Question No. 1
Which of the following is NOT a benefit of maintaining a hardware inventory?
Facilitates asset management and procurement
Enhances the effectiveness of software inventory management
Simplifies troubleshooting and technical support
Eliminates the need for software updates and patching
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 2
Which compliance framework lays out guidelines for protecting the privacy of student education records in educational institutions?
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 3
What is the purpose of conducting assessments of IT systems in the context of information security and change management?
All of the above
To assess the potential impact of changes on overall system performance
To identify any vulnerabilities or weaknesses in the system
To determine the level of compliance with regulatory requirements
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 4
Which of the following is an example of a preventive control in computer operations?
Backup and recovery procedures
Firewall implementation
Incident response planning
Penetration testing
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 5
What does "data integrity" refer to in the context of security?
Preventing data loss during power outages
Encrypting data during transmission
Protecting data from unauthorized disclosure
Ensuring data is accurate and reliable
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 6
Which of the following is a characteristic of a denial-of-service (DoS) attack?
An attacker attempts to gain unauthorized access to a system.
An attacker steals or alters sensitive data.
An attacker floods a system with excessive requests, rendering it unable to function properly.
An attacker intercepts and modifies network traffic.
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 7
Which of the following is an example of a source of evidence (artifact) in a cybersecurity investigation?
Firewall logs recording network traffic.
Configuration files of network devices.
Security policy documents.
Training materials for security awareness.
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 8
Which of the following strategies is recommended for managing communication proactively after an event?
Regularly backing up data
Conducting a forensic analysis
Implementing multi-factor authentication
Keeping antivirus software up to date
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 9
Which of the following control types is focused on identifying vulnerabilities and weaknesses in systems and addressing them?
Preventive controls
Compensating controls
Detective controls
Corrective controls
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 10
Which of the following is NOT a component of an incident response policy?
Escalation procedures
Incident handling procedures
Roles and responsibilities
Backup and recovery processes
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 11
Which of the following best defines "Techniques, Tactics, and Procedures (TTP)" in the context of cybersecurity investigations?
A framework for analyzing network traffic.
A pattern of behavior adopted by threat actors.
A set of guidelines for securing network devices.
An organized digital evidence collection process.
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 12
Which technology is commonly used to monitor network data and identify security incidents?
SIEM (Security Information and Event Management)
IDS (Intrusion Detection System)
SOAR (Security Orchestration, Automation, and Response)
Firewall
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 13
Vulnerability refers to:
The degree to which a threat is capable of causing damage.
The likelihood of a security incident occurring.
The potential for loss or harm as a result of a threat exploiting a vulnerability.
The exploitation of a vulnerability by a threat.
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 14
Which of the following helps to ensure the confidentiality of data in computer operations?
Data integrity controls
Access control lists (ACLs)
Intrusion Detection System (IDS)
Antivirus software
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 15
Which of the following is an important step during the containment phase of incident handling?
Preserving evidence for forensic investigation
Notifying law enforcement agencies
Implementing temporary workarounds to mitigate the impact
Identifying the root cause of the incident
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)