CCNA Cybersecurity Operations (Version 1.1) - CyberOps Chapter 8 Exam

Ace your homework & exams now with Quizwiz!

How does BYOD change the way in which businesses implement networks?​ BYOD requires organizations to purchase laptops rather than desktops. BYOD devices are more expensive than devices that are purchased by an organization. BYOD users are responsible for their own network security, thus reducing the need for organizational security policies. BYOD provides flexibility in where and how users can access network resources.

BYOD provides flexibility in where and how users can access network resources.

protects the rights of workers and the company interests

Company

Which method is used to make data unreadable to unauthorized users? Fragment the data. Encrypt the data. Assign it a username and password. Add a checksum to the end of the data.

Encrypt the data.

What is the purpose of mobile device management (MDM) software? It is used to create a security policy. It is used to implement security policies, setting, and software configurations on mobile devices. It is used by threat actors to penetrate the system. It is used to identify potential mobile device vulnerabilities.

It is used to implement security policies, setting, and software configurations on mobile devices.

Which statement describes a difference between RADIUS and TACACS+? RADIUS is supported by the Cisco Secure ACS software whereas TACACS+ is not. RADIUS separates authentication and authorization whereas TACACS+ combines them as one process. RADIUS uses TCP whereas TACACS+ uses UDP. RADIUS encrypts only the password whereas TACACS+ encrypts all communication.

RADIUS encrypts only the password whereas TACACS+ encrypts all communication

In threat intelligence communications, what set of specifications is for exchanging cyberthreat information between organizations? Automated indicator sharing (AIS) Structured threat information expression (STIX) Trusted automated exchange of indicator information (TAXII) Common vulnerabilities and exposures (CVE)

Structured threat information expression (STIX)

What is the principle of least privilege access control model? Users control access to data they own. Users are granted the strictest access control possible to data. Users are granted rights on an as-needed approach. User access to data is based on object attributes.

Users are granted rights on an as-needed approach.

What component of a security policy explicitly defines the type of traffic allowed on a network and what users are allowed and not allowed to do? identification and authentication policies acceptable use policies remote access policies password policies

acceptable use policies

Which three services are provided by the AAA framework? (Choose three.) autoconfiguration accounting authorization authentication automation autobalancing

accounting authorization authentication

A company has a file server that shares a folder named Public. The network security policy specifies that the Public folder is assigned Read-Only rights to anyone who can log into the server while the Edit rights are assigned only to the network admin group. Which component is addressed in the AAA network service framework? authorization automation accounting authentication

authentication

Which AAA component can be established using token cards? authentication accounting auditing authorization

authentication

Which technology provides the framework to enable scalable access security? role-based CLI access authentication, authorization, and accounting AutoSecure Simple Network Management Protocol Cisco Configuration Professional communities

authentication, authorization, and accounting

What service determines which resources a user can access along with the operations that a user can perform? token authentication accounting biometric authorization

authorization

A company is experiencing overwhelming visits to a main web server. The IT department is developing a plan to add a couple more web servers for load balancing and redundancy. Which requirement of information security is addressed by implementing the plan? confidentiality availability scalability integrity

availability

What three items are components of the CIA triad? (Choose three.) intervention availability scalability confidentiality access integrity

availability, confidentiality, integrity

A web server administrator is configuring access settings to require users to authenticate first before accessing certain web pages. Which requirement of information security is addressed through the configuration? scalability integrity availability confidentiality

confidentiality

Which device is usually the first line of defense in a layered defense-in-depth approach? internal router access layer switch edge router firewall

edge router

identifies salary, pay schedule, benefits, work schedule, vacations,

employee

Which two areas must an IT security person understand in order to identify vulnerabilities on a network? (Choose two.) hardware used by applications number of systems on each network network baseline data data analysis trends important applications used

hardware used by applications important applications used

Which section of a security policy is used to specify that only authorized individuals should have access to enterprise data? identification and authentication policy campus access policy Internet access policy acceptable use policy statement of scope statement of authority

identification and authentication policy

Which type of access control applies the strictest access control and is commonly used in military or mission critical applications? attribute-based access control (ABAC) mandatory access control (MAC) discretionary access control (DAC) Non-discretionary access control

mandatory access control (MAC)

defines system requirements and objectives, rules, and requirements for users when they attach to or on the network

security

In a defense-in-depth approach, which three options must be identified to effectively defend a network against attacks? (Choose three.) assets that need protection location of attacker or attackers threats to assets total number of devices that attach to the wired and wireless network past security breaches vulnerabilities in the system

vulnerabilities in the system, threats to assets, assets that need protection


Related study sets

Development and community exam study

View Set

Ch. 18: Reports on Audited Financial Statements

View Set

Study.com Financial Accounting Practice Test

View Set

Module 3 Biology EVOLUTION W13 HW

View Set

Chapter 24: Real Property and Environmental Law

View Set

Exam 1 - Pectoralis Major, Pectoralis Minor, Subclavius

View Set

Micro Economics Anirudh Bagchi Test #2 with diagrams

View Set