S433 Module 5 Exam Study Guide
2026/2027 | Complete Exam Preparation |
Key Concepts, Questions & Answers
You are a manager of a bank and you suspect one of your tellers has stolen
money from their station. After talking with your supervisor, you place the
employee on leave with pay, suspend their computer account, and obtain their
proximity card and keys to the building. Which of the following policies did you
follow?
A. Mandatory vacations
B. Exit interviews
C. Adverse actions
D. Onboarding - correct answer-C. Adverse Actions
Which of the following principles stipulates that multiple changes to a computer
system should not be made at the same time?
A. Due diligence
B. Acceptable use
C. Change management
,D. Due care - correct answer-C. Change management
You are a security engineer and discovered an employee using the company's
computer systems to operate their small business. The employee installed their
personal software on the company's computer and is using the computer
hardware,
such as the USB port. What policy would you recommend the company
implement to prevent any risk of the company's data and network being
compromised?
A. Acceptable use policy
B. Clean desk policy
C. Mandatory vacation policy
D. Job rotation policy - correct answer-A. Acceptable use policy
What should be done to back up tapes that are stored off-site?
A. Generate a file hash for each backup file.
B. Scan the backup data for viruses.
C. Perform a chain of custody on the backup tape.
D. Encrypt the backup data. - correct answer-D. Encrypt the backup data
Which recovery site is the easiest to test?
A. Warm site
B. Cold site
, C. Hot site
D. Medium site - correct answer-C. Hot site
Which of the following is not a step of the incident response process?
A. Snapshot
B. Preparation
C. Recovery
D. Containment - correct answer-A. Snapshot
You are a security manager for your company and need to reduce the risk of
employees working in collusion to embezzle funds. Which of the following policies
would you implement?
A. Mandatory vacations
B. Clean desk
C. NDA
D. Continuing education - correct answer-A. Mandatory vacations
Which of the following plans best identifies critical systems and components to
ensure the assets are protected?
A. DRP
B. BCP
C. IT contingency plan
2026/2027 | Complete Exam Preparation |
Key Concepts, Questions & Answers
You are a manager of a bank and you suspect one of your tellers has stolen
money from their station. After talking with your supervisor, you place the
employee on leave with pay, suspend their computer account, and obtain their
proximity card and keys to the building. Which of the following policies did you
follow?
A. Mandatory vacations
B. Exit interviews
C. Adverse actions
D. Onboarding - correct answer-C. Adverse Actions
Which of the following principles stipulates that multiple changes to a computer
system should not be made at the same time?
A. Due diligence
B. Acceptable use
C. Change management
,D. Due care - correct answer-C. Change management
You are a security engineer and discovered an employee using the company's
computer systems to operate their small business. The employee installed their
personal software on the company's computer and is using the computer
hardware,
such as the USB port. What policy would you recommend the company
implement to prevent any risk of the company's data and network being
compromised?
A. Acceptable use policy
B. Clean desk policy
C. Mandatory vacation policy
D. Job rotation policy - correct answer-A. Acceptable use policy
What should be done to back up tapes that are stored off-site?
A. Generate a file hash for each backup file.
B. Scan the backup data for viruses.
C. Perform a chain of custody on the backup tape.
D. Encrypt the backup data. - correct answer-D. Encrypt the backup data
Which recovery site is the easiest to test?
A. Warm site
B. Cold site
, C. Hot site
D. Medium site - correct answer-C. Hot site
Which of the following is not a step of the incident response process?
A. Snapshot
B. Preparation
C. Recovery
D. Containment - correct answer-A. Snapshot
You are a security manager for your company and need to reduce the risk of
employees working in collusion to embezzle funds. Which of the following policies
would you implement?
A. Mandatory vacations
B. Clean desk
C. NDA
D. Continuing education - correct answer-A. Mandatory vacations
Which of the following plans best identifies critical systems and components to
ensure the assets are protected?
A. DRP
B. BCP
C. IT contingency plan