A security consultant discovers that an organization is using the PCL protocol to print documents, utilizing t
A security consultant discovers that an organization is using the PCL protocol to print documents, utilizing the default driver and print settings. Which of the following is the MOST likely risk in this situation? A. An attacker can access and change the printer configuration. B. SNMP data leaving the printer will not be properly encrypted. […]
Which of the following access control models has been applied to this user’s account?
A user has attempted to access data at a higher classification level than the user’s account is currently authorized to access. Which of the following access control models has been applied to this user’s account? A. MAC B. DAC C. RBAC D. ABAC
Which of the following is the BEST way to do this?
As part of a new industry regulation, companies are required to utilize secure, standardized OS settings. A technical must ensure the OS settings are hardened. Which of the following is the BEST way to do this? A. Use a vulnerability scanner. B. Use a configuration compliance scanner. C. Use a passive, in-line scanner. D. Use […]
Which of the following security controls does an iris scanner provide?
Which of the following security controls does an iris scanner provide? A. Logical B. Administrative C. Corrective D. Physical E. Detective F. Deterrent
If the database is restored on Tuesday afternoon, which of the following is the number of individual backups t
A database backup schedule consists of weekly full backups performed on Saturday at 12:00 a.m. and daily differential backups also performed at 12:00 a.m. If the database is restored on Tuesday afternoon, which of the following is the number of individual backups that would need to be applied to complete the database recovery? A. 1 […]
Which of the following policies or procedures could have prevented this from occurring?
A department head at a university resigned on the first day of the spring semester. It was subsequently determined that the department head deleted numerous files and directories from the server-based home directory while the campus was closed. Which of the following policies or procedures could have prevented this from occurring? A. Time-of-day restrictions B. […]
Which of the following changes to the security configuration of the accounts payable module would BEST mitigat
An organization’s internal auditor discovers that large sums of money have recently been paid to a vendor that management does not recognize. The IT security department is asked to investigate the organization’s ERP system to determine how the accounts payable module has been used to make these vendor payments. The IT security department finds the […]
An organization is using a tool to perform a source code review. Which of the following describes the case in
An organization is using a tool to perform a source code review. Which of the following describes the case in which the tool incorrectly identifies the vulnerability? A. False negative B. True negative C. False positive D. True positive
Which of the following encryption methods does PKI typically use to securely protect keys?
Which of the following encryption methods does PKI typically use to securely protect keys? A. Elliptic curve B. Digital signatures C. Asymmetric D. Obfuscation
Which of the following should the administrator implement to meet the above requirements?
A security administrator is developing controls for creating audit trails and tracking if a PHI data breach is to occur. The administrator has been given the following requirements: • All access must be correlated to a user account. • All user accounts must be assigned to a single individual. • User access to the PHI […]