Browse all practice questions for the Certiport Network Security Practice Exam. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Certiport Network Security Practice Exam — Study Guide and Practice Questions course image
Asymmetric Encryption: Understanding the Two Key SystemDoes asymmetric encryption use a single key for both encryption and decryption?Desktops Are Often the Least Prioritized for Physical Security MeasuresWhich type of device is typically least prioritized in terms of physical security?Differential backups explained, how they differ from full and incremental backups in network securityWhich backup method saves all changed files since the last full backup?How to Safeguard Sensitive Data on Company LaptopsWhat recommendation can be made to protect sensitive data on company laptops from unauthorized access?Understanding Biometrics as a Secure Identification MethodWhat is an authentication method that identifies individuals based on physical characteristics?Understanding Confidentiality in the CIA Triad and Its Role in Data SecurityWhat aspect of the CIA triad focuses on the prevention of unauthorized access to sensitive data?Understanding Dictionary Attacks in CybersecurityWhat type of attack is characterized by the use of a predefined list of passwords?Understanding How IPsec Establishes a Chain of Authority with Digital SignaturesWhat mechanism does IPsec use to establish a chain of authority?Understanding the Purpose of Honey Pots in CybersecurityWhat is the primary purpose of a honey pot in cybersecurity?Understanding the Role of RSA in Secure Data TransmissionWhich of the following statements about RSA is true?Understanding the Role of Self-Replicating Worms in Computer SecurityWhat is a characteristic of worms in computer security?
More practice questions

These questions are part of the practice quiz. Start practicing

  • What does a firewall primarily do in a network?
  • Which tunneling protocol is used to carry packets from unroutable IP addresses across a routable IP network?
  • What is the purpose of system audits in network security?
  • Which tool is commonly used to manage and filter network traffic in cybersecurity?
  • What is the function of User Account Control (UAC) in Windows?
  • What do small software programs designed to spread from one computer to another and interfere with operations called?
  • Which component of the CIA triad prevents unauthorized withholding of data?
  • What term refers to an attack that takes advantage of software vulnerabilities that are unknown to the vendor?
  • What is the name of the segments into which a router can divide a physical network?
  • What is the third step to share the "Facebook Photos" folder according to the least privilege principle?
  • Which of the following statements about dedicated hardware firewalls is true?
  • In the CIA triad, which principle is concerned with preventing erroneous modification of data?
  • What is another name for a perimeter network?
  • Which Windows application is designed to protect devices from malware?
  • What is the main benefit of using strong, unique passwords for every service?
  • Which of the following are examples of biometric devices? Choose 2.
  • Which of the following is a common technique used to secure a Wi-Fi network?
  • What is the main function of a buffer overflow?
  • Which type of risk management strategy involves accepting the level of risk?
  • What does BitLocker typically use to store the encryption key on a computer?
  • The CEO of a company wants to prevent users from copying confidential data to removable media devices. The best protection is to ___________________.
  • What is true about how a worm operates?
  • What types of lists are utilized in anti-spam solutions? Choose two.
  • Phishing primarily involves which type of online crime?
  • For what purpose is a Remote Wipe feature primarily used on mobile devices?
  • Which NTFS permission allows a user to change a file's content?
  • What are the three types of attack surfaces?
  • What type of malware is designed to replicate itself and spread to other machines?
  • What type of attack might result in users being unable to access their email due to overloading a mail server?
  • What network security measure can help identify unauthorized access attempts?
  • Which Windows tool is specifically used for encrypting removable drives?
  • In the IT field, impersonation such as a person impersonating a help desk agent and asking for a password is a type of ____________________.
  • What is one effective way to protect your computer from hackers and malicious software?
  • Application-level firewalls are generally more or less resource-intensive than traditional firewalls?
  • Which of the following protocols is considered unsecured and should be avoided in a server environment?
  • What type of backup includes all files and resets the archive bit?
  • When processing application-level queries, how do application-level firewalls compare to traditional firewalls?
  • What impact does a worm have on a computer's performance?
  • Which type of security policy defines the requirements to connect to a computer network from outside?
  • Is RADIUS a Cisco-proprietary protocol?
  • Which statement about network address translation (NAT) is correct?
  • What is spyware commonly thought to be?
  • Does DNSSEC enhance the security of domain name system queries?
  • Which of the following protocols are part of IPsec? Choose three.
  • Which Windows registry hive stores settings for the computer as a whole?
