Loading...

Multiple choice regent questions
QuizΒ by Koko
Customize this quiz to suit your class
Instantly translate to 100+ languages
Tag the questions with any skills you have. Your dashboard will track each student's mastery of each skill.
Give this quiz to my class
Multiple Choice Questions A6. Youβve hired a third-party to gather information about your companyβs servers and data. The third-party will not have direct access to your internal network but can gather information from any other source. Which of the following would BEST describe this approach? β A. Backdoor testing β B. Passive footprinting β C. OS fingerprinting β D. Partially known environment A7. Which of these protocols use TLS to provide secure communication? (Select TWO) β A. HTTPS β B. SSH β C. FTPS β D. SNMPv2 β E. DNSSEC β F. SRTP A8. Which of these threat actors would be MOST likely to attack systems for direct financial gain? β A. Organized crime β B. Hacktivist β C. Nation state β D. Competitor A9. A security incident has occurred on a file server. Which of the following data sources should be gathered to address file storage volatility? (Select TWO) β A. Partition data β B. Kernel statistics β C. ROM data β D. Temporary file systems β E. Process table Quick Answer: 33 The Details: 43 Quick Answer: 33 The Details: 44 Quick Answer: 33 The Details: 45 Quick Answer: 33 The Details: 46 6 Practice Exam A - Questions A10. An IPS at your company has found a sharp increase in traffic from all-in-one printers. After researching, your security team has found a vulnerability associated with these devices that allows the device to be remotely controlled by a third-party. Which category would BEST describe these devices? β A. IoT β B. RTOS β C. MFD β D. SoC A11. Which of the following standards provides information on privacy and managing PII? β A. ISO 31000 β B. ISO 27002 β C. ISO 27701 β D. ISO 27001 A12. Elizabeth, a security administrator, is concerned about the potential for data exfiltration using external storage drives. Which of the following would be the BEST way to prevent this method of data exfiltration? β A. Create an operating system security policy to prevent the use of removable media β B. Monitor removable media usage in host-based firewall logs β C. Only allow applications that do not use removable media β D. Define a removable media block rule in the UTM Quick Answer: 33 The Details: 47 Quick Answer: 33 The Details: 48 Quick Answer: 33 The Details: 49 Practice Exam A - Questions 7 A13. A CISO (Chief Information Security Officer) would like to decrease the response time when addressing security incidents. Unfortunately, the company does not have the budget to hire additional security engineers. Which of the following would assist the CISO with this requirement? β A. ISO 27701 β B. PKI β C. IaaS β D. SOAR A14. An insurance company has created a set of policies to handle data breaches. The security team has been given this set of requirements based on these policies: β’ Access records from all devices must be saved and archived β’ Any data access outside of normal working hours must be immediately reported β’ Data access must only occur inside of the country β’ Access logs and audit reports must be created from a single database Which of the following should be implemented by the security team to meet these requirements? (Select THREE) β A. Restrict login access by IP address and GPS location β B. Require government-issued identification during the onboarding process β C. Add additional password complexity for accounts that access data β D. Conduct monthly permission auditing β E. Consolidate all logs on a SIEM β F. Archive the encryption keys of all disabled accounts β G. Enable time-of-day restrictions on the authentication server Quick Answer: 33 The Details: 50 Quick Answer: 33 The Details: 51 8 Practice Exam A - Questions A15. Rodney, a security engineer, is viewing this record from the firewall logs: UTC 04/05/2018 03:09:15809 AV Gateway Alert 136.127.92.171 80 -> 10.16.10.14 60818 Gateway Anti-Virus Alert: XPACK.A_7854 (Trojan) blocked. Which of the following can be observed from this log information? β A. The victim's IP address is 136.127.92.171 β B. A download was blocked from a web server β C. A botnet DDoS attack was blocked β D. The Trojan was blocked, but the file was not A16. A user connects to a third-party website and receives this message: Your connection is not private. NET::ERR_CERT_INVALID Which of the following attacks would be the MOST likely reason for this message? β A. Brute force β B. DoS β C. On-path β D. Disassociation A17. Which of the following would be the BEST way to provide a website login using existing credentials from a third-party site? β A. Federation β B. 802.1X β C. PEAP β D. EAP-FAST Quick Answer: 33 The Details: 53 Quick Answer: 33 The Details: 54 Quick Answer: 33 The Details: 