CEN4078 Exam Questions And Answers
From what data does a large portion of the security of the system
arise? -
correct answer ✅Data owned by the classes
Which of the following is additional information that is needed for
documenting security in procedures and functions? -
correct answer ✅External Resources
True or False? Performing an n-order scope map is simply a matter
of diagramming the connections that can occur from the variable's
inception to its retirement. -
correct answer ✅False
True or False? Quieting your error messages is one strategy to
reduce the overall attack surface of the system. -
correct answer ✅True
True or False? There is some in house development required for
outsourcing. -
correct answer ✅False
, CEN4078 Exam Questions And Answers
Who might be too close to or protective of the project to detect
certain vulnerabilities? -
correct answer ✅Developers
What is most important after it has been detected that an attacker
has sufficient access to compromise a system? -
correct answer ✅Means of Access
True or False? The environment for penetration testing should be as
close to the live environment as possible. -
correct answer ✅True
True or False? At the recover level, the only goal of the system is to
return to the normal optional state that is expected. -
correct answer ✅True
In a form or system interface, ____ are a playground to attackers. -
correct answer ✅Input Parameters
____________is software that is available to any consumer for
immediate use. -
correct answer ✅Commercial off the shelf (COTS)
From what data does a large portion of the security of the system
arise? -
correct answer ✅Data owned by the classes
Which of the following is additional information that is needed for
documenting security in procedures and functions? -
correct answer ✅External Resources
True or False? Performing an n-order scope map is simply a matter
of diagramming the connections that can occur from the variable's
inception to its retirement. -
correct answer ✅False
True or False? Quieting your error messages is one strategy to
reduce the overall attack surface of the system. -
correct answer ✅True
True or False? There is some in house development required for
outsourcing. -
correct answer ✅False
, CEN4078 Exam Questions And Answers
Who might be too close to or protective of the project to detect
certain vulnerabilities? -
correct answer ✅Developers
What is most important after it has been detected that an attacker
has sufficient access to compromise a system? -
correct answer ✅Means of Access
True or False? The environment for penetration testing should be as
close to the live environment as possible. -
correct answer ✅True
True or False? At the recover level, the only goal of the system is to
return to the normal optional state that is expected. -
correct answer ✅True
In a form or system interface, ____ are a playground to attackers. -
correct answer ✅Input Parameters
____________is software that is available to any consumer for
immediate use. -
correct answer ✅Commercial off the shelf (COTS)