which of the following reasons should administrator take advantage of the Subject Alternative Name (SAM) attri
A security administrator is trying to encrypt communication. For which of the following reasons should
administrator take advantage of the Subject Alternative Name (SAM) attribute of a certificate?
Which of the following actions are MOST appropriate to harden applications against infiltration by former empl
After a merger between two companies a security analyst has been asked to ensure that the
organization’s systems are secured against infiltration by any former employees that were terminated
during the transition. Which of the following actions are MOST appropriate to harden applications against
infiltration by former employees? (Select TWO)
Which of the following security activities should also have been performed to discover vulnerabilities earlier
A new mobile application is being developed in-house. Security reviews did not pick up any major flaws,
however vulnerability scanning results show fundamental issues at the very end of the project cycle.
Which of the following security activities should also have been performed to discover vulnerabilities
earlier in the lifecycle?
Which of the following subnets would BEST meet the requirements?
A security administrator is creating a subnet on one of the corporate firewall interfaces to use as a DMZ
which is expected to accommodate at most 14 physical hosts. Which of the following subnets would BEST
meet the requirements?
Which of the following should be implemented in order to meet the security policy requirements?
A company has a security policy that specifies all endpoint computing devices should be assigned a
unique identifier that can be tracked via an inventory management system. Recent changes to airline
security regulations have cause many executives in the company to travel with mini tablet devices instead
of laptops. These tablet devices are difficult to tag and track. An RDP application is used from the tablet to
connect into the company network. Which of the following should be implemented in order to meet the
security policy requirements?
Which of the following is the BEST technical controls that will help mitigate this risk of disclosing sensitiv
The security administrator receives an email on a non-company account from a coworker stating that
some reports are not exporting correctly. Attached to the email was an example report file with several
customers’ names and credit card numbers with the PIN. Which of the following is the BEST technical
controls that will help mitigate this risk of disclosing sensitive data?
Which of the following security measures did the technician MOST likely implement to cause this Scenario?
A technician is configuring a wireless guest network. After applying the most recent changes the
technician finds the new devices can no longer find the wireless network by name but existing devices arestill able to use the wireless network. Which of the following security measures did the technician MOST
likely implement to cause this Scenario?
Which of the following would correct the deficiencies?
A security administrator has been assigned to review the security posture of the standard corporate
system image for virtual machines. The security administrator conducts a thorough review of the system
logs, installation procedures, and network configuration of the VM image. Upon reviewing the access logs
and user accounts, the security administrator determines that several accounts will not be used in
production. Which of the following would correct the deficiencies?
Which of the following has the application programmer failed to implement?
Although a web enabled application appears to only allow letters in the comment field of a web form,
malicious user was able to carry a SQL injection attack by sending special characters through the web
comment field. Which of the following has the application programmer failed to implement?
Which of the following is being described?
An attacker discovers a new vulnerability in an enterprise application. The attacker takes advantage of the
vulnerability by developing new malware. After installing the malware the attacker is provided with
access to the infected machine. Which of the following is being described?