Security
442 soru
An IT administrator is preparing a security reference guide for mobile devices. Match each mobile security term on the left with its corresponding operational description on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A systems administrator needs to prevent standard users from attempting privilege elevation on a standalone Windows 11 workstation by suppressing elevation prompts entirely. Arrange the steps required to configure this security restriction using the Local Security Policy management console in the correct administrative sequence.
Öğeleri doğru sıraya koymak için sürükleyin
A tier-2 IT support technician is responding to a confirmed ransomware infection on an enterprise Windows workstation. Place the following remediation actions in the correct sequential order according to the standard CompTIA 7-step malware removal process.
Öğeleri doğru sıraya koymak için sürükleyin
An IT support technician is troubleshooting a workstation in a corporate office. The user reports that after finding a flash drive in the building parking lot and plugging it into the workstation to identify its owner, the system became sluggish and initiated unauthorized background network connections. Which of the following social engineering threat types best describes this attack vector?
A desktop support technician is configuring security settings on Windows 11 Pro workstations in a shared corporate training lab. Company security policy requires that standard user accounts are automatically denied privilege elevation without displaying a User Account Control (UAC) credential prompt. Arrange the steps in the correct order to configure and verify this policy setting.
Öğeleri doğru sıraya koymak için sürükleyin
An IT technician is deploying new Windows workstations for a finance department. To prevent unauthorized or malicious software from automatically executing when employees insert USB flash drives, which of the following workstation hardening best practices should the technician implement?
An IT technician is preparing to decommission several company workstations containing a mix of Solid-State Drives (SSDs) and enterprise Magnetic Hard Disk Drives (HDDs). Company policy requires that all data on the retired drives be rendered completely unrecoverable according to NIST sanitization guidelines before handing the hardware off to a third-party recycler, and that proof of disposition be retained for regulatory compliance. Which of the following steps should the technician take to satisfy these requirements? (Select TWO.)
Geçerli olan tümünü seçin
A system administrator is hardening a fleet of standalone Windows 11 desktops used by shift workers in a medical laboratory. The security compliance baseline requires prohibiting automatic execution of files from removable storage media, disabling unused guest access, and preventing unauthorized observers from viewing previously logged-on usernames at the Windows sign-in screen. During audit testing, inserting a USB flash drive still presents a pop-up menu allowing users to open media files, and the sign-in screen continues to display the username of the last technician who logged in. Which of the following policy configurations should the administrator implement to resolve both compliance issues?
An IT security technician is decommissioning a magnetic Hard Disk Drive (HDD) that stored highly sensitive enterprise financial data. To maintain compliance and follow industry best practices, the technician must execute a complete sanitization, destruction, and chain-of-custody lifecycle protocol. What is the correct sequence of steps the technician should take from initial decommissioning to final verification?
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise administrator is deploying security policies for a fleet of mobile devices used by field technicians accessing sensitive customer data. The organization requires that all corporate emails, internal documents, and proprietary tools operate within an encrypted, isolated workspace that prevents copy-paste capabilities into personal applications. Furthermore, IT must be able to perform a targeted removal of only enterprise data when an employee leaves the company, without affecting personal photos or personal applications. Which of the following controls should the administrator implement to satisfy these requirements?
An organization allows employees to use personal smartphones for work under a Bring Your Own Device (BYOD) policy. The IT department needs the ability to erase corporate emails and sensitive company documents from a device if an employee leaves the company, while leaving the employee's personal data untouched. Which of the following features or security controls best achieves this capability?
A desktop support technician is tasked with modifying the User Account Control (UAC) behavior for administrators on a newly deployed workstation running Windows 11 Home. The technician attempts to open the Local Security Policy console by running secpol.msc in the Run dialog box, but Windows displays a snap-in initialization error stating that the file cannot be found. Which of the following explains why the technician cannot access this security management tool?
A field systems engineer is servicing a Windows workstation at a remote branch office after local endpoint monitoring software flagged rogue keylogger activity. The engineer has physically disconnected the machine from the network, verified that the host is fully quarantined, and downloaded the latest anti-malware definition signatures onto an isolated USB drive. Which step must the engineer perform NEXT in accordance with standard malware remediation procedures prior to executing the scan and removal process?
A network security administrator is standardizing wireless access controls across corporate headquarters and remote locations. Match each wireless security control or protocol to its primary operational feature.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
An IT security analyst is cataloging recent security incident reports across different departments. Match each security threat scenario to its corresponding social engineering vector or attack classification.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A security analyst is hardening standalone Windows 11 Pro workstations deployed in a high-security public kiosk environment. The organization requires that whenever a standard user attempts to launch an application or script requiring administrative elevation, Windows must automatically reject the request immediately without displaying a credential prompt. Which Local Security Policy setting under Security Options directly enforces this requirement?
An IT technician is preparing to harden a newly installed Windows workstation before introducing it into an enterprise environment. Place the following workstation hardening steps in the correct standard procedural sequence, from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A system administrator needs to sanitize several high-performance NVMe Solid-State Drives (SSDs) containing confidential client data before returning leased server chassis back to the hardware vendor. The lease agreement specifies that all hardware must be returned intact and fully functional. Which of the following methods should the administrator use to render the data irrecoverable while keeping the drives operational?
An organization is preparing to decommission an enterprise storage array equipped with NVMe Solid-State Drives (SSDs) that held proprietary source code. Security policy requires media sanitization to a Purge standard to allow drive reuse within a lower-security tier. A technician proposes applying a commercial degaussing wand to the drives followed by a standard single-pass zero-fill overwrite. Which of the following technical evaluations best explains why this proposed sanitization plan is flawed?
A systems administrator is configuring security controls for field technicians who use corporate-issued mobile endpoints to monitor isolated embedded SCADA controllers at remote infrastructure sites. The mobile devices access enterprise cloud resources via cellular networks while concurrently communicating with the embedded IoT devices over local wireless links. Which TWO of the following security configurations should the administrator implement to best protect both the mobile endpoints and the embedded systems?
Geçerli olan tümünü seçin