Skip to main content

Network Defense and Countermeasures Exam Practice Tests - 750 Verified Questions

Page 1


Network Defense and Countermeasures Exam Practice Tests

Course Introduction

Network Defense and Countermeasures explores the strategies, technologies, and best practices used to protect computer networks from unauthorized access, misuse, or attacks. The course covers foundational concepts such as threat assessment, intrusion detection and prevention, firewalls, virtual private networks (VPNs), and endpoint protection. Students learn how to design layered defense architectures, implement network security policies, and respond to common network threats. The curriculum includes hands-on labs and case studies to provide practical experience in configuring security tools and deploying countermeasures against evolving cyber threats. By the end, students will be equipped to evaluate risks and implement effective network defense solutions within various organizational environments.

Recommended Textbook

CompTIA Security+ Guide to Network Security Fundamentals 5th Edition by Mark Ciampa

Available Study Resources on Quizplus

15 Chapters

750 Verified Questions

750 Flashcards

Source URL: https://quizplus.com/study-set/3831

Page 2

Chapter 1: Introduction to Security

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76425

Sample Questions

Q1) Which position below is considered an entry-level position for a person who has the necessary technical skills?

A)security technician

B)security administrator

C)CISO

D)security manager

Answer: A

Q2) A person or element that has the power to carry out a threat

A)asset

B)cyberterrorism

C)hactivist

D)exploit kit

E)computer spy

F)risk

G)threat

H)threat agent

I)vulnerability

J)threat vector

Answer: H

To view all questions and flashcards with answers, click on the resource link above.

Page 3

Chapter 2: Malware and Social Engineering Attacks

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76418

Sample Questions

Q1) Spreading similarly to a virus, a worm inserts malicious code into a program or data file.

A)True

B)False

Answer: False

Q2) A phishing attack that uses telephone calls instead of e-mails.

A)Adware

B)Backdoor

C)Botnet

D)Computer virus

E)Hoax

F)Keylogger

G)Logic bomb

H)Macro virus

I)Spear phishing

J)Vishing

Answer: J

Q3) Malicious software, or ____________________, silently infiltrate computers with the intent to do harm.

Answer: malware

To view all questions and flashcards with answers, click on the resource link above. Page 4

Chapter 3: Application and Networking-Based Attacks

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76417

Sample Questions

Q1) Which type of attack below is similar to a passive man-in-the-middle attack?

A)replay

B)hijacking

C)denial

D)buffer overflow

Answer: A

Q2) Choose the SQL injection statement example below that could be used to find specific users:

A)whatever' OR full_name = '%Mia%'

B)whatever' OR full_name IS '%Mia%'

C)whatever' OR full_name LIKE '%Mia%'

D)whatever' OR full_name equals '%Mia%'

Answer: C

Q3) What are zero-day attacks?

Answer: Zero day attacks are previously unknown vulnerabilities that are exploited.

Q4) How does ARP poisoning take advantage of the use of ARP?

Answer: An attacker modifies the MAC address in the ARP cache so that corresponding IP addresses point to different computers.

To view all questions and flashcards with answers, click on the resource link above. Page 5

Chapter 4: Host, Application, and Data Security

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76416

Sample Questions

Q1) How does an RFID tag embedded into an ID badge function without a power supply?

Q2) Describe how a DLP can be configured.

Q3) Securing the host involves protecting the physical device itself, securing the operating system software on the system, using security-based software applications, and monitoring logs.

A)True

B)False

Q4) What type of filtering utilizes a an analysis of the content of spam messages in comparison to neutral / non-spam messages in order to make intelligent decisions as to what should be considered spam?

A)Blacklist filtering

B)Whitelist filtering

C)Bayesian filtering

D)Extension filtering

Q5) ____________________ locks keep a record of when the door was opened and by which code.

Q6) How can cable conduits that run between two secure areas be protected?

Q7) How does DLP index matching work?

Page 6

Q8) What are the three states of data that DLP typically examines?

Q9) Describe a mantrap.

To view all questions and flashcards with answers, click on the resource link above.

Page 7

Chapter 5: Basic Cryptography

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76415

Sample Questions

Q1) A key exchange that requires all parties to agree upon a large prime number and related integer so that the same key can be separately created.

