Security
442 questions
A technician has finished removing malware from a corporate desktop, scheduled routine anti-malware scans, and created a new System Restore point. Which of the following actions represents the final step in the standard CompTIA malware remediation workflow?
An enterprise technician is tasked with decommissioning a hybrid storage array containing both SATA Solid-State Drives (SSDs) and SAS Magnetic Hard Disk Drives (HDDs) that store sensitive financial data. According to NIST SP 800-88 guidelines, the media must undergo sanitization to the 'Purge' standard to prevent data recovery via advanced laboratory techniques. Additionally, corporate policy mandates that all storage media must remain physically operational after sanitization so they can be resold to a third-party vendor. Which of the following procedures correctly complies with these requirements for both drive types?
A network technician is configuring wireless access for a medical clinic's administrative staff. Management specifies that all employees must authenticate using their individual corporate domain credentials rather than sharing a single passphrase, and that wireless traffic must be protected with strong AES encryption. Which of the following wireless security configurations best satisfies these requirements?
A systems administrator is configuring local security policies on a shared Windows workstation deployed in an unmonitored kiosk area. The system must allow users to interact with a web portal while preventing automatic execution of untrusted scripts from inserted removable media, mitigating credential harvesting through legacy name resolution fallback protocols, and minimizing the overall local attack surface. Which of the following sets of hardening measures best achieves these security objectives?
An IT support technician receives multiple tickets from accounting department staff members who report being directed to a suspicious web page when attempting to access the official corporate portal at `https://ledger.company.com`. The technician verifies that users entered the exact, correct web address into their browser address bars. Further investigation reveals that local hosts files are intact, but an attacker successfully compromised local DNS server records to point the corporate portal domain name to an external malicious server. Which of the following threat types best describes this attack?
An IT technician is preparing a fleet of decommissioned desktop computers containing both magnetic hard disk drives (HDDs) and solid-state drives (SSDs) for transport to an off-site physical destruction facility. Corporate security policy mandates that all storage media must undergo on-site logical sanitization or deactivation to purge all sensitive data prior to leaving the facility. Which TWO of the following procedures should the technician perform to properly sanitize these specific media types on-site? (Select TWO.)
Select all that apply
A technician is updating an enterprise data disposition policy for retired equipment. Match each data destruction method to its correct operational application and effect.
Click a left item, then click its matching right item
Items
Matches
A technician needs to configure corporate desktops so that they automatically secure themselves when users leave their desks unattended for extended periods. Which of the following workstation hardening best practices should the technician implement?
A system administrator is configuring local security policies on Windows 11 Professional workstations to meet corporate compliance standards. The security policy requires that whenever an administrative user performs a task requiring elevated rights, Windows must force the user to re-enter their administrative credentials on the Secure Desktop rather than allowing them to proceed by clicking a simple consent button. Which Local Security Policy policy setting should be modified to enforce this prompt behavior?
A desktop analyst receives a ticket regarding a corporate Windows 11 computer that has been behaving erratically, showing unauthorized background processes modifying system configurations. The analyst completes the initial symptom verification and immediately disconnects all Ethernet and Wi-Fi connections to prevent lateral movement across the internal subnet. Following standard CompTIA best-practice methodology for malware remediation, which action must the analyst perform NEXT before updating anti-malware definitions and running remediation scans?
An IT technician is troubleshooting an older 32-bit custom accounting application on a Windows 11 Enterprise workstation. When standard users run the application, it appears to function normally and save configuration changes, but these changes are invisible to other users on the same machine. When an administrator logs in and runs the application, the application fails to load those user settings. What Windows User Account Control (UAC) feature is responsible for this behavior?
An IT technician is installing several new smart security cameras across an office building. These embedded IoT devices connect directly to the local network. Which of the following actions should the technician take first to prevent unauthorized administrative access to these devices?
A security analyst is defining baseline system hardening guidelines for enterprise workstations deployed in a corporate environment. The objective is to mitigate legacy network credential spoofing vulnerabilities and reduce the local attack surface against targeted brute-force attempts on default administrative privileges. Which of the following technical hardening measures should be implemented to achieve these specific security objectives? (Select TWO.)
Select all that apply
A network administrator is setting up a new wireless network for a corporate accounting department. The company's security policy mandates that every employee authenticates using their unique domain credentials and that authentication requests are handled centrally. Which of the following components or standards should the administrator configure to achieve this deployment? (Select TWO.)
Select all that apply
A systems analyst is reviewing recent security incident reports at a medium-sized enterprise. In the first incident, several employees in the marketing department received SMS text messages claiming their corporate email passwords had expired and prompting them to log into a malicious link. In the second incident, an unidentified individual wearing a fake delivery driver uniform entered the office building lobby and presented a falsified work order to convince the receptionist to grant access past the security desk. Which of the following social engineering threat types were demonstrated in these scenarios? (Select TWO.)
Select all that apply
Match each mobile device or embedded system security control on the left with its corresponding technical implementation objective or enforcement capability on the right.
Click a left item, then click its matching right item
Items
Matches
A healthcare organization is preparing to decommission an array of enterprise Self-Encrypting Drives (SEDs) containing magnetic platters that stored protected health information (PHI). The IT department plans to reassign these physical hard drives to a non-sensitive internal development environment. The compliance policy requires a NIST-compliant purge method that renders all historical data unrecoverable via advanced laboratory techniques while preserving the drive hardware for immediate reuse. Which of the following data disposition methods should the technician perform?
A field systems engineer is configuring wireless connectivity for a newly established regional office. The company security policy mandates that all employees authenticate using their individual network credentials via an existing RADIUS server, ensuring dynamic per-session encryption keys rather than a static shared passphrase. Which wireless security configuration should the engineer implement on the access points?
Match each workstation hardening policy or control on the left to its corresponding primary risk mitigation objective on the right.
Click a left item, then click its matching right item
Items
Matches
A desktop support technician needs to sanitize several decommissioned magnetic hard disk drives (HDDs) that contained confidential customer financial records before releasing them to an off-site recycling vendor. The technician requires an on-site method that neutralizes the magnetic domains of the platters, rendering the stored data completely unrecoverable and the drives permanently inoperable. Which of the following data destruction methods best fulfills these requirements?