1/18
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai | Chat |
|---|
No analytics yet
Send a link to your students to track their progress
Which component of the Zero Trust architecture is responsible for enforcing policies by allowing or denying access to resources?
A. Identity Provider
B. Policy Enforcement Point
C. Policy Engine
D. Threat Scope Reducer
B
In a Zero Trust model, which of the following principles best describes how access is granted to resources?
A. Role-based Access Control
B. Implicit Trust
C. Trust but Verify
D. Least Privilege
D
A company wants to implement a more flexible access control system that can adjust to changing user behavior. Which of the following technologies can help the company achieve this goal?
A. Security zones
B. MAC
C. Adaptive identity
D. Policy-driven access control
C
Neville, a security engineer, suggests his company create a fake document that appears to contain sensitive information in order to attract attackers. Which of the following is Neville suggesting be created?
A. Honeypot
B. Honeyfile
C. Honeynet
D. Honeytoken
B
Which of the following is a physical security measure typically employed outside buildings or sensitive areas to prevent vehicles from causing damage to property or gaining unauthorized access?
A. Intrusion Detection System
B. Wire Fencing
C. Bollards
D. Security Checkpoint
C
Which of the following best describes the primary purpose of a honeypot in a network environment?
A. To detect and divert potential attackers
B. To recover lost data after an attack
C. To block unauthorized access
D. To prevent malware from executing
A
Which component of the Zero Trust architecture is responsible for enforcing policies by allowing or denying access to resources?
A. Identity Provider
B. Policy Enforcement Point
C. Policy Engine
D. Threat Scope Reducer
B
In a Zero Trust model, which of the following principles best describes how access is granted to resources?
A. Role-based Access Control
B. Implicit Trust
C. Trust but Verify
D. Least Privilege
D
Which of the following would explain why a company would automatically add a digital signature to each outgoing email message?
❍ A. Confidentiality
❍ B. Integrity
❍ C. Authentication
❍ D. Availability
B
A27. A company would like to examine the credentials of each individual entering the data center building. Which of the following would BEST facilitate this requirement?
❍ A. Access control vestibule
❍ B. Video surveillance
❍ C. Pressure sensors
❍ D. Bollards
A
An organization is implementing a security model where all application requests must be validated at a policy enforcement point. Which of the following would BEST describe this model?
❍ A. Public key infrastructure
❍ B. Zero trust
❍ C. Discretionary access control
❍ D. Federation
B
A user has opened a helpdesk ticket complaining of poor system performance, excessive pop up messages, and the cursor moving without anyone touching the mouse. This issue began after they opened a spreadsheet from a vendor containing part numbers and pricing information. Which of the following is MOST likely the cause of this user's issues?
❍ A. On-path
❍ B. Worm
❍ C. Trojan horse
❍ D. Logic bomb
C
A security administrator has configured a virtual machine in a screened subnet with a guest login account and no password. Which of the following would be the MOST likely reason for this configuration?
❍ A. The server is a honeypot for attracting potential attackers
❍ B. The server is a cloud storage service for remote users
❍ C. The server will be used as a VPN concentrator
❍ D. The server is a development sandbox for third-party programming projects
A
A company is launching a new internal application that will not start until a username and password is entered and a smart card is plugged into the computer. Which of the following BEST describes this process?
❍ A. Federation
❍ B. Accounting
❍ C. Authentication
❍ D. Authorization
C
A company is concerned about security issues at their remote sites. Which of the following would provide the IT team with more information of potential shortcomings?
❍ A. Gap analysis
❍ B. Policy administrator
❍ C. Change management
❍ D. Dependency list
A
When a person enters a data center facility, they must check-in before they are allowed to move further into the building. People who are leaving must be formally checked-out before they are able to exit the building. Which of the following would BEST facilitate this process?
❍ A. Access control vestibule
❍ B. Air gap
❍ C. Pressure sensors
❍ D. Bollards
A
A company is updating components within the control plane of their zero-trust implementation. Which of the following would be part of this update?
❍ A. Policy engine
❍ B. Subjects
❍ C. Policy enforcement point
❍ D. Zone configurations
A
A company would like to automatically monitor and report on any movement occurring in an open field at the data center. Which of the following would be the BEST choice for this task?
❍ A. Bollard
❍ B. Microwave sensor
❍ C. Access control vestibule
❍ D. Fencing
B
A system administrator would like to prove an email message was sent by a specific person. Which of the following describes the verification of this message source?
❍ A. Non-repudiation
❍ B. Key escrow
❍ C. Asymmetric encryption
❍ D. Steganography
A