55 Practice Exam A - Questions 9 A18. A system administrator, Daniel, is working on a contract that will specify a minimum required uptime for a set of Internet-facing firewalls. Daniel needs to know how often the firewall hardware is expected to fail between repairs. Which of the following would BEST describe this information? β A. MTBF β B. RTO β C. MTTR β D. MTTF A19. An attacker calls into a companyβs help desk and pretends to be the director of the companyβs manufacturing department. The attacker states that they have forgotten their password and they need to have the password reset quickly for an important meeting. What kind of attack would BEST describe this phone call? β A. Social engineering β B. Tailgating β C. Watering hole β D. On-path A20. A security administrator has been using EAP-FAST wireless authentication since the migration from WEP to WPA2. The companyβs network team now needs to support additional authentication protocols inside of an encrypted tunnel. Which of the following would meet the network teamβs requirements? β A. EAP-TLS β B. PEAP β C. EAP-TTLS β D. EAP-MSCHAPv2 Quick Answer: 33 The Details: 56 Quick Answer: 33 The Details: 57 Quick Answer: 33 The Details: 58 10 Practice Exam A - Questions A21. Which of the following would be commonly provided by a CASB? (Select TWO) β A. List of all internal Windows devices that have not installed the latest security patches β B. List of applications in use β C. Centralized log storage facility β D. List of network outages for the previous month β E. Verification of encrypted data transfers β F. VPN connectivity for remote users A22. The embedded OS in a companyβs time clock appliance is configured to reset the file system and reboot when a file system error occurs. On one of the time clocks, this file system error occurs during the startup process and causes the system to constantly reboot. Which of the following BEST describes this issue? β A. DLL injection β B. Resource exhaustion β C. Race condition β D. Weak configuration A23. A recent audit has found that existing password policies do not include any restrictions on password attempts, and users are not required to periodically change their passwords. Which of the following would correct these policy issues? (Select TWO) β A. Password complexity β B. Password expiration β C. Password history β D. Password lockout β E. Password recovery Quick Answer: 33 The Details: 59 Quick Answer: 33 The Details: 60 Quick Answer: 33 The Details: 61 Practice Exam A - Questions 11 A24. What kind of security control is associated with a login banner? β A. Preventive β B. Deterrent β C. Corrective β D. Detective β E. Compensating β F. Physical A25. A security team has been provided with a noncredentialed vulnerability scan report created by a thirdparty. Which of the following would they expect to see on this report? β A. A summary of all files with invalid group assignments β B. A list of all unpatched operating system files β C. The version of web server software in use β D. A list of local user accounts A26. A business manager is documenting a set of steps for processing orders if the primary Internet connection fails. Which of these would BEST describe these steps? β A. Communication plan β B. Continuity of operations β C. Stakeholder management β D. Tabletop exercise A27. A security administrator is concerned about data exfiltration resulting from the use of malicious phone charging stations. Which of the following would be the BEST way to protect against this threat? β A. USB data blocker β B. Personal firewall β C. MFA β D. FDE Quick Answer: 33 The Details: 62 Quick Answer: 33 The Details: 63 Quick Answer: 33 The Details: 64 Quick Answer: 33 The Details: 65 12 Practice Exam A - Questions A28. A company would like to protect the data stored on laptops used in the field. Which of the following would be the BEST choice for this requirement? β A. MAC β B. SED β C. CASB β D. SOAR A29. A file server has a full backup performed each Monday at 1 AM. Incremental backups are performed at 1 AM on Tuesday, Wednesday, Thursday, and Friday. The system administrator needs to perform a full recovery of the file server on Thursday afternoon. How many backup sets would be required to complete the recovery? β A. 2 β B. 3 β C. 4 β D. 1