A)Advanced Encryption Standard (AES)

B)Block cipher

C)Ciphertext

D)Data Encryption Standard (DES)

E)Diffie-Hellman (DH)

F)Elliptic curve cryptography (ECC)

G)Ephemeral key

H)Private key

I)Public key

J)Stream cipher

Q2) The Data Encryption Standard is a(n) ______________ cipher.

Q3) Data that is in an unencrypted form is referred to as which of the following?

A)Plaintext

B)Plain text

C)Simpletext

D)Cleartext

Q4) Discuss how cryptography can help ensure the availability of the data.

Q5) Describe hard disk drive encryption.

To view all questions and flashcards with answers, click on the resource link above. Page 8

Chapter 6: Advanced Cryptography

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76414

Sample Questions

Q1) Explain how digital certificates are managed.

Q2) Digital signatures actually only show that the public key labeled as belonging to the person was used to encrypt the digital signature.

A)True

B)False

Q3) Key ____________________ dates prevent an attacker who may have stolen a private key from being able to decrypt messages for an indefinite period of time.

Q4) The type of trust relationship that can exist between individuals or entities.

A)Bridge trust model

B)Certificate Authority (CA)

C)Certificate Repository

D)Digital certificate

E)Distributed trust model

F)key escrow

G)Public key Infrastructure (PKI)

H)Session keys

I)Third-party trust

J)Trust model

Q5) List two requirements for verification of an EV SSL.

To view all questions and flashcards with answers, click on the resource link above. Page 9

Chapter 7: Network Security

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76413

Sample Questions

Q1) Behavior-based monitoring attempts to overcome the limitations of both anomaly-based monitoring and signature-based monitoring by being more adaptive and proactive instead of reactive.

A)True

B)False

Q2) What is the name for a computer or application program that intercepts user requests from the internal secure network and then processes that request on behalf of the user?

A)proxy server

B)DNS server

C)VPN server

D)telnet server

Q3) A ______________ is a worker who work occasionally or regularly from a home office.

Q4) What is the difference between anomaly based monitoring and signature based monitoring?

Q5) List and describe three advantages to subnetting.

Q6) Describe how VLAN communication takes place.

Q7) List and describe three features of Internet content filters.

Q8) List and describe two advantages of a proxy server.

To view all questions and flashcards with answers, click on the resource link above. Page 10

Chapter 8: Administering a Secure Network

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76412

Sample Questions

Q1) A TCP/IP protocol that uses Secure Sockets Layer or Transport Layer Security to encrypt commands sent over the control port (port 21) in an FTP session.

A)Audit log

B)Event log

C)File Transfer Protocol (FTP)

D)Flood guard

E)FTP Secure (FTPS)

F)Host elasticity

G)Loop protection

H)Snapshot

I)Telnet

J)Virtualization

Q2) What device operates at the Network Layer (layer 3) of the OSI model and forwards packets across computer networks?

A)bridge

B)router

C)switch

D)hub

Q3) What are the two types of community strings?

To view all questions and flashcards with answers, click on the resource link above. Page 11

Chapter 9: Wireless Network Security

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76411

Sample Questions

Q1) When using AES-CCMP, the AES-256 bit key requires how many rounds?

A)4

B)10

C)13

D)15

Q2) Bluetooth devices are not backward compatible with previous versions.

A)True

B)False

Q3) On a piconet, slave devices that are connected but are not actively participating are called ____________________ slaves.

Q4) Which EAP protocol creates an encrypted channel between the client authentication server and the client, and uses Microsoft Windows logins and passwords?

A)TKIP

B)LEAP

C)PEAP

D)ICMP

Q5) ____________________ technology enables users to connect wirelessly to a wide range of computing and telecommunications devices.

To view all questions and flashcards with answers, click on the resource link above. Page 12

Chapter 10: Mobile Device Security

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76424

Sample Questions

Q1) What term is used to describe the operation of stockrooms where mobile devices are stored prior to their dispersal to employees?

A)Asset tracking

B)Inventory control

C)Device monitoring

D)Access filtering

Q2) How can an administrator manage applications on mobile devices using a technique called "app wrapping?"

A)Mobile Application Management

B)Extended Application Management

C)Remote Application Management

D)Cloud Application Management

Q3) Describe a subnotebook computer.

Q4) What mobile operating system below requires all applications to be reviewed and approved before they can be made available on the public store front?