  • Which of the following is considered a technical control in cybersecurity?
  • What is a VPN primarily used for?
  • What is the status of WEP in current security practices?
  • Which encryption algorithm is classified as asymmetric?
  • What is an example of a tool used for managing desktop data center and cloud configurations?
  • Which group scopes are defined by Active Directory?
  • When operating in private browsing mode, does the workplace know which sites are visited?
  • Where are password policies typically established for an Active Directory domain?
  • When considering network security, what is the primary role of a firewall?
  • What is the primary purpose of a firewall in a network?
  • Which type of record in DNS is primarily used for directing email traffic?
  • What maps multiple internal IP addresses to a shared external IP address?
  • What type of attack is characterized by the inability to block unwanted ads despite user attempts?
  • What should be the immediate action for mobile devices used for business if they are lost or stolen?
  • An intrusion prevention system (IPS) functions as which type of control?
  • True or False: A stateful firewall remembers the state of connections.
  • What type of VPN connection is typically used to link two business entities?
  • True or False: A VPN should use PPTP for tunneling.
  • A digital signature included in an e-mail is used to __________.
  • Which of the following is an example of an event that should require auditing?
  • What is the procedure for applying a software restriction policy to an entire Active Directory domain?
  • Phishing attacks typically aim to obtain what type of information?
  • True or False: You should always audit log on successes.
  • Are antivirus apps guaranteed to keep the blacklist for email addresses and domains up to date?
  • Is a worm typically found in most music and videos?
  • Dedicated hardware firewalls are primarily which type?
  • An access list on a router is an example of which type of firewall?
  • What is the primary goal of implementing anti-spam solutions in email systems?
  • Do application-level firewalls support caching?
  • What is the primary reason for encrypting offline files?
  • Which statement is true about a stealth virus?
  • What does DNSSEC use to create a chain of authority?
  • Which type of audit event is best for determining attempts to access non-Active Directory objects?
  • Once auditing requirements are established, what must be considered about the logs?
  • If a user is experiencing issues with a webpage not displaying the latest content, what is the first troubleshooting step?
  • What type of malware is specifically designed to replicate itself and spread to other computers?
  • What occurs during IP address spoofing?
  • Which of the following best describes adware?
  • What do grey checkboxes in the Allow column for a group's permissions represent?
  • What is an effective method to prevent an attack on a company server that uses cookie-related misdirection?
  • What is the first action to take when a device is suspected of being infected with malware?
  • What type of malware involves forging a fake sender address in an email?
  • What is the defining characteristic of spoofing?
  • What type of permissions do grey checkboxes indicate in a permissions settings interface?
  • Which of the following is a function of RADIUS?
  • For what type of network is MAC filtering best suited?
  • What does RADIUS primarily perform in network services?
  • What type of malware is known to gain administrator-level access and target critical system components?
  • If you copy a file or folder to a new volume, which permissions are typically applied?
  • Which of the following permissions allows a user to view a folder's contents?
  • Which principle describes a polymorphic virus's ability to avoid detection?
  • Where do most computers obtain their media access control (MAC) address?
  • How does a worm typically propagate?
  • Which step follows sharing the "Facebook Photos" folder with read-share permission when implementing least privilege?
  • Which attack attempts to break passwords using a dictionary of common words and phrases?
  • What aspect of CIA is demonstrated by verifying the sender of a document?
  • What is the significance of the principle of least privilege in network security?
  • When should a company conduct a security audit?
  • What indicates that an attack is not being eradicated by anti-malware programs?
  • What final step must be taken to ensure the appropriate access to the "Facebook Photos" folder?
  • What does the term spoofing refer to in the context of security?
  • What is one of the main functions of IPsec?
  • Audit logs can be used to warn off:
  • What is one of the layers of defense in Microsoft’s anti-phishing strategies?
  • What effect does installing an anti-malware app often have on existing malware areas in Windows security?
  • What protocol does a VPN use to encapsulate IP packets over a public network?
  • Which of the following is a false statement regarding DES?
  • Is DNSSEC proprietary to Microsoft domain name servers?
  • What form of malware allows unauthorized permissions on a system or initiates an unauthorized task?
  • True or False: Antimalware tools can completely prevent all types of cyber attacks.
  • The IEEE 802.11 standard defines the name for a WLAN as the _____________.
  • Which of the following best describes the function of a firewall?
  • Which of the following statements is true regarding MAC addresses?