Why and How Managers Plan Importance of planning The planing process Benefits of planning Planning and time management Types of PLans used by managers Long term and short term plans Strageic and tactical plans Operational plans Planning Tools and Techiqunes Forecasting Contrigency planning Scenario planning Benchmaking Use of staff planners Implementing Plans to Achive Results Goal setting Goal management Goal alignment Participation and involvement Planning Def: The process of setting objectives and determining how best to accomplish them Planning at Eaton Corporation βMaking the hard decision before events force them upon you, an anticipating the future needs of the market before the demand asset itself Objectives and goals Identifity the specific results or desired outcomes that one intends to achieve Plan Def: A statement of action steps to be taken in order to accomplish the objectives (goals) Steps in the planning process: Define your objectives Determine where you stand vis-a-vis objectives Develpo premises reagrdsing future conditions Analyze alternatives and make a plan Implement the plan and evaluate results What are the benefits of planning Improves focus and flexibility Imporves action orteitation Imporves coordination and control Imporves time management Time Managment Personal time management tips Do say βnoβ to request that distract you form what you should be doing Dont get bogged down inn details that can be addressed later Do screen telephone calls, emails and meeting request Dont let drop in visitors, text messaging use up your time Do prioritize your important and urgent work Dont become calendar bound by letting other control your schedule Do follow priorities; do most important and urgent work first Some 77% of mangers in one survey said that digital age has increased th number of decisions they have to make 43% said there was less time available to make these decisions Types of plans used by Managers What is teh time horizon Long term vs Short term Long term Look three or more years into teh future Short term plans Typically cover one year or less However: the increasing environmental complexity and dynamism of recent years has severely tested the concept of βlong-termβ planning Plans are subject to frequent revisions Most executives would likely agree that these complexities adn uncertainties challenge how er actually go about planning and how far ahead we can really plan At the very least we can conclude that there is a lot less permanency to long term plans today and that tey are subject to frequent revision Managment reaeracher Eillot Jaques believes tha people vary in their capability to think with different time horizons Types of Plans used by Managers (3 of 5) Strategic plans Set broad, comprehensive and linger term action directions for teh entire organization or major division Vision Clarifies purpose of the organization and what it hopes to be on the future Typical plans Specify how the organizations resources are used to implement strategy Tactical plans in business often take the form of functional plans Functional plans Incidate how different component within the organiztion will help accompnlish the overall strategy Production plans Finacial plans Facilites Plans Logisitc plans Marketing plans Human Resource Plans Operation plans Describe short-term activities to implement strategic plans Policies: Are standing plans that communicate guidelines for decisions Ex: Policies on office romances: The media is quick to report when a top executive or public figures runs into trouble over an office affair. Are there ant policies on office romances? Employer polices on office raltioshiis vary. One survey find teh following: 24% prohibit relationships among employees in the same department 13% prohibit relationships among employees who have the smae supervisor 80% prohibit relationships between supervisors and subordinates 5% have no restrictions on office romances Procedures: Are rules that describe actions to be taken in specific situations Budgets: are single use plans that commit resources to projects or activities Zero based budgets: allocate resources as if each budget were brand new There is no guarantee that any past funding will be renwer. All propsales, old and new, must compete for available funds at teh start of each new budget cycle Forcasting Attempts to predict the future Qualitaive forecasting uses expert opinions Quantitative forecasting uses mathematical models and statiscal aanylsis of historical data dna surveys Contingency planning Identify alternative course of action to take when things go wrong Anticipate changing conditions Contain trigger points to indicate when to activate plan (or a specific course of action) Scenario planning A long term version of contingency planning Identifying alternative future scenarios Plans made for each future scenario Increases organizations flexibility and preparation for future shocks Benchmarking Use of external and internal comparisons to better evaluate current performance Adopting best practices: things people adn organization do that lead to superior performance Staff Planners Experts who assist in all steps of the planning process They help bring focus and expertise to a wide variety of planning tasks Important: Communication between staff planers landline managers is essential for teh success of teh planning process Goal Setting - Always set SMART goal The solution: Goal Aligment Between