ALCM
AD
Scan
Cloud Configs
Virtualization
100

These systems no longer receive vendor patches and update.

What is end of life?

100

No one should have access to this privelege.

What are local admin rights?

100

Our scan needs this account to run authenticated.

What is domain admin?
100

Our cloud configuration reviews are based on this industry baseline.

What are the CIS Foundations Benchmark?

100

Virtual machine monitor (VMM) is an alternative for this term.

What is a hypervisor?

200

The asset workpaper is the policy review for this complementary objective.

What is vulnerability scanning?

200

This tool binds the device ID to the user ID for MFA.

What is Trusted Platform Module (TPM)?

200
We deploy nessus on this type of device.

What is a VM?

200

We test M365 with this account.

What is a Global Reader?

200
This is the VMware model of a type-1 hypervisor.

What is ESXi?

300

This type of scan sends packets to find unknown devices.

What is active discovery?

300

Management uses this to design all controls for AD.

What is the IT Risk Assessment?

300

Credential accuracy is confirmed with this plugin.

What is SMB Log-in possible?

300

These tested policies support authentication session security.

What is conditional access?

300

These two types of traffic should be segmeneted.

What are management and migration?

400

This source of hardening guidelines is associated with NIST clients.

What are the DISA STIGs?

400

True or False: If no user has local admin rights, LAPS testing is not needed.

What is FALSE?

400

This port is used to access Nessus

8834
400

AWS collects logs and alerts in this console.

What is CloudWatch / CloudTrails?

400

EDR may not be on the guest system if this type of monitoring is not set-up.

What is introspective monitoring?

500

This tool can support the goals of an authorized software inventory (not an allow-list).

What is a web filter?

500

This privilege model replaces default security group membership.

What are tiered admin rights?

500

This port is used to access the Arrow Management Console.

What is 20443?

500

This common MFA type is recommended to be disabled by the CIS Foundations benchmark.

What is SMS?

500

These are used to generate workstations for virtualized desktop infrastructure (VDI) set-ups.

What are resource pools?

M
e
n
u