Threats, Attacks & Vulnerabilities
Technologies and Tools
Architecture and Design
Identity and Access Management
Risk Management
100

Which of the following are examples of denial-of-service attack (pick 3)?


A. Fraggle

B. Smurf

C. Gargomel

D. Teardrop

A. Fraggle

B. Smurf

D. Teardrop

100

Allows data on mobile devices to be remotely deleted if the device is lost or stolen.

A remote wipe
100

Used to reduce EMI output.

Shielding
100

A processes that occurs when a user provides appropriate credentials such as the correct username and password.

Authentication

100

Recovery site that has only power, telecommunications, and networking active all the time.

Warm site

200

Term given to a fraudulent wireless access point that is configured to lure connections to it.

Evil Twin
200

Prevents users and hackers from executing unauthorized applications, but does not prevent malicious code from executing.

Permits only known good applications.

Application whitelisting

200

This environment can help when performing security research, which studies the effects of unsafe files without the possibility of compromising the host system.

Virtual sandbox

200

An Extensible Markup Language (XML) framework for creating and exchanging security information between online partners.

SAML (Security Assertion Markup Language)

200

Names, addresses, phone numbers, email addresses, financial profiles, social security numbers, and credit card information.

Examples of personally identifiable information (PII)

300

A test that reveals security weaknesses through real-world attacks. The results can help identify areas for improvement and prioritize risks.

Penetration Test
300

A function of splitting a network into two or more using routers to connect each subnet together.

Subnetting or network address allocation

300

This type of cloud computing allows clients to outsource everything that would normally be in a typical IT department.

Infrastructure as a Service (IaaS)

300

Identity system in which the user never supplies credentials directly to any application or service except the originating identity provider.

Federated identity systems

300

Your organization is partnering with another organization that requires shared systems. What document outlines how the shared systems will interface?

Interconnection Security Agreement (ISA)

400

More transparent testing. Because you are provided with source code, you have more knowledge about the system.

White box testing

400

Used to capture network traffic and generate statistics for creating reports.

Protocol analyzer

400

A technology implemented when setting up a switched network to group users by department. Systems are logically connected into the same broadcast domain, regardless of their physical attachment to the network.

Virtual Local Area Network (VLAN)
400

Authentication in which a client sends its authentication details not directly to a target server, but to a key distribution center (KDC).

Kerberos
400

This designates the amount of data loss that is sustainable and up to what point in time data recovery could happen before business is disrupted.

Recovery Point Objective (RPO)

500

One of the most important countermeasures to prevent code injection attacks.

Input validation

500

Your organization requires a firewall feature that controls network activity associated with Denial of Service attacks. Which safeguard should be implemented?

A. Web Application firewall

B. Flood guard

C. Implicit deny

D. Port security

B. Flood guard

500

A network security vulnerability assessment has revealed that legacy internal vital sign monitors of a hospital’s emergency room are visibly exposed to the internet. Which control should be implemented?

A. Code wrappers
B. Network segmentation
C. Sandboxing
D. Automatic updates


B. Network segmentation

500

Originally developed for use in dial-up connectivity, this remote access system provides authentication and access control within an enterprise network.

Remote Authentication Dial-In User Service (RADIUS)

500

As the system administrator for your organization, you have been asked to calculate the ALE for a $5,000 server. The server crashes a lot. In the past year, the server has crashed 10 times, requiring a system reboot to recover with only 10% loss of data or function. What is the ALE of the server?

(5000 x 10) x 0.1 = $5000

(AV x EF)  x  ARO = ALE

SLE × ARO = ALE

M
e
n
u