Team Leader and Team Member Jonintly plan: Set objectives, set standards, choose actions Individually acy: Perform tasks (member), provide support (leader) Jointly control: Review results, discuss implications, renew cycle x4 Collective effort and commitment Participatroy planning Includes in all planning steps that people who will be affected by the plans adn askedd to help implement them Unloacks motivational potential of goal setting Management by objective (MBO) promotes participation Participation increases understanding and acceptance of plan and commitment to success Participatory planning - Number of people involved in teh decision making process Amazon is intensely focused on what it does. It believes in creating tight single-threaded teams, also known as β2 pizza team.β Data and Decision Making What are some of the important competencies managers must have today? Delegate Marketing and technology Manager must have Technological competency Ability to understand new technologies and to use them to their best advantage Information competency Ability to locate, gather, organize and display information for decision-making and problem solving Analytical competency Ability to evaluate and analyze information to make actual decisions and solve real problems What is the difference between Data and Information Data Raw facts and observation Information Data made useful and meaningful for decision-making Important concepts Big data Exists in huge quantities and is difficult to process without sophisticated mathematical and analytical techniques Data production today Bernard Marr is an internationally best-selling author. He helps organizations improve their business performance, use data more intelligently Data mining The process of analyzing data to produce useful information for decision-makers Management Analytics The systematic evaluation and analysis of data to make informed decision Information drives management Bad Data Refers to information that can be erroneous, misleading, and without general formatting The challenge: Can er use the data that is available in the βBig Dataβ Needs to be valid Can not trust everything out there Being ethical Look at the trends Data is structured and unstructured Data BIg Data = Structured + Unstructured Information Drive Management decision making What are the characteristics of useful information Easy to access If its credible Accurate Characteristics of useful information: Timely High quality Complete Relevant Understandable What about bad data It's not credible Miss information If it is not structured/ organized Bias based on opinions Confusing If its updated Bad data Refers to information that can be erroneous miss What are some examples of Management information system Business intelligence -BI Information systems to extract and report data in organized ways that are useful to decision-makers Executive dashboards Visually update and display key performance metrics (or Key Performance Indicators -KPIs) and information on a real-time basis Information needs in organization External Environment Information exchanges with the external environment Gather intelligence information Provide public information Information needs within the organizations (internal Enviroement) Information exchange within the organization Facilitate decision making Facilitate problem-solving Managers as information processors Continually gather, share and receive information Now as much electronic as it is face-to-face Always on, always connected How many people telecommute at least once a week 70% of people globally work remotely at least once a week, Work at home after covid 19 our forecast Our best estimate it that 25-30% of the workforce will be working form home multiple days a week by the end of 2021 As of 2023, 12.7% of full time employees work from home, while 28.2% work a hybrid model Managers as problem solvers Problem-solving The process of identifying a discrepancy between actual and desired performance and taking action to resolve it Ishikawa Fishbone diagram To identify the cause of problems Decision A choice among possible alternative courses of action Performance threat Something is wrong or has the potential to go wrong Performance opportunity The situation offers the chance for a better future if the right steps are taken Problem-solving approaches or style - from textbook Problem avoiders Inactive in information gathering and solving problems Problem seekers Proactive in anticipation of problems and opportunities and taking appropriate action to gain an advantage Problem solvers Reactive in gathering information and solving problem Managers - can approach problems in a systematic or intuitive manner Systematic thinking approaches problem in rational, step-by-step and analytical fashion Intuitive thinking approaches problems in a flexible and spontaneous fashion