click below
click below
Normal Size Small Size show me how
Stack #4685570
| Question | Answer |
|---|---|
| It allows an attacker to circumvent the same origin policy, which is designed to segregate different websites from each other. | Cross-site scripting |
| It is a concept in which multiple layers of security are used to defend assets. | Defense in depth |
| The handle of making apps more secure by finding, settling, and improving the security of apps. | Application security |
| These are typically composed of hosts, switches, storage elements, and storage devices that are interconnected using a variety of technologies, topologies, and protocols. | Storage area network |
| It could be a collection of apparatuses, strategies, and best hones to decrease vulnerability in innovation applications, systems, infrastructure, firmware, and other ranges. | hardening |
| It enforces security policies to ensure security of the system and its information. | trusted computing base |
| An audit found that an organization needs to implement job rotation to be compliant with regulatory requirements. To prevent unauthorized access to systems after an individual changes roles or departments, which of the following should the organization im | Permission auditing and review |
| Auditing | |
| It ought to incorporate Microsoft’s proposals for arranging those settings. | security baseline |
| It characterizes a set of fundamental security goals which must be met by any given benefit or system. | security baseline |
| It is a physical lock on a computer with an accompanying key used for access control or as an anti-theft system. | cable lock |
| It is a type of software program designed to prevent, detect and remove malicious software (malware) on IT systems, as well as individual computing devices. | Anti-malware |
| These may be installed either under programmed control or by a human programmer using an editing tool or a debugger. | patch |
| It records either occasions that happen in a working system or other program runs, or messages between distinctive clients of a communication program. | Logging |
| Is also used as a collective noun but refers to different types of data storage options. | Media |
| It characterizes computing functions into a universal set of rules and requirements in order to support interoperability between different products and software. | OSI Model |
| It delivers the message to the correct destination based on the physical address present in the incoming message. | switch |
| It does this by filtering the data packets traversing the network. | firewall |
| It is a form of network security that works to detect and prevent identified threats. | Network-based Intrusion Prevention System |
| It monitors network traffic using sensors that are located at key locations within the network, often in the demilitarized zone (DMZ) or at network borders. | Network-based Intrusion Detection System |
| It refers to a basic OS that runs on a network device, such as a router or firewall. | Network operating system |
| These rules include what type of data may be transmitted, what commands are used to send and receive data, and how data transfers are confirmed. | Protocol |
| These are logical network segments used to create separate broadcast domains. | virtual LAN (VLAN) |
| It is used to transfer files between computers on a network. | FTP |
| It may be a firewall setup utilized to secure hosts on a network fragment. | DMZ |
| It was first developed by Netscape in 1995 for the purpose of ensuring privacy, authentication, and data integrity in Internet communications. | SSL |
| It is a technology that uses encrypted tunnels to create secure connections across public networks like the internet. | Virtual Private Network |
| It is a type of router device, built specifically for creating and managing VPN communication infrastructures. | VPN Concentrator |
| It is a supporting protocol in the Internet protocol suite. | ICMP |
| It is the first choice for businesses that operate within the industries with low privacy concerns. | Public |
| It largely resembles a private one; the only difference is the set of users. | Community |
| It may be a method utilized to adjust the network address data of a host whereas traffic is navigating a switch or firewall. | Network Address Translation |
| These are accessible either as standalone gadgets or as firewall components. | Flood guards |
| Maximum speed of 802.11ac. | 1Gbps |
| It ensures against flooding of the Ethernet exchanging table, and is empowered on Layer 2 interfaces. | MAC limiting |
| It may be a network switch that contains a mapping of gadget data to VLAN. | VLAN Management |
| Maximum speed of 802.11a. | 54 Mbps |
| It empowers a director to design person switch ports to permit as it were a indicated number of source MAC addresses entrance the port. | Port Security |
| It is the anticipation of unauthorized access or break to computers or data by means of wireless networks. | Wireless security |
| It performs a specified action when BPDUs are not received on a non-designated port interface. | Loop protection |
| The process of making apps more secure by finding, fixing, and enhancing the security of apps. | Application security |
| It is the simplest variety of cross-site scripting. | Reflected XSS |
| It is a specialized, high-speed network that provides block-level network access to storage. | Storage area network |
| It is a Computer network which provides access to consolidated, block-level data storage. | Storage area network |
| An attack that forces an end user to execute unwanted actions on a web application in which they’re currently authenticated. | Cross-Site Request Forgery |
| These are often necessary in order to fix existing problems with software that are noticed after the initial release. | Patch management |
| It is performed to ensure only properly formed data is entering the workflow in an information system, preventing malformed data from persisting in the database and triggering malfunction of various downstream components. | Input Validation |
| It is a supplemental code. | patch |
| This includes fixing security vulnerabilities and other bugs, with such patches usually being called bugfixes or bug fixes. | patch |
| It implements security arrangements to guarantee security of the system and its data. | trusted computing base |
| A company would like to prevent the use of a known set of applications from being used on company computers. Which of the following should the security administrator implement? | Blacklisting |
| It detects spyware through rules-based methods or based on downloaded definition files that identify common spyware programs. | Anti-spyware |
| It may be permanent (until patched again) or temporary. | patch |
| It forwards the packet based on the information available in the routing table. | router |
| At this layer, both the end user and the application layer interact directly with the software application. | Application Layer |
| A standard set of rules that allow electronic devices to communicate with each other. | Protocol |
| The term can moreover be utilized as a collective thing for the press or news detailing organizations. | Media |
| It is a device or software application that monitors a network or systems for malicious activity or policy violations. | Intrusion Detection Systems |
| These were developed as an alternate solution to deploying multiple routers. | virtual LAN (VLAN) |
| It can provide input to the computer, accept output or both. | Device |
| The term can also be used as a collective noun for the press or news reporting agencies. | Media |
| It is mainly used by network administrators and security staff to monitor the operations of a network. | Network Monitoring Systems |
| This strategy is utilized to cover up the network data of a private network whereas permitting activity to be exchanged over a open organize just like the web. | Network Address Translation |
| It is utilized by ventures to ensure their employees/users from getting to and being contaminated by pernicious Web traffic, websites and virus/malware. | Web Security Gateway |
| It is a file transfer protocol like FTP but is much more limited. | TFTP |
| It is an interruption discovery framework for identifying both network and computer interruptions and abuse by checking system action and classifying it as either ordinary or atypical. | Anomaly-based |
| It is a set of protocols that provides security for Internet Protocol. | Internet protocol security |
| Maximum speed of 802.11b. | 11 Mbps |
| It may be a layer two traffic control highlight on Cisco Catalyst switches. | Port Security |
| It helps in reducing problem diagnosis, resolution time and in effective management of applications and infrastructure. | Log analysis |
| These are a set of services and protocols that dictate how your Wi-Fi network (and other data transmission networks) acts. | wireless standards |
| Which among them has the strongest wireless security? | WPA3 |
| It makes a difference in lessening issue diagnosis, determination time and in effective administration of applications and infrastructure. | Log analysis |
| It is the device utilized for partitioning a arrange into smaller parts which are called subnetworks or network sections. | Network separation |