<< Prev Question Next Question >>

Question 52/200

Pete, a security analyst, has been informed that the development team has plans to develop an application which does not meet the company's password policy. Which of the following should Pete do NEXT?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (200q)
Question 1: An administrator configures all wireless access points to ma...
1 commentQuestion 2: A Chief Security Officer (CSO) has been unsuccessful in atte...
Question 3: Configuring the mode, encryption methods, and security assoc...
Question 4: A security administrator determined that users within the co...
Question 5: A network consists of various remote sites that connect back...
Question 6: Which of the following allows an organization to store a sen...
Question 7: An SSL/TLS private key is installed on a corporate web proxy...
Question 8: The security administrator is analyzing a user's history fil...
Question 9: Joe, the security administrator, has determined that one of ...
Question 10: Which of the following BEST describes the weakness in WEP en...
Question 11: In order to prevent and detect fraud, which of the following...
Question 12: The programmer confirms that there is potential for a buffer...
Question 13: A company has a BYOD policy that includes tablets and smart ...
Question 14: Which the following flags are used to establish a TCP connec...
Question 15: Which of the following provides the BEST explanation regardi...
Question 16: How must user accounts for exiting employees be handled?...
Question 17: When using PGP, which of the following should the end user p...
Question 18: Pete, an employee, needs a certificate to encrypt data. Whic...
Question 19: The security manager received a report that an employee was ...
Question 20: Sara, an attacker, is recording a person typing in their ID ...
Question 21: Developers currently have access to update production server...
Question 22: When an order was submitted via the corporate website, an ad...
Question 23: Input validation is an important security defense because it...
Question 24: A security specialist has been asked to evaluate a corporate...
Question 25: A technician has been assigned a service request to investig...
Question 26: A web administrator has just implemented a new web server to...
Question 27: A company has identified a watering hole attack. Which of th...
Question 28: An organization is implementing a password management applic...
Question 29: A company administrator has a firewall with an outside inter...
Question 30: To protect corporate data on removable media, a security pol...
Question 31: The Chief Information Security Officer (CISO) has mandated t...
Question 32: A security administrator is reviewing the below output from ...
Question 33: In an effort to test the effectiveness of an organization's ...
Question 34: a malicious attacker has intercepted HTTP traffic and insert...
Question 35: Which of the following BEST explains Platform as a Service?...
Question 36: Ann a user has been promoted from a sales position to sales ...
Question 37: A company has just deployed a centralized event log storage ...
Question 38: Which of the following delineates why it is important to per...
Question 39: A breach at a credit card company resulted in customers cred...
Question 40: The process of making certain that an entity (operating syst...
Question 41: An administrator needs to segment internal traffic between l...
Question 42: One month after a software developer was terminated the help...
Question 43: Which of the following attack types is being carried out whe...
Question 44: Results from a vulnerability analysis indicate that all enab...
Question 45: An employee in the accounting department recently received a...
Question 46: Which of the following describes the implementation of PAT?...
Question 47: Which of the following BEST describes the type of attack tha...
Question 48: Joe, a technician, is working remotely with his company prov...
Question 49: A bank has recently deployed mobile tablets to all loan offi...
Question 50: Joe is the accounts payable agent for ABC Company. Joe has b...
Question 51: The security administrator installed a newly generated SSL c...
Question 52: Pete, a security analyst, has been informed that the develop...
Question 53: A security technician would like to use ciphers that generat...
Question 54: Which of the following is the MOST secure protocol to transf...
Question 55: Which of the following encrypts data a single bit at a time?...
Question 56: A network administrator was to implement a solution that wil...
Question 57: A company has recently implemented a high density wireless s...
Question 58: Verifying the integrity of data submitted to a computer prog...
Question 59: A security administrator must implement a network authentica...
Question 60: Which of the following would MOST likely involve GPS?...
Question 61: A large corporation has data centers geographically distribu...
Question 62: Which of the following types of attacks is based on coordina...
Question 63: Ann, a security administrator, wishes to replace their RADIU...
Question 64: Which of the following is a BEST practice when dealing with ...
Question 65: Which of the following ports would be blocked if Pete, a sec...
