CYSA + (251-300)

CYSA + (251-300)

KG

48 Qs

quiz-placeholder

Similar activities

AKT test (401-450)  Ескі вариант

AKT test (401-450) Ескі вариант

University

50 Qs

Quiz 1 Digital Literacy, Careers in IT, Information Technology

Quiz 1 Digital Literacy, Careers in IT, Information Technology

2nd Grade

50 Qs

Sec Study Quiz 5

Sec Study Quiz 5

Professional Development

48 Qs

Year 8 C3 2024 Past Paper

Year 8 C3 2024 Past Paper

8th Grade

47 Qs

MCTCC0113

MCTCC0113

University

50 Qs

CYSA + (351-400)

CYSA + (351-400)

KG

49 Qs

CySA + (201-250)

CySA + (201-250)

KG

48 Qs

Tin Tin 7

Tin Tin 7

7th Grade - University

43 Qs

CYSA + (251-300)

CYSA + (251-300)

Assessment

Quiz

Computers

KG

Easy

Created by

cysa cysa

Used 37+ times

FREE Resource

48 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Media Image

Which of the following is the order of priority for risk mitigation from highest to lowest?

(ExamTopic'e gore guncellendi)

A. A, B, C, D

B. A, D, B, C

C. B, C, A, D

D. C, B, D, A

E. D, A, C, B

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

NO.252 A security analyst for a large financial institution is creating a threat model for a specific threat actor that is likely targeting an organization's financial assets. Which of the following is the BEST example of the level of sophistication this threat actor is using?

A. Social media accounts attributed to the threat actor

B. Custom malware attributed to the threat actor from prior attacks

C. Email addresses and phone numbers tied to the threat actor

D. Network assets used in previous attacks attributed to the threat actor

E. IP addresses used by the threat actor for command and control

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

NO.253 A security analyst is investigating malicious traffic from an internal system that attempted to download proxy avoidance software as identified from the firewall logs but the destination IP is blocked and not captured. Which of the following should the analyst do?

A. Shut down the computer

B. Capture live data using Wireshark

C. Take a snapshot

D. Determine if DNS logging is enabled.

E. Review the network logs.

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Media Image

NO.254 An organization has the following policies: Services must run on standard ports. Unneeded services must be disabled. The organization has the following servers: 192.168.10.1 - web server 192.168.10.2 - database server A security analyst runs a scan on the servers and sees the following output:

A. Disable HTTPS on 192.168.10.1

B. Disable IIS on 192.168.10.1

C. Disable DNS on 192.168.10.2

D. Disable MSSQL on 192.168.10.2

E. Disable SSH on both servers

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

NO.255 A security analyst has a sample of malicious software and needs to know what the sample does? The analyst runs the sample in a carefully controlled and monitored virtual machine to observe the software behavior. Which of the following malware analysis approaches is this?

A. White box testing

B. Fuzzing

C. Sandboxing

D. Static code analysis

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

NO.256 A Chief Executive Officer (CEO) is concerned about the company's intellectual property being leaked to competitors. The security team performed an extensive review but did not find any indication of an outside breach. The data sets are currently encrypted using the Triple Data Encryption Algorithm. Which of the following courses of action is appropriate?

A. Limit all access to the sensitive data based on geographic access requirements with strict rolebased access controls

B. Enable data masking and reencrypt the data sets using AES-256.

C. Ensure the data is correctly classified and labeled, and that DLP rules are appropriate to prevent disclosure.

D. Use data tokenization on sensitive fields, reencrypt the data sets using AES-256, and then create an MD5 hash

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

NO.257 An information security analyst is working with a data owner to identify the appropriate controls to preserve the confidentiality of data within an enterprise environment One of the primary concerns is exfiltration of data by malicious insiders Which of the following controls is the MOST appropriate to mitigate risks?

A. Data deduplication

B. OS fingerprinting

C. Digital watermarking

D. Data loss prevention

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?

Discover more resources for Computers