Security+ 701 – Acronyms, Ports & Protocols

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/32

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 1:22 PM on 7/21/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

33 Terms

1
New cards

A company wants a single appliance that combines firewall, intrusion prevention, web filtering, antivirus, and VPN capabilities into one centrally managed solution. Which technology BEST meets this requirement?

Unified Threat Management (UTM)

2
New cards

A wireless network must support multiple authentication methods, including passwords, smart cards, digital certificates, and biometrics, without changing the underlying authentication framework. Which technology should be implemented?

Extensible Authentication Protocol (EAP)

3
New cards

A financial institution wants a tamper-resistant physical device dedicated to generating, storing, and protecting cryptographic keys used for digital certificates. Which solution should it deploy?

Hardware Security Module (HSM)

4
New cards

After a ransomware attack, management requires that all critical systems be restored within four hours. Which disaster recovery metric defines this requirement?

Recovery Time Objective (RTO)

5
New cards

A company performs nightly backups and determines it can tolerate losing no more than one hour of data if a disaster occurs. Which disaster recovery metric defines this requirement?

Recovery Point Objective (RPO)

6
New cards

A security analyst wants to detect malware activity occurring on an employee's laptop rather than monitoring traffic across the entire network. Which security solution should be deployed?

Host-based Intrusion Detection System (HIDS)

7
New cards

A security administrator wants to detect reconnaissance scans and malicious traffic crossing the organization's network perimeter rather than monitoring individual endpoints. Which security solution should be deployed?

Network-based Intrusion Detection System (NIDS)

8
New cards

An organization wants to enforce security policies, monitor cloud application usage, and prevent sensitive information from being uploaded to SaaS applications. Which technology BEST meets these requirements?

Cloud Access Security Broker (CASB)

9
New cards

A company wants to inspect outbound web traffic, block malicious websites, enforce browsing policies, and prevent users from downloading malware from the internet. Which security solution should be implemented?

Secure Web Gateway (SWG)

10
New cards

A company hosts a public-facing online banking application and wants to block SQL injection, cross-site scripting, and other web application attacks before requests reach the server. Which security solution should be implemented?

Web Application Firewall (WAF)

11
New cards

A company issues laptops to executives and wants every file, operating system component, and application protected if a laptop is stolen while powered off. Which encryption solution BEST meets this requirement?

Full Disk Encryption (FDE)

12
New cards

A company wants to ensure previously captured encrypted VPN traffic cannot be decrypted in the future, even if an attacker later steals the server's private key. Which cryptographic feature provides this protection?

Perfect Forward Secrecy (PFS)

13
New cards

A company wants to prevent employees from emailing Social Security numbers, customer records, or confidential financial documents outside the organization. Which security technology should be implemented?

Data Loss Prevention (DLP)

14
New cards

A laptop securely stores BitLocker encryption keys in a dedicated hardware chip that also validates the integrity of the boot process before startup. Which hardware component provides these capabilities?

Trusted Platform Module (TPM)

15
New cards

A mobile application requests current weather information from another company's servers using predefined requests and responses. Which technology enables this communication?

Application Programming Interface (API)

16
New cards

A DevOps team wants every new server automatically configured from scripts so every deployment is identical without requiring manual setup. Which practice is being used?

Infrastructure as Code (IaC)

17
New cards

A network administrator wants routing and switching decisions managed from a centralized software controller instead of configuring every switch individually. Which networking technology should be implemented?

Software-Defined Networking (SDN)

18
New cards

An organization requires employees to enter a new six-digit authentication code generated every 30 seconds by an authenticator app when logging in. Which authentication method is being used?

Time-based One-Time Password (TOTP)

19
New cards

A small business hires an outside company to manage its help desk, servers, backups, and network infrastructure. Which type of organization has been hired?

Managed Service Provider (MSP)

20
New cards

Before signing a cloud vendor, an organization requests evidence that the vendor's security controls have operated effectively over an extended period rather than being evaluated only once. Which audit report BEST satisfies this requirement?

SOC 2 Type II

21
New cards

A user attempts to browse an unapproved website and is redirected because the organization's web security policy blocks access to the site. Which default web service port is most likely being filtered?

Port 80 (HTTP)

22
New cards

Employees securely browse the company's banking website using encrypted web traffic. Which TCP port is most likely being used?

Port 443 (HTTPS)

23
New cards

A Linux administrator remotely logs into a server using an encrypted command-line session. Which TCP port should be allowed through the firewall?

Port 22 (SSH)

24
New cards

A file server allows employees to upload and download files using the File Transfer Protocol. Which TCP port must remain open for this service?

Port 21 (FTP)

25
New cards

An organization hosts its own email server and needs to receive and relay email between mail servers. Which TCP port should remain open?

Port 25 (SMTP)

26
New cards

A company provides remote Windows administration to system administrators over the network. Which TCP port should be open?

Port 3389 (RDP)

27
New cards

A Windows organization shares folders and printers across its internal network. Which TCP port is commonly associated with this service?

Port 445 (SMB)

28
New cards

A network administrator wants devices to automatically report interface status, CPU utilization, and hardware health to a centralized monitoring platform. Which UDP port is commonly associated with this protocol?

Port 161 (SNMP)

29
New cards

A DNS server responds to client requests by translating domain names into IP addresses. Which port should be allowed through the firewall for standard DNS queries?

Port 53 (DNS)

30
New cards

A company wants employees to securely retrieve email from a mail server using the encrypted version of IMAP. Which TCP port should be opened?

Port 993 (IMAPS)

31
New cards

Employees securely download email from a mail server using the encrypted version of POP3. Which TCP port is being used?

Port 995 (POP3S)

32
New cards

An organization wants users to submit email securely from their email clients to the outgoing mail server using SMTP over TLS. Which TCP port should be configured?

Port 587 (SMTP Submission)

33
New cards

An enterprise deploys a VPN solution that uses SSL/TLS to provide secure remote access through firewalls without requiring IPSec. Which TCP port is most commonly used?

Port 443 (SSL/TLS VPN)