A)Android

B)Blackberry OS

C)iOS

D)Symbian

To view all questions and flashcards with answers, click on the resource link above. Page 13

Chapter 11: Access Control Fundamentals

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76423

Sample Questions

Q1) Discuss the differences between DAP and LDAP.

Q2) The second version of the Terminal Access Control Access Control System (TACACS) authentication service.

A)Account expiration

B)Discretionary access control (DAC)

C)Extended TACACS (XTACACS)

D)Job rotation

E)LDAP injection attack

F)Least privilege

G)Mandatory access control (MAC)

H)Separation of duties

I)TACACS+

J)Time-of-day restriction

Q3) The X.500 standard defines a protocol for a client application to access an X.500 directory known as which of the following options?

A)DIB

B)DAP

C)DIT

D)LDAP

Q4) Describe the two key elements of the MAC model.

Page 14

To view all questions and flashcards with answers, click on the resource link above.

Chapter 12: Authentication and Account Management

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76422

Sample Questions

Q1) Explain why the LAN Manager (LM) hash is vulnerable.

Q2) A token ____________________ is a unique random string of characters that is encrypted to protect the token from being used by unauthorized parties.

Q3) Passwords that are transmitted can be captured by what type of software?

A)application analyzer

B)system analyzer

C)function analyzer

D)protocol analyzer

Q4) ____________________ is a decentralized open source FIM that does not require specific software to be installed on the desktop.

Q5) Geolocation is the identification of the location of a person or object using technology, and can be used as part of an authentication method.

A)True

B)False

Q6) What is the difference between multifactor authentication and single-factor authentication?

Q7) Discuss the types of shortcuts that users take to help them recall their passwords.

To view all questions and flashcards with answers, click on the resource link above. Page 15

Chapter 13: Business Continuity

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76421

Sample Questions

Q1) Duplicate image backups are considered a primary key to uncovering evidence because they create exact replicas of the crime scene.

A)True

B)False

Q2) What is the name for an image that consists of an evidence-grade backup because its accuracy meets evidence standards?

A)baseline

B)mirror image

C)logical image

D)thin image

Q3) A location that has all the equipment installed but does not have active Internet or telecommunications facilities, and does not have current backups of data, is an example of a:

A)cold site

B)hot site

C)spare site

D)warm site

Q4) What are the steps in damage control?

Q5) Explain how to best capture volatile data.

To view all questions and flashcards with answers, click on the resource link above. Page 16

Chapter 14: Risk Mitigation

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76420

Sample Questions

Q1) What is a general security tip for using a social networking site?

Q2) What can be defined as the study of what a group of people understand to be good and right behavior and how people make those judgments?

A)Values

B)Morals

C)Ethics

D)Standards

Q3) List and describe two of the seven risk categories.

Q4) A(n) ____________________ is a collection of requirements specific to the system or procedure that must be met by everyone.

Q5) A due process policy is a policy that defines the actions users may perform while accessing systems and networking equipment.

A)True

B)False

Q6) What are the duties of the CMT?

Q7) ____________________ seeks to approach changes systematically and provide the necessary documentation of the changes.

Q8) List one reason why social networking sites are popular with attackers.

To view all questions and flashcards with answers, click on the resource link above. Page 17

Chapter 15: Vulnerability Assessment and Third Party Integration

Available Study Resources on Quizplus for this Chatper

50 Verified Questions

50 Flashcards

Source URL: https://quizplus.com/quiz/76419

Sample Questions

Q1) ____________________ for organizations are intended to identify vulnerabilities and alert network administrators to these problems.

Matching

a.Architectural design

b.Attack surface

c.Baseline reporting

d.Code review

e.Gray box

Q2) A healthy security posture results from a sound and workable strategy toward managing risks.

A)True

B)False

Q3) If TCP port 20 is open, then an attacker can assume that FTP is being used.

A)True

B)False

Q4) What is the term for a network set up with intentional vulnerabilities?

A)honeynet

B)honeypot

C)honeycomb

D)honey hole

To view all questions and flashcards with answers, click on the resource link above. Page 18

Turn static files into dynamic content formats.

Create a flipbook
Network Defense and Countermeasures Exam Practice Tests - 750 Verified Questions by Quizplus - Issuu