Question 66: A technician is deploying virtual machines for multiple cust...
Question 67: An organization has hired a penetration tester to test the s...
Question 68: Which of the following steps in incident response procedures...
Question 69: Who should be contacted FIRST in the event of a security bre...
Question 70: A security administrator working for a law enforcement organ...
Question 71: Which of the following BEST describes a demilitarized zone?...
Question 72: RC4 is a strong encryption protocol that is generally used w...
Question 73: Which of the following describes purposefully injecting extr...
Question 74: Prior to leaving for an extended vacation, Joe uses his mobi...
Question 75: A company's business model was changed to provide more web p...
Question 76: Joe, the security administrator, sees this in a vulnerabilit...
Question 77: Ann, the network administrator, is receiving reports regardi...
Question 78: New magnetic locks were ordered for an entire building. In a...
Question 79: A Chief Executive Officer (CEO) is steering company towards ...
Question 80: Which of the following is a hardware based encryption device...
Question 81: Matt, a security administrator, wants to ensure that the mes...
Question 82: A company's security administrator wants to manage PKI for i...
Question 83: The manager has a need to secure physical documents every ni...
Question 84: Ann a new small business owner decides to implement WiFi acc...
Question 85: At the outside break area, an employee, Ann, asked another e...
Question 86: An email client says a digital signature is invalid and the ...
Question 87: A news and weather toolbar was accidently installed into a w...
Question 88: The string: 'or 1=1-- - Represents which of the following?...
Question 89: Which of the following is true about asymmetric encryption?...
Question 90: Which of the following has a storage root key?...
Question 91: A malicious individual used an unattended customer service k...
Question 92: An organization currently uses FTP for the transfer of large...
Question 93: Company policy requires the use if passphrases instead if pa...
Question 94: Ann, a security administrator, has concerns regarding her co...
Question 95: What is a system that is intended or designed to be broken i...
Question 96: During a disaster recovery planning session, a security admi...
Question 97: A bank has a fleet of aging payment terminals used by mercha...
Question 98: If an organization wants to implement a BYOD policy, which o...
Question 99: A computer is suspected of being compromised by malware. The...
Question 100: An employee finds a usb drive in the employee lunch room and...
Question 101: A company uses SSH to support internal users. They want to b...
Question 102: An attacker unplugs the access point at a coffee shop. The a...
Question 103: Purchasing receives an automated phone call from a bank aski...
Question 104: A merchant acquirer has the need to store credit card number...
Question 105: Which of the following could a security administrator implem...
Question 106: The system administrator is reviewing the following logs fro...
Question 107: Which of the following is where an unauthorized device is fo...
Question 108: Which of the following types of cloud computing would be MOS...
Question 109: A security administrator looking through IDS logs notices th...
Question 110: A security administrator notices large amounts of traffic wi...
Question 111: A security administrator would like to write an access rule ...
Question 112: A security administrator is notified that users attached to ...
Question 113: A security administrator wants to ensure that the message th...
Question 114: Ann, a security administrator is hardening the user password...
Question 115: A recent audit has revealed weaknesses in the process of dep...
Question 116: Which of the following is the term for a fix for a known sof...
Question 117: A security technician is implementing PKI on a Network. The ...
Question 118: Ann, a security administrator, has been instructed to perfor...
Question 119: A security technician is concerned there4 is not enough secu...
Question 120: Which of the following are MOST susceptible to birthday atta...
Question 121: Which of the following is considered an environmental contro...
Question 122: One of the senior managers at a company called the help desk...
Question 123: Which of the following application attacks is used to gain a...
Question 124: Ann, a security administrator at a call center, has been exp...
Question 125: Ann, a security administrator at a call center, has been exp...
Question 126: A security administrator has installed a new KDC for the cor...
Question 127: The helpdesk reports increased calls from clients reporting ...
Question 128: A vulnerability scan is reporting that patches are missing o...
Question 129: Which of the following authentication services should be rep...
Question 130: Speaking a passphrase into a voice print analyzer is an exam...
Question 131: Sara, a user, downloads a keygen to install pirated software...
