Question 1
Question
Which of the following devices is the most capable of providing infrastructure security?
Question 2
Question
Upper management has decreed that a firewall must be put in place immediately, before your site suffers an attack similar to one that struck a sister company. Responding to this order, your boss instructs you to implement a packet filter by the end of the week. A packet filter performs what function?
Answer
-
Prevents unauthorized packets from entering the network.
-
Allows all packets to leave the network.
-
Allows all packets to enter the network
-
Eliminates collisions in the network
Question 3
Question
Which device stores information about destinations in a network (choose the best answer)
Answer
-
Hub
-
Modem
-
Firewall
-
Router
Question 4
Question
As more and more clients have been added to your network, the efficiency of the network has decreased significantly. You're preparing a budget for next year, and you specifically want to address this problem. Which of the following devices acts primarily as a tool to improve network efficiency?
Question 5
Question
Which of the following can be implemented as a software or hardware solution and is usually associated with a device - a router, a firewall, NAT, and so on - used to shift a load from one device to another?
Answer
-
Proxy
-
Hub
-
Load Balancer
-
Switch
Question 6
Question
Which of the following are multiport devices that improve network efficiency?
Answer
-
Switches
-
Modems
-
Gateways
-
Concentrators
Question 7
Question
Your organization wants to prevent users from accessing file sharing web sites. Which of the following choices will meet this need?
Answer
-
Content Inspection
-
Malware Inspection
-
URL Filter
-
Web Application Firewall
Question 8
Question
Your organization wants to combine some of the security controls used on the network. What could your organization implement to meet this goal?
Question 9
Question
Which of the following operates on the HIGHEST layer of the OSI model, and is the most effective at blocking application attacks?
Answer
-
IDS
-
Router
-
WAF
-
Stateless Firewall
Question 10
Question
Which of the following network tools includes sniffing capabilities?
Question 11
Question
A HIDS reported a vulnerability on a system using an assigned vulnerability identification number. After researching the number on the vendor's web site, you identify the recommended solution and begin applying it. What type of HIDS is in use?
Answer
-
Network-based
-
Heuristic-based
-
Signature-based
-
Anomaly-based
Question 12
Question
Management is concerned about malicious activity on your network and wants to implement a security control that will detect unusual traffic on the network. Which of the following is the BEST choice to meet this goal?
Answer
-
Network firewall
-
Signature-based IDS
-
Anomaly-based IDS
-
Honeypot
Question 13
Question
Your network IDS recently detected an attack on a server. Upon investigation, you discover that the IDS does not have a signature on this attack. Instead, the IDS detected it using a heuristic analysis. Of the following choices, what is the MOST likely category of this attack?
Answer
-
Definition
-
CVE
-
Zero-day
-
Phishing
Question 14
Question
You are preparing to deploy an anomaly-based detection system to monitor network activity. Which of the following would you create first?
Answer
-
Flood guards
-
Signatures
-
Baseline
-
Honeypot