B. Vulnerability
C. Hacker
D. Threat - Answer: B
Ben is preparing to conduct a cybersecurity risk assessment for his
organization. If he chooses to follow the standard process proposed by
NIST, which one of the following steps would come first?
A. Determine likelihood
B. Determine impact
C. Identify threats
D. Identify vulnerabilities - Answer: C
Cindy is conducting a cyber security risk assessment, and is considering
the impact that a failure of her city's power grid might have on the
organization. What type of threat is she considering?
A. Adversarial
B. Accidental
C. Structural
D. Environmental - Answer: D
Which one of the following categories of threat requires that
cybersecurity analysts consider the capability, intent, and targeting of
the threat source?
A. Adversarial
,B. Accidental
C. Structural
D. Environmental - Answer: A
Vincent is responding to a security incident that compromised one of
the organizations Web servers. He does not believe that the attackers
modified or stole any information, but they did disrupt access to the
organizations website. What cyber security objective did this attack
violate?
A. Confidentiality
B. Nonrepudiation
C. Integrity
D. Availability - Answer: D
Which one of the following is an example of an operational security
control?
A. Encryption software
B. Network firewall
C. Antivirus software
D. Penetration tests - Answer: D
Paul recently completed a risk assessment, and determined that his
network was vulnerable to hackers connecting to open ports on
servers. He implemented a network firewall to reduce the likelihood of
a successful attack. What risk management strategy did Paul choose to
pursue?
A. Risk mitigation
B. Risk avoidance
C. Risk transference
D. Risk acceptance - Answer: A
Roberts organization has a bring your own device (BYOD) policy, and he
would like to ensure that devices connected to the network under this
, policy you have current antivirus software. What technology can best
assist him with this goal?
A. Network firewall
B. Network access control (NAC)
C. Network segmentation
D. Virtual private network - Answer: B
When performing 802.1x authentication, what protocol does the
authenticator used to communicate with the authentication server?
A. 802.11g
B. EAP
C. PEAP
D. RADIUS - Answer: D
Juan is configuring a new device that would join his organization's
wireless network. The wireless network uses 802.1 X authentication.
What type of agent must be running on the device for it to join this
network?
A. Supplicant
B. Authenticator
C. Authentication server
D. Command and control - Answer: A
Rick is preparing a firewall rules that will allow network traffic from
external systems to a Web server, running the HTTPS protocol. What
TCP port must he allowed to pass through the firewall?
A. 25
B. 80
C. 143
D. 443 - Answer: D
What type of firewall provides the greatest degree of contextual
information, and can include information about users and applications