You are an Exchange Administrator for TechWorld Inc. The company uses a Windows 2008 Active Directory-based network. The network includes an Exchange Server 2010 organization. The messaging organization has one Hub Transport server, one Client Access server, and two Mailbox servers.
You plan to deploy an Edge Transport server in the messaging organization to reduce the attack surface. At which of the following locations should you deploy the Edge Transport server?
AActive Directory site
BIntranet
CBehind the inner firewall of an organization
DPerimeter network
0
Community Discussion
No comments yet. Be the first to start the discussion!
You are a security manager for Qualxiss Inc. Your company uses the OODA loop to resolve and make decisions about company issues. You have detected a security-breach issue in your company.
Which of the following breach-related procedures is part of the observe phase of the OODA loop?
AFollow the company security guidelines.
BDecide an activity based on a hypothesis.
CImplement an action practically as policies.
DConsider previous experiences of security breaches.
0
Community Discussion
No comments yet. Be the first to start the discussion!
You are an Incident Manager at Orangesect.Inc. You have been assigned to establish a new extension of the enterprise. The networking required for the new extension needs different cable types and an appropriate policy, which you will determine. Which stage of the incident-handling process involves this decision-making?
AContainment
BIdentification
CPreparation
DEradication
0
Community Discussion
No comments yet. Be the first to start the discussion!
You are the security manager of Microliss Inc. Your enterprise uses a wireless network infrastructure with access points that range from 150–350 feet. Employees using the network report that their passwords and important official information have been traced. You uncover the following clues:
The information has proven beneficial to another company.
The other company is located approximately 340 feet from your office.
The other company also uses a wireless network.
Your network bandwidth has degraded significantly.
Which of the following attack methods has been used?
AA piggybacking attack has been performed.
BThe information is traced using Bluebugging.
CA DOS attack has been performed.
DA worm has exported the information.
0
Community Discussion
No comments yet. Be the first to start the discussion!
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
You are working on your computer system running the Linux operating system. After working for a few hours, the hard disk enters an inactive (sleep) state. You try to restart the system and check the power circuits. You later discover that the hard disk has crashed. Which of the following precautionary methods should you apply to keep your computer safe from such issues?
AUse Incident handling
BUse OODA loop
CUse Information assurance
DUse SMART model.
You work as an Incident handler at Mariotrixt.Inc. You have followed the Incident handling process to address events and incidents. You identify a Denial of Service attack (DOS) from a network connected to your internal enterprise network. Which phase of the Incident handling process should you follow next to handle this incident?
AContainment
BPreparation
CRecovery
DIdentification
Which of the following options is not accessible from Windows Update?
ARestore Hidden Updates
BCheck for Updates
CView Update History
DView AntiVirus Software Update
You are a Network Administrator for Marioxnet Inc. and are responsible for managing two routers that use the BGP protocol for the enterprise network. One router is flooded with an unexpected volume of data packets, while the other starves because no packets reach it. Which of the following attacks could potentially cause this?
ADenial-of-Service
BEavesdropping
CSpoofing
DPacket manipulation
John is a security manager at Mariotx.Inc. He has been assigned to resolve a network-attack issue. To address the problem, he first examines critical information about the attacker's interactions with the network environment. He prepares a past-record and behavioral document of the attack to identify a direction for the solution. He then decides to act based on the prior hypothesis and takes the appropriate action against the attack. Which of the following strategies has John followed?
AManeuver warfare
BControl theory
CSWOT Analysis
DOODA loop
Which of the following service-provider classes can be used to create a digital signature?
ARC2CryptoServiceProvider
BRNGCryptoServiceProvider
CDESCryptoServiceProvider
DSHA1CryptoServiceProvider
EMD5CryptoServiceProvider
FDSACryptoServiceProvider
Which of the following is one pillar of the Information Assurance CIA triad?
AIntegrity
BAffiliation
CAccessibility
DIsolation
Adam, a novice Web user, is receiving a large amount of unsolicited commercial email at his email address. He suspects the messages he receives are spam. Which of the following actions should he take to stop the spam?
Each correct answer represents a complete solution. Choose all that apply.
Choose two
AForward a copy of the spam to the ISP to make the ISP conscious of the spam.
BSend an email to the domain administrator responsible for the initiating IP address.
CReport the incident to the FTC (The U.S. Federal Trade Commission) by sending a copy of the spam message.
DClose existing email account and open new email account.
Computer networks and the Internet are the primary modes of information transfer today. Which of the following techniques is used to modify messages, provide information and cyber security, and reduce the risk of hacking attacks during Internet communications and message passing?
ARisk analysis
BFirewall security
COODA loop
DCryptography
You are an executive manager at Mariotx.Inc. You entered into a business contract with a firm called Helfixnet.Inc. You shared the contract details with Helfixnet.Inc and also received acceptance approval. Later, you discover that Helfixnet.Inc is violating the contract rules, and when asked, they claim they had never entered into a contract with Mariotx.Inc. Which of the following Information Assurance directives can be applied to help prevent such issues?
AConfidentiality
BNon-repudiation
CData integrity
DData availability
You work as a Network Engineer in an enterprise with a secure internal network.
You want to implement an additional packet-filtering device between the enterprise internal network and the external network (the internet). Which network zone should you create to accomplish this?
AAutonomous system area (AS)
BDemilitarized zone (DMZ)
CBorder network area
DSite network area
A computer’s security against unauthorized use largely depends on the effectiveness of the access-control method applied. Which of the following statements are true about a computer access-control method?
Each correct answer represents a complete solution. Choose all that apply.
Choose three
AIt can be based upon fingerprint or eye recognition.
BIt can be time-synchronous.
CIt provides security against the virus attacks.
DIt provides security against Eavesdropping.
EIt checks the authenticity of a person.
FIt is used to encrypt a message before transmitting it on a network.
Which of the following tools is an open-source network intrusion prevention and detection system that functions as a network sniffer?
AIPLog
BSnort
CTimbersee
DSwatch
Which of the following factors determines the strength of encryption?
ACharacter-set encoding
BLength of the key
COperating system
DEase of use
Which two of the following cryptography methods does the NTFS Encrypting File System (EFS) use to encrypt data stored on a disk on a per-file basis?
Choose two
APublic key
BDigital certificates
CTwofish
DRSA
You are a SharePoint Administrator for TechWorld Inc. You need to protect the SharePoint server farm from viruses that users accidentally upload to SharePoint libraries. Antivirus software designed for use with Windows SharePoint Server has been installed, and you have signed in to the Central Administration site.
How should you configure the SharePoint site to protect the document libraries?
ASharePoint does not support antivirus solutions.
BRestrict users to read only on document libraries.
CChoose the Scan documents on upload option in the antivirus settings.
DRequire all documents to be scanned on the local PC before uploading to the SharePoint sit e.
Which of the following are application-layer protocols in the Internet Protocol (IP) suite?
Each correct answer represents a complete solution.
Choose two
AIGP
BIGRP
CTelnet
DSMTP
You are the Security Consultant and have been contacted by a client about its encryption and hashing algorithms. Their in-house network administrator says that the current hashing algorithm is an older algorithm with known weaknesses and lacks collision resistance. Which hashing algorithm are they most likely using?
APKI
BMD5
CSHA
DKerberos
Which process is responsible for monitoring an IT service and detecting when its performance falls below acceptable limits?
AService Asset and Configuration Management
BService Request Management
CEvent Management
DService Level Management
What does Wireless Transport Layer Security (WTLS) deliver for wireless devices?
Each correct answer represents a complete solution. Choose all that apply.
Community Discussion