  • Which two actions are part of hardening a server?
  • What is the primary purpose of a VPN?
  • Does a virus need a carrier in order to propagate itself?
  • Which protocols are used to encrypt emails? Choose 2.
  • What characteristic defines a polymorphic virus?
  • What type of malware is characterized by encrypting files and demanding ransom for decryption?
  • Which factor is most important when considering server security?
  • Which of the following best describes a stealth virus?
  • When connecting a laptop to a home router, which combination of security and encryption should be selected for optimal protection?
  • Which Windows registry hive stores file extensions for applications?
  • True or False: The tool used to view audit logs is called an event viewer.
  • Does IPsec encrypt data packets using the Authentication Header (AH)?
  • What network management tool monitors packet traffic and reports on sender, destination, and type of packet?
  • Which type of attack is capable of stealing cookies from a user's machine?
  • What should you do second when sharing the "Facebook Photos" folder under the principle of least privilege?
  • What is considered the minimum length for a secure password?
  • What does the term 'phishing' refer to in cybersecurity?
  • Where can a domain user account's password be reset on a Windows Server?
  • What is a key feature of two-factor authentication?
  • In network security, which is more critical to monitor: successful logon attempts or failed logon attempts?
  • What is the primary function of Read Only Domain Controllers?
  • Does a worm typically corrupt or modify files?
  • Which of the following is true about WPA and WPA2?
  • Which of the following should be considered when implementing security measures for email?
  • Which of the following best describes the role of HKEY_LOCAL_MACHINE?
  • What malicious activity is triggered at a specific time to cause harm?
  • What does BitLocker primarily encrypt?
  • Which type of malware is often used to modify or exploit backdoor access in a system?
  • You can surf the web without leaving a history trail of the sites you visit by using what feature in Internet Explorer or Microsoft Edge?
  • What type of software offers protection from applications that gather user information?
  • Which type of DNS record is used to lookup an associated host or domain name by its IP address?
  • Which software provides protection from destructive bits of code loaded onto a computer without the user's knowledge?
  • What is a 'honey pot' in the context of network security?
  • Which is a primary purpose of encryption in network security?
  • What type of malware takes advantage of undisclosed vulnerabilities?
  • Which of the following is NOT a common characteristic of phishing attacks?
  • By default, which websites are assigned to the trusted site zone in browser settings?
  • When conducting a full backup, what happens to the archive bit?
  • Is it true that Read Only Domain Controllers need at least one member of the domain administrators group?
  • What does the "C" in CIA stand for when discussing network security?
  • When you copy folders that have been encrypted through EFS within the same volume, what happens to their encryption?
  • Which of the following best defines 'vulnerability' in the context of information security?
  • Which feature would allow a user to browse without leaving a trace in most web browsers?
  • What is a common password policy regarding password reuse?
  • What type of malware steals data and demands a ransom for its return?
  • Threat modelling identifies potential threats and vulnerabilities from whose point of view?
  • Which password is considered the strongest based on complexity?
  • Which of the following consists of fraudulent emails that appear to be from a legitimate source requesting personal information?
  • What area of group policy can be utilized to control which applications can be executed on devices?
  • True or False: A certificate authority provides keys for authentication used in a digital certificate.
  • Which method do audits typically use to track access to sensitive information?
  • Can application-level firewalls provide content filtering?
  • Which technology allows multiple computers on an internal network to share one public address?
  • What security feature can be utilized to enhance access control on a network?
  • What is a key benefit of the SmartScreen filter found in Internet Explorer and Microsoft Edge?
  • In private browsing, what typically happens to the browsing history?
  • When will BitLocker use software-based encryption?
  • What type of VPN often requires users to connect through a web browser?
  • What happens to folders that have EFS encryption when moved to a different volume?
  • If a server is experiencing a high volume of packets from several computers in HR, what kind of attack might this indicate?
  • What technique is used to redirect internet traffic to a fraudulent website to obtain user credentials?
  • Which of the following would be categorized as a best practice for securing digital certificates?
  • Does a stateful firewall allow only packets matching known active connections while rejecting others?
  • Which software category encompasses protection from various threats, including spyware and viruses?
  • Which methods can be used to deploy security templates? Choose two.
  • Which type of backup captures all files that have changed since the last full backup?
  • True or False: A good audit plan should collect both successful and failed events.
  • What email filtering technique verifies that an email is from a trusted IP address?
