Security
442 questions
A security technician is preparing training materials to help staff recognize different security risks. Match each threat type on the left with its correct description on the right.
Click a left item, then click its matching right item
Items
Matches
A desktop technician needs to increase the User Account Control (UAC) notification level on a Windows workstation to 'Always notify' using the classic interface. What is the correct sequence of steps to complete this configuration?
Drag items to arrange them in the correct order
A tier 2 helpdesk technician receives multiple incident reports from accounting personnel stating that when navigating to an industry-specific news and regulatory updates website they visit daily, their web browsers display certificate warnings and attempt to redirect them to a fake single sign-on portal. Upon investigation, the technician confirms that internal corporate DNS server records and local workstation hosts files are unmodified and accurate. Further forensic analysis reveals that malicious code was injected directly into the external news site to target visitors originating from the company's public IP address range. Which of the following security threat types is demonstrated in this scenario?
An IT support technician is reviewing user tickets regarding security concerns at a regional office. One ticket details an email sent specifically to the chief financial officer requesting an urgent transfer of funds to a fraudulent supplier account. Another ticket reports an unknown individual wearing high-visibility work attire who gained entry to the server room by carrying a heavy box and asking an employee to hold the secure door open. Which of the following social engineering attack types are demonstrated in these scenarios? (Select TWO.)
Select all that apply
An IT infrastructure team is designing physical security measures for a sensitive server room inside a corporate headquarters. The design must specifically prevent unauthorized individuals from tailgating authorized staff into the room and prevent electromagnetic signals from leaking outside the facility to mitigate physical signal eavesdropping. Which of the following physical security controls should be implemented to meet these requirements? (Select TWO.)
Select all that apply
A system administrator at a software development firm receives reports that remote employees received branded promotional USB flash drives in the mail labeled 'Q3 Firmware Update'. Simultaneously, physical security audit logs show an unauthorized individual entered the facility by presenting a fake service contractor badge and bringing coffee for the reception staff. Which of the following social engineering threat types are demonstrated in these scenarios? (Select TWO).
Select all that apply
An IT technician is setting up a wireless network for a branch office. To prevent unauthorized devices from connecting, the technician configures the access point to require a shared passphrase that all staff members enter on their devices to gain access. Which of the following wireless security modes is being implemented?
A security engineer is configuring an 802.1X wireless infrastructure for a company's mobile workforce. Organization policy mandates strong server authentication and encrypted credential transmission, but explicitly prohibits deploying client-side digital certificates onto user devices to minimize administrative overhead. Employees must authenticate using their existing domain password credentials. Which authentication protocol best satisfies all of these criteria?
A systems administrator needs to restrict administrative elevation behavior on a standalone Windows 11 Pro workstation so that administrators are required to enter credentials on a secure desktop whenever a program requests elevated privileges. What is the correct sequence of steps to configure this policy using the Local Security Policy snap-in?
Drag items to arrange them in the correct order
A desktop technician is configuring User Account Control (UAC) settings on a Windows workstation for a user whose display driver glitches whenever the screen dims during privilege elevation prompts. The technician needs to ensure the user is still alerted when programs attempt to make system changes, but without triggering the Secure Desktop dimming effect. Which UAC notification setting should the technician select?
A systems administrator is configuring a workstation in a high-traffic customer service area. The administrator must prevent unauthorized bystanders standing at side angles from viewing sensitive personal data displayed on the screen. Which of the following physical security controls is best suited for this requirement?
A technician is upgrading a wireless access point in a small office to enhance authentication security and migrate away from legacy pre-shared keys. The technician selects WPA3-Personal mode. Which of the following features and requirements are introduced by WPA3-Personal? (Select TWO.)
Select all that apply
A receptionist at a legal firm receives a phone call from an individual claiming to be a third-party IT compliance auditor. The caller states that an urgent system audit requires immediate verification of workstation access and asks the receptionist to read aloud the one-time passcode displayed on their authentication application. Which of the following social engineering threat types is being attempted?
During a security incident investigation at a healthcare facility, a systems administrator reviews badge logs and phone records following an unauthorized network intrusion. The report identifies two related occurrences:
1. An unauthorized individual entered a restricted server room by closely following behind a credentialed facility engineer who had swiped an access card to unlock the door.
2. Shortly after physical access was gained, several department managers received urgent telephone calls from an attacker posing as the Chief Information Officer (CIO). The caller created a fake emergency scenario regarding a network outage and persuaded the managers to dictate their active multi-factor authentication (MFA) verification codes over the call.
Which of the following social engineering threat vectors and physical security violations occurred during this incident? (Select TWO.)
Select all that apply
A helpdesk technician is preparing end-user security awareness training materials covering non-technical threat vectors. Which TWO of the following security threats rely primarily on physical actions or physical access rather than digital network communication? (Select TWO)
Select all that apply
A network technician is deploying a secure wireless network for a company's financial department. Organization security policy mandates individual user authentication using centralized domain accounts and high-strength data encryption. Which TWO of the following security protocols or standards should the technician implement to fulfill these security requirements?
Select all that apply
A tier 1 helpdesk technician receives an urgent telephone call from an individual claiming to be an executive assistant from corporate headquarters. The caller explains that their supervisor is currently presenting at an off-site conference and urgently needs their multi-factor authentication (MFA) token reset to access financial reports. To establish trust, the caller references internal project codenames and recent organizational changes, leveraging high pressure to convince the technician to bypass standard identity verification protocols. Which of the following social engineering threat types is being executed in this scenario?
An IT technician is explaining User Account Control (UAC) behavior in Windows 11 to a newly hired helpdesk intern. Which TWO of the following actions performed while logged in as a standard user account will require entering administrator credentials at a UAC prompt? (Select TWO.)
Select all that apply
An IT administrator is configuring Windows 11 Pro workstations located in a computer lab to prevent standard user accounts from generating credential prompts or asking for administrative credentials when running setup programs. The objective is to automatically reject elevation requests from standard users without user intervention. Which User Account Control (UAC) security option in Local Security Policy should be configured to meet this requirement?
A helpdesk technician is reviewing a security ticket submitted by a finance manager. The manager received a text message on her mobile phone appearing to come from the company's banking vendor, warning that the organization's payroll account would be locked within 30 minutes due to unverified compliance documentation. The message contained a hyperlink prompting her to log in immediately. Which of the following social engineering attack vectors describes this initial contact method?