Security
442 soru
A tier 2 IT support technician is reviewing an incident report from a regional office. A visitor wearing a high-visibility utility vest approached the front reception desk, presented a printed fake work order for emergency electrical maintenance, and convinced the receptionist to grant access to restricted communications closets without standard badge verification. Once inside, the intruder installed a rogue hardware keylogger on an unmonitored workstation. Which of the following social engineering techniques was primarily used to gain initial unauthorized physical entry to the facility?
A corporate workstation on a secure network segment has triggered automated endpoint alerts for an active file-encrypting ransomware outbreak. Place the following remediation tasks in the correct sequence according to the official CompTIA 7-step malware removal procedure.
Öğeleri doğru sıraya koymak için sürükleyin
An IT security analyst is tasked with decommissioning a storage array that contains self-encrypting enterprise NVMe solid-state drives (SSDs) holding sensitive customer financial data. The company plans to reuse the SSDs in an internal, non-sensitive testing laboratory. According to NIST SP 800-88 guidelines for media sanitization (Purge level), which of the following actions will securely sanitize the flash storage while keeping the drives operational for reuse?
An IT administrator is deploying automated maintenance scripts on a Windows 11 Pro system. When these scripts execute operations requiring elevated privileges while an administrative user is logged in, execution halts due to an interactive elevation prompt appearing on the dimmed desktop. The administrator needs to adjust the Local Security Policy (secpol.msc) so that elevation requests for administrative users in Admin Approval Mode proceed automatically without user interaction or desktop dimming. Which policy setting should the administrator configure?
An IT forensic technician is preparing to transport a confiscated smartphone containing critical evidence to a secure testing facility. To ensure the device cannot be wiped remotely or altered via cellular or wireless networks while in transit, which of the following physical security controls should be used?
A security administrator is hardening a standalone Windows 11 workstation. The organization requires that administrators must re-enter credentials on a secure desktop when elevating privileges, standard users must be automatically denied elevation without a prompt, and the changes must take effect immediately without a reboot. Arrange the following administrative steps in the correct logical sequence to accomplish this configuration.
Öğeleri doğru sıraya koymak için sürükleyin
A helpdesk technician has confirmed that a company laptop is infected with a trojan that is generating unauthorized network traffic. Following the standard CompTIA malware remediation process, which action should the technician take NEXT?
A technician needs to adjust the User Account Control (UAC) notification settings on a Windows 11 computer so that prompts still appear when programs try to make changes to the system, but the secure desktop screen dimming effect is disabled. Which setting on the UAC slider should the technician choose?
A technician needs to sanitize several solid-state drives (SSDs) containing sensitive company data. The drives must remain functional so they can be reassigned to non-sensitive workstations. Which of the following data sanitization methods should the technician perform?
As an IT security technician reviewing recently logged security events across the organization, match each security incident scenario to its corresponding social engineering or threat classification.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
An IT compliance manager is preparing to decommission a fleet of enterprise laptops containing NVMe Solid State Drives (SSDs) that held sensitive financial data. The assigned technician suggests utilizing an electromagnetic degausser to sanitize the drives prior to sending them off-site for recycling. Which of the following best explains why the compliance manager should reject the technician's proposed method?
A field technician is troubleshooting a Windows 11 desktop computer that was flagged for an active Trojan and spyware infection. The technician has already physically disconnected the network cable and turned off Wi-Fi to isolate the host. Which TWO of the following steps should the technician perform NEXT before initiating anti-malware scans and removal tools? (Select TWO.)
Geçerli olan tümünü seçin
Match each physical security control mechanism on the left with its primary protective objective on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A cybersecurity technician is resolving a security incident on a corporate endpoint. The technician identified a stealth keylogger infection, isolated the system from the network, disabled System Restore, updated the security software in Safe Mode, and successfully completed malware removal and verification. Which of the following actions must the technician perform next to adhere to the standard CompTIA malware remediation process?
A desktop support specialist is hardening standalone Windows 11 Pro workstations located in a public library environment. To satisfy new compliance mandates, the specialist must ensure that standard account users are completely blocked from attempting privilege elevation, and that administrative users must explicitly type their password on a isolated screen whenever an elevation request occurs. Which TWO of the following policy settings in Local Security Policy (secpol.msc) under Security Options should the specialist configure?
Geçerli olan tümünü seçin
An IT technician is tasked with decommissioning a batch of enterprise magnetic hard disk drives (HDDs) containing sensitive corporate financial data. Place the administrative and technical steps in the correct chronological order from first to last to ensure compliance with data sanitization standards and chain of custody guidelines.
Öğeleri doğru sıraya koymak için sürükleyin
A desktop support technician needs to change the User Account Control (UAC) notification level on a standalone Windows 11 computer. In what sequential order should the technician perform the steps to complete this configuration?
Öğeleri doğru sıraya koymak için sürükleyin
An IT technician is preparing a batch of retired magnetic hard drives for permanent disposal according to organizational security procedures. Place the hardware decommission and disposal steps in the correct chronological order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
An IT technician is investigating a security incident on a graphic designer's workstation. The designer reports that while visiting a popular, reputable industry news forum they browse daily, a malicious script executed in the background and attempted to steal their corporate login credentials. Forensic analysis confirms that attackers compromised the third-party website specifically to target users in the graphic design sector. Which of the following social engineering attacks occurred in this scenario?
An IT technician is preparing to decommission an enterprise storage system containing magnetic backup tapes, traditional magnetic Hard Disk Drives (HDDs), and Solid-State Drives (SSDs). The organization plans to refurbish and resell the SSDs, while the magnetic tapes and HDDs will be rendered completely unreadable before physical disposal. Which TWO of the following statements represent proper data destruction or sanitization practices for these media types?
Geçerli olan tümünü seçin