  • Which of the following represents a strategy for effectively managing network security?
  • Which of the following statements is false about RADIUS?
  • Which statement about RADIUS is true?
  • Which of the following is NOT an NTFS permission?
  • Before access control can happen in a physical security context, what must occur?
  • What is the main characteristic of a differential backup?
  • The process of eliminating risk by choosing not to participate in an action or activity is known as?
  • Which of the following is NOT a group scope defined by Active Directory?
  • In terms of CIA, ensuring the sales department can access a document primarily relates to which aspect?
  • Which of the following represents an example of a simple, weak password?
  • What provides an encrypted connection between a remote user and an enterprise network?
  • What is one primary benefit of using a firewall?
  • What is a security device that generates a random number used for a second form of authentication?
  • In the context of network security, what does the acronym AUP stand for?
  • What are the two tools that can be used to keep servers updated and patched properly besides Windows Update?
  • What type of attack uses SQL commands to manipulate data through a web application?
  • Does an internet service provider know the sites visited while in private browsing mode?
  • If your email program is blocking emails from a certain sender, what is the best option?
  • In NTFS, which permission allows one to change permissions on a file or folder?
  • Which security feature allows users to recover encrypted files?
  • Which of the following are NOT considered specific types of audits?
  • Which of the following is NOT true regarding private browsing?
  • Do Read Only Domain Controllers have any benefits regarding management requirements?
  • Rules set on firewalls are primarily associated with which attack surface?
  • Which of the following protocols is commonly used for sending secure email?
  • What does the term "buffer overflow" refer to?
  • Which types of audits generally include tracking user access on a network?
  • Which of the following is a common feature of phishing attacks?
  • What does the minimum password age policy enforce in an organization?
  • An acceptable use policy (AUP) is an example of what type of control?
  • Which Windows registry hive contains current settings for the current user?
  • What is the primary purpose of implementing an Encrypted File System (EFS) on laptops?
  • What kind of encryption does SSL VPN generally use?
  • In a secure dynamic DNS environment, who has the ability to create records on a DNS server?
  • What protocol should be restricted to email servers for sending emails?
  • True or False: A VPN connects two entities over a wide area network like the internet.
  • Which of the following actions best helps in managing password security within an organization?
  • Is IPsec used to create a secure tunnel between two computing devices?
  • An attacker has set up a system that tricks the user's computer into thinking the attacker is the server and tricks the server into thinking the attacker is the user's computer. What is the name of this type of attack?
  • What technique allows only specific devices to connect to a wireless network?
  • What is one of the core functions of RADIUS in a network?
  • A person buying something securely from a website will receive a _________ key to encrypt sensitive data.
  • What is the purpose of a digital certificate in network security?
  • What Windows 10 feature allows users to authenticate using biometric data such as face or fingerprint?
  • Is "Cookie" a strong password against dictionary attacks?
  • True or False: You cannot limit the size of audit logs.
  • What type of key is used to decrypt data that was encrypted with a public key?
  • What technique is often used to gain unauthorized access to passwords?
  • Which format is most commonly used for digital certificates?
  • The number of running services on a system falls under which type of attack surface?
  • What term describes the method of analyzing and classifying information based on its sensitivity?
  • What type of malware is known for collecting user information without their consent?
  • Which of the following statements about network sniffing is true?
  • What type of malware includes programs that block the user from accessing their data?
  • Which type of backup saves only files changed since the last incremental backup?
  • When a department head wants to control permissions but is not an administrator, what should they do?
  • What first step should you take to share a folder titled "Facebook Photos" while implementing the principle of least privilege?
  • Which Windows registry hive is responsible for runtime information?
  • Which security feature provides encryption for full drives on Windows operating systems?
  • To ensure the security of sensitive data, which protocol is best avoided?
  • Which of the following is considered an advanced permission in NTFS?
  • What is the potential risk associated with not securing data on company laptops?
  • True or False: Trojan horses are designed to appear as legitimate applications.
  • Which internet technology is considered to pose the greatest risk to users?
  • Which type of malware is designed to replicate itself and spread to other machines?
  • What is the primary goal of a disaster recovery plan (DRP)?
  • Which of the following is a benefit of DNSSEC?
  • In which locations can system audit policies be configured?
  • In a public key infrastructure, which key is responsible for decrypting the data?
  • What can a network sniffer easily obtain?
  • Which of the following is NOT a characteristic of a denial of service attack?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy