Tüm alıştırma soruları
2232 soru
A security analyst reviewing Network Intrusion Detection System (NIDS) alerts for an enterprise web server identifies multiple HTTP POST requests containing payload strings such as `<script>document.cookie</script>` submitted through an unauthenticated feedback form. Which of the following correctly identifies the type of attack detected by network monitoring?
An enterprise risk management team is conducting a Business Impact Analysis (BIA) to update the business continuity plan for a core online payment platform. During the assessment, the team reviews operational recovery metrics and system availability controls. Which of the following statements correctly align BIA metrics and continuity parameters with their operational objectives? (Select TWO.)
Geçerli olan tümünü seçin
An enterprise streaming media organization's executive security leadership issues an overarching mandate requiring all internal network microservices to enforce strict cryptographic protection. To enact this, the cloud engineering team publishes a document specifying mandatory technical requirements, including the exact protocol (mTLS) and minimum key lengths that all production container clusters must enforce without exception. Which of the following governance document types best categorizes this technical mandate?
A DevOps engineer is setting up a secure internal web endpoint for a microservice and needs to enroll it into the organization's Public Key Infrastructure (PKI). Which of the following represents the correct sequential order of operational steps required to successfully obtain and deploy an X.509 certificate, from initial key creation to final service binding?
Öğeleri doğru sıraya koymak için sürükleyin
An organization's security operations center (SOC) detects an incident where an employee received a text message on their mobile phone containing an urgent link to verify their corporate single sign-on (SSO) credentials on a fraudulent domain. Shortly after, an unknown attacker calls the IT helpdesk, posing as the employee and using previously gathered personal details to request an account recovery passcode. Which of the following social engineering vectors were directly utilized in this attack scenario? (Select TWO.)
Geçerli olan tümünü seçin
A Security Operations Center (SOC) analyst reviewing network security monitoring (NSM) alerts identifies sustained IP protocol 47 (Generic Routing Encapsulation - GRE) traffic originating from an internal DMZ web server toward an unknown external IP address. NetFlow records confirm a high volume of asymmetric outbound data transfer. Which TWO of the following actions should the analyst take to address this network security incident?
Geçerli olan tümünü seçin
During a routine audit, an incident response team discovers that multiple remote employees entered their domain credentials into a web page that visually duplicated the organization's authentic single sign-on (SSO) portal. Investigation reveals that the domain name used in the attack was registered by an external third party and contained a single transposed letter relative to the official enterprise URL. Which social engineering attack vector was directly executed in this scenario?
An enterprise systems specialist is configuring an automated build server to sign software packages using a newly established internal Public Key Infrastructure (PKI). Before requesting a digital certificate from the enterprise Certificate Authority (CA), the specialist must prepare a Certificate Signing Request (CSR) on the build server. Which of the following operations occurs on the build server prior to transmitting the CSR to the CA?
An organization's finance department frequently receives fraudulent email requests attempting to alter vendor wire transfer details. Although employees successfully complete mandatory annual security awareness training, several staff members recently processed unauthorized payment changes. Which of the following approaches represents the most effective security awareness and human risk management control to address this vulnerability?
A healthcare organization is updating its human risk management framework to reduce vulnerabilities associated with visual eavesdropping and unauthorized physical media in patient treatment areas. Which of the following administrative and security awareness measures should the security team implement to specifically address these human risk vectors? (Select TWO.)
Geçerli olan tümünü seçin
A security administrator is configuring digital certificates for an enterprise web gateway that host services for multiple subdomains across different domain names. To optimize TLS handshake performance, maintain client privacy, and ensure multi-domain validity, which TWO of the following configurations or steps should the administrator implement? (Select TWO.)
Geçerli olan tümünü seçin
A multinational cloud software provider processes user profiles (including names, email addresses, and location data) for European users while accepting credit card payments for subscriptions worldwide. Following a recent compliance gap analysis, the Chief Information Security Officer (CISO) is updating the organization's legal and regulatory compliance framework. Which of the following technical and operational requirements must the organization implement to satisfy both GDPR and PCI DSS compliance obligations? (Select TWO.)
Geçerli olan tümünü seçin
A global logistics provider completes a Business Impact Analysis (BIA) for its automated shipment tracking service. The assessment determines that the organization can tolerate a maximum data loss of 15 minutes of transactional updates, requires system infrastructure restoration within 2 hours of a outage, and mandates 1 hour of verification and data integrity checks before resuming operations to prevent exceeding the 4-hour Maximum Tolerable Downtime (MTD). Which of the following statements correctly map these operational findings to business continuity metrics? (Select TWO.)
Geçerli olan tümünü seçin
A biotechnology research firm conducts a Business Impact Analysis (BIA) for its cloud-hosted genomic sequencing data pipeline. The BIA determines that to prevent severe compliance and financial penalties, the platform must not lose more than 15 minutes of newly ingested sequencing data in the event of an outage, while system recovery and service restoration must be completed within 6 hours. Which metric specifically defines the 15-minute maximum acceptable threshold for data loss?
An organization's security manager is implementing a human risk management campaign to address a high frequency of unattended, unlocked workstations observed during an internal audit. In what chronological order should the security manager execute the following phases of the campaign, from initial risk assessment to program evaluation?
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise security team discovers that system administrators holding elevated credentials are being targeted by voice phishing (vishing) campaigns aimed at capturing out-of-band authentication codes. Despite 100% completion of the mandatory annual general security awareness course, several administrators compromised credentials during recent simulations. Which of the following approaches is the most effective human risk management intervention to mitigate this specific risk?
An enterprise security administrator notices that after revoking a compromised employee device certificate, internal applications continue to trust the revoked certificate for up to 24 hours until the next scheduled status update file is generated. The administrator needs to update the PKI architecture so authentication services can query the revocation status of individual certificates in real time without forcing mobile clients to download complete revocation files over low-bandwidth cellular connections. Which of the following should the administrator implement to meet these requirements?
A regional financial technology company based in the United States provides consumer loan processing software. To maintain compliance with the Gramm-Leach-Bliley Act (GLBA) Safeguards Rule regarding nonpublic personal information (NPI), the security team is reviewing mandatory administrative and technical safeguards. Which of the following security controls is explicitly required by the GLBA Safeguards Rule for protecting customer NPI?
An enterprise compliance officer is updating the organization's regulatory tracking matrix to align with global legal mandates and industry-specific security requirements. Match each regulatory framework or legal mandate on the left with its corresponding compliance scope or operational requirement on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
Match each business continuity management artifact or process on the left with its primary operational objective on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler