Security Plus 10q Part 1

Create a visually engaging image representing cybersecurity concepts such as firewalls, hackers, digital locks, and secure networks, with a diverse group of people working on computers in an office setting.

Security Plus Quiz: Test Your Cybersecurity Knowledge

Welcome to the Security Plus Quiz! This quiz is designed for individuals seeking to deepen their understanding of cybersecurity concepts, threats, and protective measures. Whether you're a student, professional, or enthusiast, this quiz will challenge your knowledge and help you learn more about essential security practices.

Key features of the quiz include:

  • 10 engaging questions covering various cybersecurity topics
  • Multiple choice and checkbox formats for a varied experience
  • Instant feedback on answers to enhance learning
10 Questions2 MinutesCreated by DefensiveFox247
The IT department at a university is concerned about professors placing servers on the university network in an attempt to bypass security controls. Which of the following BEST represents this type of threat?
A. A script kiddie
B. Shadow IT
C. Hacktivism
D. White-hat
A commercial cyber-threat intelligence organization observes IoCs across a variety of unrelated customers. Prior to releasing specific threat intelligence to other paid subscribers, the organization is MOST likely obligated by contracts to:
A. A RAT was installed and is transferring additional exploit tools.
B. The workstations are beaconing to a command-and-control server.
C. A logic bomb was executed and is responsible for the data transfers.
D. A fireless virus is spreading in the local network environment.
An organization is developing a plan in the event of a complete loss of critical systems and data. Which of the following plans is the organization MOST likely developing?
Incident response
Communications
Disaster recovery
Data retention
A university with remote campuses, which all use different service providers, loses Internet connectivity across all locations. After a few minutes, Internet and VoIP services are restored, only to go offline again at random intervals, typically within four minutes of services being restored. Outages continue throughout the day, impacting all inbound and outbound connections and services. Services that are limited to the local LAN or WiFi network are not impacted, but all WAN and VoIP services are affected. Later that day, the edge-router manufacturer releases a CVE outlining the ability of an attacker to exploit the SIP protocol handling on devices, leading to resource exhaustion and system reloads. Which of the following BEST describe this type of attack? (Choose two.)
DoS
SSL stripping
Memory leak
Race condition
Shimming
Refactoring
A company recently set up an e-commerce portal to sell its product online. The company wants to start accepting credit cards for payment, which requires compliance with a security standard. Which of the following standards must the company comply with before accepting credit cards on its e-commerce platform?
PCI DSS
ISO 22301
ISO 27001
NIST CSF
Which of the following BEST describes a security exploit for which a vendor patch is not readily available?
A. Integer overflow
B. Zero-day
C. End of life
D. Race condition
The Chief Financial Officer (CFO) of an insurance company received an email from Ann, the company's Chief Executive Officer (CEO), requesting a transfer of $10,000 to an account. The email states Ann is on vacation and has lost her purse, containing cash and credit cards. Which of the following social-engineering techniques is the attacker using?
A. Phishing
B. Whaling
C. Typo squatting
D. Pharming
An organization wants to implement a third factor to an existing multifactor authentication. The organization already uses a smart card and password. Which of the following would meet the organization's needs for a third factor?
A. Date of birth
B. Fingerprints
C. PIN
D. TPM
An employee has been charged with fraud and is suspected of using corporate assets. As authorities collect evidence, and to preserve the admissibility of the evidence, which of the following forensic techniques should be used?
A. Order of volatility
B. Data recovery
C. Chain of custody
D. Non-repudiation
A Chief Security Officer (CSO) is concerned about the amount of PII that is stored locally on each salesperson's laptop. The sales department has a higher-than- average rate of lost equipment. Which of the following recommendations would BEST address the CSO's concern?
A. Deploy an MDM solution.
B. Implement managed FDE.
C. Replace all hard drives with SEDs.
D. Install DLP agents on each laptop.
{"name":"Security Plus 10q Part 1", "url":"https://www.quiz-maker.com/QPREVIEW","txt":"Welcome to the Security Plus Quiz! This quiz is designed for individuals seeking to deepen their understanding of cybersecurity concepts, threats, and protective measures. Whether you're a student, professional, or enthusiast, this quiz will challenge your knowledge and help you learn more about essential security practices.Key features of the quiz include:10 engaging questions covering various cybersecurity topicsMultiple choice and checkbox formats for a varied experienceInstant feedback on answers to enhance learning","img":"https:/images/course8.png"}
Powered by: Quiz Maker