Multidimensional thinking- applies both intuitive and systematic thinking Managers face structured and unstructured problems Structure problems Are ones that are familiar, straight forward, and clear with respect to information needs Program decisions apply solutions that are readily available from past experiences to solve structured problems Know how to solve them Familiar Know what we are dealing with Unstructured problems Are ones that are full of ambiguities and information deficiencies Nonprogrammed decisions apply a specific solution to meet the demands of a unique problem Commonly faced by higher-level management Crisis decision making A crisis involves an unexpected problem that can lead to disaster if not resolved quickly and appropriately Ruled for crisis management Figure out what is going on Remember that speed matters Remember that slow counts, too Respect the danger of the unfamiliar Value the skeptic Be ready to βfight fire with fireβ Managers make decisions with various amounts of information Certain environment Offers complete information on possible action alternatives and their consequences Risk environment Lacks complete information but offers probabilities of the likely outcomes for possible action alternatives Uncertain environment Lacks so much information that it is difficult to assign probabilities to the likely outcomes of alternative Ex: Certain and uncertain environments: The worldwide Governance Indicators for over 200 countries, comparing distinct environments (Canada-Brazil) Step 1-Identify and define the problem Focuses on information gathering information processing and deliberation Decision objectives should be established What are some common mistakes in definding problems? Common mistakes in defining problems Defining the problem too broadly or too narrowly Focusing on symptoms instead of causes Choosing the wrong problem to deal with Step 2- Generate and Evaluate Alternative Courses of Action Potential solutions are formulated and more information is gathered, data are analyzed, the advantages and disadvantages of alternative solutions are identified Common mistakes: Abandoning the search for alternatives too quickly Step 3- Decide on a preferred course of Action Two different approaches Behavioural model leads to satisficing decisions Classical model les to optimising decisions Behavioural Model Rationality is bounded because: There are limits our thinks capacity Available information (incomplete) Time constraints Step 4-Implement the decision Involves taking action to make sure the solution decided upon becomes a reality Managers need to have the willingness and ability to implement action plans Problems: Lack of participation error should be avoided Step 5 - Evaluate Results Involves comparing actual and desired results The positive and negative consequences of the chosen course of action should be examined If actual results fall short desire results, the manager returns to earlier steps in the decision-making process At all steps, check ethical reasoning Ask these spotlight questions Utility Does teh decision satisfy all constituents or stakeholders Rights Does the description respect the rights and duties of everyone? Justice Is the decision consistent with the canons of justice Caring Is the decision consistent with my responsibilities to care? Issues in decision-making How do errors happen? Heuristics: are strategies for simplifying decision-making Availability Bias: Bases a decision on recent information or events Representativeness bias: Bases a decision on similarity to other situations Anchoring and Adjustment Bias: Bases a decision on incremental adjustment from a prior decision point Framing error: Tring to solve a problem in the context perceived, positive or negative Confirmation Error: Focusing on information that confirms a decision already made Escalating commitment: Continuing a course of action even though it is not working Creative Decision making Creativity is the generation of a novel idea or unique approach that solves a problem or crafts an opportunity Big C: Creativity occurs when extraordinary things are done by exceptional people Little C: Creativity occurs when average people come up with unique ways to deal with daily events and situations The three types of situational creativity drivers Chapter review What are objectives and goals? The specific results or desired outcomes What are the 5 characteristics of great (SMART) goals? Forecasting - Attempts Qualitative forecasting uses options Quantitative forecasting uses mathematical models and statistical analysis of historical data and surveys Scenarios-Oracleβs crystal ball combines qualitative and quantitative methods
MULTIPLE CHOICE
110.31.b.17.C
Topic: Reading/Vocabulary Development
STAAR English II High School 2014 - Past Paper
110.31.b.1.B
STAAR English I High School 2017 - Past Paper