Question 1
Question
A security weakness is known as a(n) ____.
Answer
-
a. threat
-
b. vulnerability
-
c. opportunity
-
d. risk
Question 2
Question
A ____ is a computer typically located in an area with limited security and loaded with software and data files that appear to be authentic, yet they are actually imitations of real data files.
Answer
-
a. write blocker
-
b. honeypot
-
c. port scanner
-
d. honeycomb
Question 3
Question
A(n) ____ is hardware or software that captures packets to decode and analyze its contents.
Answer
-
a. application analyzer
-
b. threat profiler
-
c. protocol analyzer
-
d. system analyzer
Question 4
Question
The end product of a penetration test is the penetration ____.
Answer
-
a. test profile
-
b. test view
-
c. test system
-
d. test report
Question 5
Question
When performing a vulnerability assessment, many organizations use ____ software to search a system for any port vulnerabilities.
Question 6
Question
____ is the probability that a risk will occur in a particular year.
Answer
-
a. EF
-
b. SLE
-
c. ALE
-
d. ARO
Question 7
Question
____ is the proportion of an asset’s value that is likely to be destroyed by a particular risk.
Answer
-
a. ARO
-
b. SLE
-
c. ER
-
d. EF
Question 8
Question
If port 20 is available, then an attacker can assume that FTP is being used.
Question 9
Question
A ____ is a network set up with intentional vulnerabilities.
Answer
-
a. honeypot
-
b. honeynet
-
c. honeycomb
-
d. honey hole
Question 10
Question
A ____ in effect takes a snapshot of the current security of the organization.