Security
442 questions
An IT security technician is updating baseline security policies for workstations deployed across an enterprise network. Match each workstation hardening control on the left with the specific risk or attack vector it is primarily designed to mitigate on the right.
Click a left item, then click its matching right item
Items
Matches
A network administrator is deploying a new wireless network for corporate laptops at a financial services firm. Corporate policy requires that every employee authenticate individually using their corporate domain credentials and that the network use the highest available encryption standard without relying on a shared passphrase. Which TWO of the following configurations should the administrator implement?
Select all that apply
An IT technician is auditing the wireless security of a small retail store's network. The store uses a SOHO wireless router configured with WPA2-Personal. During a security assessment, the technician discovers that an attacker parked outside could exploit a feature on the router to crack the network passphrase within a few hours by brute-forcing an eight-digit PIN, regardless of how long or complex the WPA2 passphrase is. Which of the following actions should the technician take to eliminate this vulnerability?
A network security administrator is standardizing wireless authentication and encryption technologies across a corporate enterprise network. Match each wireless security control or authentication protocol on the left with its primary operational requirement or technical characteristic on the right.
Click a left item, then click its matching right item
Items
Matches
A systems administrator needs to ensure that whenever users in the local Administrators group attempt to perform tasks requiring elevated privileges on Windows 11 workstations, they are forced to re-enter their administrative credentials on the secure desktop rather than simply clicking a confirmation button. Which Local Security Policy setting should the administrator configure?
During a security incident investigation, an IT support technician discovers that several employees in the finance department had their credentials compromised. Log analysis reveals that none of the affected employees received fraudulent emails or suspicious direct phone calls. Instead, all compromised users had routinely visited a highly specialized, trusted third-party regulatory news website that attackers secretly compromised to inject malicious credential-harvesting code. Which of the following threat types BEST describes this attack?
A network technician is setting up a wireless network for guests in a company's main reception area. Corporate security policy specifies that guest users should not be issued individual Active Directory credentials or a shared pre-shared key, but must be presented with a web page to accept an Acceptable Use Policy (AUP) before receiving network access. Which of the following wireless security configurations best meets these requirements?
An IT security analyst is tasked with implementing a workstation hardening baseline for desktop computers deployed in a sensitive healthcare records office. The hardening policy must specifically address three vulnerability vectors: preventing unauthorized access when staff step away briefly, preventing automated malware installation from attached flash drives, and reducing the local account attack surface. Which of the following configuration sets should the administrator apply to satisfy all three requirements?
A helpdesk supervisor is creating a training module to help new IT support technicians identify various security threats reported by corporate employees. Match each security threat on the left with its corresponding real-world incident description on the right.
Click a left item, then click its matching right item
Items
Matches
A desktop support technician needs to prevent standard domain users on a standalone Windows 11 Pro computer from requesting administrator privileges when running system tasks. The organization policy requires automatically denying elevation requests for standard users. Place the administrative steps in the correct sequential order to enforce this policy using Local Security Policy.
Drag items to arrange them in the correct order
A systems administrator is upgrading a corporate wireless network to enhance security for enterprise workstations connecting to internal domain resources. The administrator needs to ensure individual user authentication, centralized credential management, and protection against legacy wireless vulnerabilities. Which of the following security configurations should the administrator implement? (Select TWO.)
Select all that apply
A helpdesk technician at an architectural firm is troubleshooting a Windows 11 workstation that displayed unauthorized pop-ups and erratic process activity. The technician verified the presence of rogue adware and immediately isolated the machine by disconnecting its network cable and turning off wireless connections. According to the CompTIA standard 7-step malware remediation process, which of the following actions should the technician perform NEXT?
A helpdesk technician is remotely assisting a user on a Windows 11 Pro computer using a third-party screen sharing utility. When the technician attempts to perform an administrative task that triggers privilege elevation, the remote management software displays a black screen and prevents the technician from viewing or clicking the elevation dialog. Which of the following settings should be modified to resolve this issue while maintaining overall User Account Control functionality?
A field service technician is setting up a new wireless access point for a regional logistics branch. Central corporate security policy mandates that all employee wireless connections must be authenticated individually using their corporate Active Directory user accounts, and all transmitted data must be protected using strong AES encryption. Which of the following wireless security standards should the technician configure on the access point?
A network support technician at a municipal utility company is responding to a Windows 10 desktop infected with rogue adware and browser hijacking tools. Place the standard CompTIA malware remediation steps in the correct sequential order from first to last to properly resolve this incident.
Drag items to arrange them in the correct order
An IT administrator is preparing to reassign several high-performance NVMe solid-state drives (SSDs) from a server handling confidential financial data to an internal lab environment with lower security requirements. To comply with NIST SP 800-88 sanitization guidelines and ensure the drives remain operational for reuse, which method should the administrator employ?
A network security technician is standardizing wireless access controls across various corporate branch sites based on specific operational requirements. Match each wireless access scenario on the left with the appropriate security protocol or mechanism on the right.
Click a left item, then click its matching right item
Items
Matches
A security technician is configuring Windows Security and User Account Control (UAC) settings on newly deployed Windows 11 Pro workstations. The organization security policy requires that standard users are immediately blocked from attempting administrative privilege elevation without seeing a prompt for credentials. Additionally, any administrative actions initiated by the built-in Administrator account must run in Admin Approval Mode to prevent unprompted background elevation. Which of the following security policies in Local Security Policy (secpol.msc) should be configured to meet these requirements? (Select TWO.)
Select all that apply
During a routine audit at a logistics warehouse, an IT technician discovers that several staff members have downloaded unapproved third-party game packages directly from web browsers onto their corporate-managed handheld scanning devices. The devices run a customized embedded Android operating system and connect to an isolated warehouse subnet. The systems administrator needs to prevent users from installing unauthorized application packages (sideloading) while ensuring IT can still push central software updates remotely. Which of the following configurations should the administrator enforce via the Mobile Device Management (MDM) console to resolve this security risk?
A system administrator is preparing to deploy a newly imaged standalone Windows workstation into a high-security corporate network environment. To ensure defense-in-depth and prevent exposure to network-borne threats during setup, the administrator must execute the workstation hardening baseline in a logical, secure sequence. What is the correct order of steps the administrator should take to secure the workstation from initial setup to final network placement?
Drag items to arrange them in the correct order