Question 132: Which of the following devices is used for the transparent s...
Question 133: A security administrator is tasked with calculating the tota...
Question 134: Which of the following attacks targets high level executives...
Question 135: Account lockout is a mitigation strategy used by Jane, the a...
Question 136: The security administrator has noticed cars parking just out...
Question 137: Ann is the data owner of financial records for a company. Sh...
Question 138: Which of the following security account management technique...
Question 139: The security administrator is currently unaware of an incide...
Question 140: A technician has implemented a system in which all workstati...
Question 141: Use of a smart card to authenticate remote servers remains M...
Question 142: Review the following diagram depicting communication between...
Question 143: Ann would like to forward some Personal Identifiable Informa...
Question 144: Several employees have been printing files that include pers...
Question 145: Joe a company's new security specialist is assigned a role t...
Question 146: A company is preparing to decommission an offline, non-netwo...
Question 147: A security administrator must implement a network that is im...
Question 148: Which of the following should be used to implement voice enc...
Question 149: A router was shut down as a result of a DoS attack. Upon rev...
Question 150: An employee uses RDP to connect back to the office network. ...
Question 151: One of the servers on the network stops responding due to la...
Question 152: Which of the following must be kept secret for a public key ...
Question 153: Which of the following devices will help prevent a laptop fr...
Question 154: A Security technician would like that to obscure sensitive d...
Question 155: After installing a new Linux system the administrator runs a...
Question 156: Each server on a subnet is configured to only allow SSH acce...
Question 157: Which of the following file systems is from Microsoft and wa...
Question 158: Attempting to inject 50 alphanumeric key strokes including s...
Question 159: A security administrator wants to check user password comple...
Question 160: Which of the following risks could IT management be mitigati...
Question 161: Which of the following risk mitigation strategies will allow...
Question 162: A user has several random browser windows opening on their c...
Question 163: A network administrator has recently updated their network d...
Question 164: A malicious person gained access to a datacenter by ripping ...
Question 165: Which of the following provides the strongest authentication...
Question 166: Which of the following was launched against a company based ...
Question 167: After disabling SSID broadcast, a network administrator stil...
Question 168: Joe is a helpdesk specialist. During a routine audit, a comp...
Question 169: Which of the following explains the difference between a pub...
Question 170: Which of the following is described as an attack against an ...
Question 171: A security administrator needs to implement a system that de...
Question 172: A software developer wants to prevent stored passwords from ...
Question 173: A security engineer, Joe, has been asked to create a secure ...
Question 174: Ann a security analyst is monitoring the IDS console and not...
Question 175: Ann, the security administrator, wishes to implement multifa...
Question 176: Which of the following is the LEAST volatile when performing...
Question 177: Pete, the compliance manager, wants to meet regulations. Pet...
Question 178: A large bank has moved back office operations offshore to an...
Question 179: Several users' computers are no longer responding normally a...
Question 180: The below report indicates that the system is MOST likely in...
Question 181: Which of the following techniques can be used to prevent the...
Question 182: Which of the following can be used to control specific comma...
Question 183: An organization has introduced token-based authentication to...
Question 184: A company hosts a web server that requires entropy in encryp...
Question 185: A security administrator needs a locally stored record to re...
Question 186: After a recent breach, the security administrator performs a...
Question 187: An attacker has gained access to the company's web server by...
Question 188: The Chief Information Officer (CIO) has mandated web based C...
Question 189: A company replaces a number of devices with a mobile applian...
Question 190: Ann, a technician, wants to implement a single protocol on a...
Question 191: The information security technician wants to ensure security...
Question 192: A systems administrator is configuring a new file server and...
Question 193: Mike, a user, states that he is receiving several unwanted e...
Question 194: A company executive's laptop was compromised, leading to a s...
Question 195: Jane, a security analyst, is reviewing logs from hosts acros...
Question 196: An application developer has tested some of the known exploi...
Question 197: Joe, a security analyst, is attempting to determine if a new...
Question 198: While reviewing the monthly internet usage it is noted that ...
Question 199: Which of the following concepts is BEST described as develop...
Question 200: Which of the following is an example of multifactor authenti...