Twa kɔ nsɛm atitiriw so
Log in
Sign up for FREE
arrow_back
Laabri

AP Cybersecurity: Topic 3.2 Quiz

star
star
star
star
star
Last updated about 3 hours ago
20 Nsɛmmisa
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
Asemmisa {{asɛmmisaAhyɛnsode}}
1.

A security audit reveals that several newly installed network routers in a financial services company are configured with default local usernames and passwords for administrative access. The security team needs to enforce the company's router security policy. What is the most appropriate action to comply with the standard requiring centralized authentication?

Asemmisa {{asɛmmisaAhyɛnsode}}
2.

A network administrator notices that Telnet is enabled on several edge routers for remote management convenience. Which requirement from the router security policy is being violated, and what should be done to fix it?

Asemmisa {{asɛmmisaAhyɛnsode}}
3.

The security architecture mandates that all network segments be protected by dedicated firewalls to inspect traffic at a deeper level than the routers. Which component of the router security policy supports this approach?

Asemmisa {{asɛmmisaAhyɛnsode}}
4.

An attacker gains unauthorized physical access to a company floor and plugs their laptop into an empty wall jack connected to a switch. The switch immediately detects the new device and blocks the port. Which feature, required by the switch security policy, was most likely enabled to prevent this unauthorized access?

Asemmisa {{asɛmmisaAhyɛnsode}}
5.

A company is dealing with an issue where users are connecting unauthorized personal devices (smartphones, personal laptops) to the wired network, bypassing corporate access controls. To address this, the switch security policy requires a configuration that limits which specific network interface cards (NICs) can communicate through a switch port. Which security mechanism is required?

Asemmisa {{asɛmmisaAhyɛnsode}}
6.

An internal auditor discovers that IT staff are logging directly into network switches using administrator accounts stored locally on the switch devices. Which change is required by the switch security policy to centralize and improve accountability for switch access?

Asemmisa {{asɛmmisaAhyɛnsode}}
7.

A marketing employee requests VPN access to download sales collateral from the internal server while traveling. The company's VPN policy states that only Network Operations and Executive Leadership roles are permitted to use the VPN. How should the request be handled?

Asemmisa {{asɛmmisaAhyɛnsode}}
8.

A software developer is using the company VPN and simultaneously accessing the internal corporate network and their personal home internet connection (e.g., to stream video). This configuration allows corporate data to potentially mix with personal traffic and bypass corporate security monitoring. Which specific security measure, detailed in the VPN policy, is this configuration violating?

Asemmisa {{asɛmmisaAhyɛnsode}}
9.

To ensure only verified users access the internal network remotely, the VPN policy mandates a security mechanism where the user must provide two or more verification factors. Which authentication requirement is the policy enforcing?

Asemmisa {{asɛmmisaAhyɛnsode}}
10.

The company's wireless security policy mandates that all data transmitted over the wireless network must be protected against eavesdropping. This requires using a specific strong encryption standard with a minimum key length. Which encryption standard does the policy likely require?

Asemmisa {{asɛmmisaAhyɛnsode}}
11.

An organization wants to implement a robust wireless authentication system where users are authenticated by credentials against a central server (e.g., RADIUS) rather than a simple pre-shared key. Which protocol, required by the wireless security policy, enables this advanced level of authentication?

Asemmisa {{asɛmmisaAhyɛnsode}}
12.

A system administrator wants to prevent unknown devices from accessing the network even if they obtain the wireless password. The administrator decides to configure the wireless access points (WAPs) to only permit connections from devices whose hardware addresses are explicitly listed. Which access control mechanism is the administrator enabling?

Asemmisa {{asɛmmisaAhyɛnsode}}
13.

To make it more difficult for an adversary conducting a site survey to passively discover and profile the organization's wireless network, the security team implements a configuration change on all Wireless Access Points (WAPs). Which configuration should they disable?

Asemmisa {{asɛmmisaAhyɛnsode}}
14.

A hospital has a secure wireless network that is only intended for use within the patient care area. The security team is concerned that the signal extends to the parking lot and adjacent businesses. Which physical configuration change should they implement to mitigate this risk?

Asemmisa {{asɛmmisaAhyɛnsode}}
15.

An organization disables its beacon frame broadcasting on its WAPs. What primary security goal does this action achieve?

Asemmisa {{asɛmmisaAhyɛnsode}}
16.

A security consultant audits a small office network and finds it's using WEP for its wireless encryption. What is the consultant's primary recommendation, and why?

Asemmisa {{asɛmmisaAhyɛnsode}}
17.

An organization is evaluating wireless encryption standards for a new high-security network. They are specifically looking for the most current and strongest algorithm available to protect wireless frames from being read by adversaries. Which protocol should they choose?

Asemmisa {{asɛmmisaAhyɛnsode}}
18.

A network administrator configured the corporate wireless network using WPS for simple device setup. An auditor points out that this protocol is known to be insecure and has vulnerabilities. What should the administrator do?

Asemmisa {{asɛmmisaAhyɛnsode}}
19.

A security architect is designing a new policy suite for all network devices. Which of the following pairing represents the strongest security measure for each device type?

Asemmisa {{asɛmmisaAhyɛnsode}}
20.

An employee is using the VPN to access the internal network from home. To ensure both strong authentication and data confidentiality, which combination of security policies must be strictly enforced?