Security
442 questions
A tier-2 desktop technician at an educational publishing firm has completed scanning and successfully removed a persistent rootkit infection from an isolated Windows 11 workstation. The technician has also configured scheduled automated daily anti-malware scans and system updates. Which of the following steps should the technician perform NEXT in the standard CompTIA malware remediation workflow?
A security technician is decommissioning magnetic hard disk drives (HDDs) containing sensitive financial files. Arrange the following steps in the correct chronological sequence for executing a compliant hardware sanitization and disposition lifecycle.
Drag items to arrange them in the correct order
A systems administrator is configuring a wireless access point for corporate employees. To comply with internal security policies, the wireless network must enforce individual credential authentication integrated with the central Active Directory domain, while disallowing vulnerable legacy protocols like TKIP. Which of the following security configurations should the administrator implement?
A user on a Windows 11 workstation reports that a legacy line-of-business application fails to save local configuration settings unless it is launched by right-clicking the icon and choosing 'Run as administrator'. The workstation is logged into by a Standard User account. The helpdesk technician wants to enable the user to save settings within the application without granting the account local administrator rights or lowering overall system User Account Control (UAC) security settings. Which of the following actions should the technician take?
A desktop support specialist at a corporate law firm is responding to an infected Windows 11 workstation exhibiting rogue security alerts and unauthorized background network traffic. The specialist has verified the malware infection and disconnected the system from the local network to quarantine it. Which TWO of the following actions should the specialist perform NEXT prior to running a full anti-malware remediation scan?
Select all that apply
An IT security administrator is implementing security baseline policies on corporate workstations to reduce the system attack surface. To comply with defense-in-depth requirements, the administrator must secure local user account configurations and prevent unauthorized automated execution of software via external storage. Which of the following procedures should the administrator perform to achieve this objective?
An IT security administrator is auditing endpoint compliance and hardening policies across corporate-issued mobile devices and legacy embedded infrastructure. Match each mobile or embedded security implementation on the left to its correct operational objective on the right.
Click a left item, then click its matching right item
Items
Matches
An IT security consultant is upgrading the wireless infrastructure for a regional healthcare clinic. To ensure compliance with patient data privacy regulations, the new network must provide centralized authentication using unique user credentials rather than a shared passphrase, while enforcing mutual authentication to protect against rogue access point attacks. Which of the following security controls and authentication mechanisms should the consultant implement? (Select TWO.)
Select all that apply
A technician is preparing to decommission several legacy magnetic hard disk drives (HDDs) that previously stored confidential employee records. Company policy mandates that the magnetic fields on the drive platters must be completely disrupted to render the stored data unrecoverable before the drives are removed from the facility. Which of the following data sanitization methods best fulfills this policy requirement?
A system administrator needs to configure a standalone Windows 11 Pro computer so that standard users are prompted to enter administrator credentials on the secure desktop whenever an action requires administrative privilege elevation. Place the steps required to configure this policy using the Local Security Policy snap-in in the correct sequential order from first to last.
Drag items to arrange them in the correct order
A company is implementing a Bring Your Own Device (BYOD) policy for mobile sales representatives accessing corporate customer records. The security team requires a solution that isolates corporate data from personal data, prevents copy-paste functions between managed and unmanaged applications, and allows administrators to remove all corporate records upon employee departure without erasing personal photos or applications. Which of the following Mobile Device Management (MDM) and Mobile Application Management (MAM) configuration strategies should the systems administrator implement?
A security technician is configuring local group policies for corporate laptops issued to field auditors who frequently operate in untrusted, public environments. The technician must reduce the attack surface against unauthorized physical access when unattended and mitigate brute-force risks against default local credentials. Which of the following workstation hardening measures should the technician implement to meet these security requirements? (Select TWO.)
Select all that apply
An IT support technician at a hospitality management company is troubleshooting a Windows 11 front-desk workstation that is displaying unauthorized security warnings and redirecting web browser traffic to malicious domains. The technician confirms that active rogue security software is present on the system. According to the CompTIA standard 7-step malware remediation process, which of the following actions should the technician take NEXT?
Match each storage medium and disposition scenario with its most appropriate data destruction or sanitization method based on CompTIA security standards.
Click a left item, then click its matching right item
Items
Matches
A network technician is configuring a SOHO wireless router for a small law firm. The firm wants to upgrade its wireless security to protect against offline password dictionary attacks and packet eavesdropping, but lacks the infrastructure to deploy a RADIUS server for central authentication. Which of the following wireless security standards should the technician implement?
An IT support technician is setting up several new computers for a small business running Windows 11 Home. The technician opens the Run dialog and attempts to launch the Local Security Policy console using secpol.msc to adjust User Account Control (UAC) elevation settings, but Windows displays an error stating that the file cannot be found. Which of the following explains why the technician is unable to open this management snap-in?
A cybersecurity technician at a digital media firm is responding to a workstation infected with spyware. Arrange the following remediation steps in the exact sequence required by the CompTIA 7-step malware removal process.
Drag items to arrange them in the correct order
An IT security technician is hardening several standalone Windows 11 workstations located in a hospital's semi-public reception lobby. The endpoints are utilized by floating medical staff to access check-in systems. According to the organization's security baseline, the technician must satisfy three core security controls:
1. Prevent unauthorized code from automatically running when removable storage devices are inserted, without disabling necessary USB hardware peripherals.
2. Ensure idle sessions automatically lock to protect patient data while maintaining active background processing for logged-in sessions.
3. Reduce exposure to targeted brute-force attacks against default built-in system accounts.
Which combination of administrative configurations best satisfies all three hardening requirements?
A network technician is hardening several newly installed, Ethernet-connected embedded digital signage appliances deployed in a public facility. The appliances run a lightweight embedded operating system and receive display content from a central server. Which combination of security controls best protects these embedded systems from local tampering and network compromise?
Match each wireless security protocol or implementation component on the left with its corresponding operational requirement or security characteristic on the right.
Click a left item, then click its matching right item
Items
Matches