Back to overview

Kopie - T.W.S. 601 Teil 2

Discover Kopie - T.W.S. 601 Teil 2: 90 flashcards with questions and answers.

Subject
Sciences / Computer science
Language of creation
English
90 flashcards No ratings yet 0 views
Add to my sets

Sign in to add this set to your collection. You will return here afterwards.

Cards in this set

Card 41

Question

371. An organization needs to implement more stringent controls over administrator/root credentials and service accounts. Requirements for the project include:
* Check-in/checkout of credentials
* The ability to use but not know the password
* Automated password changes
* Logging of access to credentials

Which of the following solutions would meet the requirements?

Answer

  • OAuth 2.0
  • A privileged access management system
  • An OpenID Connect authentication system
  • Secure Enclave

Card 42

Question

372. The application development team is in the final stages of developing a new healthcare application. The team has requested copies of current PHI records to perform the final testing.

Which of the following would be the best way to safeguard this information without impeding the testing process?

Answer

  • Installing a FIM on the application server
  • Deploying DLP tools
  • Anonymizing the data
  • Implementing a content filter

Card 43

Question

373. The alert indicates an attacker entered thousands of characters into the text box of a web form. The web form was intended for legitimate customers to enter their phone numbers.

Which of the attacks has most likely occurred?

Answer

  • Resource exhaustion
  • Cross-Site Scripting (XSS)
  • Buffer Overflow (Pufferüberlauf)
  • Privilege Escalation (Berechtigungserweiterung)

Card 44

Question

374. A security administrator recently used an internal CA to issue a certificate to a public application. A user tries to reach the application but receives a message stating, "Your connection is not private."

Which of the following is the best way to fix this issue?

Answer

  • Install the certificate on each endpoint that needs to use the application
  • Send a CSR to a known CA and install the signed certificate on the application's server.
  • Send the new certificate to the users to install on their browsers.
  • Ignore the warning and continue to use the application normally.

Card 45

Question

375. A network security manager wants to implement periodic events that will test the security team's preparedness for incidents in a controlled and scripted manner, Which of the following concepts describes this scenario?

Answer

  • Tabletop exercise
  • Red-team exercise
  • Functional exercise
  • Business continuity plan testing

Card 46

Question

376.

Answer

  • MAC flooding on Fa0/2 port
  • DNS poisoning on port Fa0/1
  • ARP poisoning Fa0/1 port
  • DDoSonFa02 port

Card 47

Question

377. An engineer wants to inspect traffic to a cluster of web servers in a cloud environment.

Which of the following solutions should the engineer implement? (Select two).

Answer

  • WAF
  • TLS
  • DAST
  • Load balancer
  • CASB
  • VPN

Card 48

Question

378. A backup operator wants to perform a backup to enhance the RTO and RPO in a highly time- and storage-efficient way that has no impact on production systems.

Which of the following backup types should the operator use?

Answer

  • Tape
  • Snapshot
  • Image
  • Full

Card 49

Question

379. A company is developing a new initiative to reduce insider threats. Which of the following should the company focus on to make the greatest impact?

Answer

  • Least privilege
  • Social media analysis
  • Mandatory vacation
  • Nondisclosure agreements

Card 50

Question

380. Security analysts have noticed the network becomes flooded with malicious packets at specific times of the day. Which of the following should the analysts use to investigate this issue?

Answer

  • Correlation dashboards
  • Web metadata
  • System files
  • Bandwidth monitors

Card 51

Question

381. An organization decided not to put controls in place because of the high cost of implementing the controls compared to the cost of a potential fine.

Which of the following risk management strategies is the organization following?

Answer

  • Acceptance
  • Avoidance
  • Mitigation
  • Transference

Card 52

Question

382. Which of the following is the correct order of evidence from most to least volatile in forensic analysis?

Answer

  • CPU cache, temporary filesystems, memory, disk
  • CPU cache, memory, temporary filesystems, disk
  • CPU cache, memory, disk, temporary filesystems
  • Memory, disk, temporary filesystems, CPU cache

Card 53

Question

383. Which of the following is constantly scanned by internet bots and has the highest risk of attack in the case of the default configurations?

Answer

  • Wearable sensors
  • Real-time operating systems
  • Raspberry Pi
  • Surveillance systems

Card 54

Question

384. A security architect is designing a remote access solution for a business partner. The business partner needs to access one Linux server at the company. The business partner wants to avid managing a password for authentication and additional software installation.

Which of the following should the architect recommend?

Answer

  • Smart card
  • Soft token
  • SSH Key
  • CSR

Card 55

Question

385. Cloud security engineers are planning to allow and deny access to specific features in order to increase data security. Which of the following cloud features is the most appropriate to ensure access is granted properly?

Answer

  • Resource policies
  • Auditing
  • API integrations
  • Virtual networks

Card 56

Question

386. A building manager is concerned about people going in and out of the office during non-working hours.

Which of the following physical security controls would provide the best solution?

Answer

  • Bollards
  • Badges
  • Cameras
  • Locks

Card 57

Question

387. A security analyst is investigating what appears to be unauthorized access to a corporate web application. The security analyst reviews the web server logs and finds the following entries:

Which of the following password attacks is taking place?

Answer

  • Brute-force
  • Rainbow table
  • Spraying
  • Dictionary

Card 58

Question

388. A network penetration tester has successfully gained access to a target machine.

Which of the following should the penetration tester do next?

Answer

  • Move laterally to another machine.
  • Establish persistence for future use.
  • Exploit a zero-day vulnerability.
  • Clear the log files of all evidence

Card 59

Question

389. A security analyst is currently addressing an active cyber incident. The analyst has been able to identify affected devices that are running a malicious application with a unique hash.

Which of the following is the next step according to the incident response process?

Answer

  • Containment
  • Lessons learned
  • Recovery
  • Preparation

Card 60

Question

390. A web architect would like to move a company's website presence to the cloud. One of the management team's key concerns is resiliency in case a cloud provider's data center or network connection goes down.

Which of the following should the web architect consider to address this concern?

Answer

  • Segmentation
  • Virtual private cloud
  • Availability zones
  • Containers

How to use this set

Read the preview and check whether the content and answers suit your learning goal. You can add the public set to your sets to study it. Your account shows the available actions.

Rejoining the server...

Rejoin failed... trying again in seconds.

Failed to rejoin.
Please retry or reload the page.

The session has been paused by the server.

Failed to resume the session.
Please reload the page.