Browse all practice questions for the Certiport Network Security Practice Exam. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Certiport Network Security Practice Exam course image
Asymmetric Encryption: Understanding the Two Key SystemDoes asymmetric encryption use a single key for both encryption and decryption?Desktops Are Often the Least Prioritized for Physical Security MeasuresWhich type of device is typically least prioritized in terms of physical security?Differential backups explained, how they differ from full and incremental backups in network securityWhich backup method saves all changed files since the last full backup?How to Safeguard Sensitive Data on Company LaptopsWhat recommendation can be made to protect sensitive data on company laptops from unauthorized access?Understanding Biometrics as a Secure Identification MethodWhat is an authentication method that identifies individuals based on physical characteristics?Understanding Confidentiality in the CIA Triad and Its Role in Data SecurityWhat aspect of the CIA triad focuses on the prevention of unauthorized access to sensitive data?Understanding Dictionary Attacks in CybersecurityWhat type of attack is characterized by the use of a predefined list of passwords?Understanding How IPsec Establishes a Chain of Authority with Digital SignaturesWhat mechanism does IPsec use to establish a chain of authority?Understanding the Purpose of Honey Pots in CybersecurityWhat is the primary purpose of a honey pot in cybersecurity?Understanding the Role of RSA in Secure Data TransmissionWhich of the following statements about RSA is true?Understanding the Role of Self-Replicating Worms in Computer SecurityWhat is a characteristic of worms in computer security?What is the purpose of a digital certificate in network security?
More practice questions

These questions are part of the practice quiz. Start practicing

  • What is the main characteristic of a differential backup?
  • What should you do second when sharing the "Facebook Photos" folder under the principle of least privilege?
  • True or False: A VPN should use PPTP for tunneling.
  • What type of attack is characterized by the inability to block unwanted ads despite user attempts?
  • What is a security device that generates a random number used for a second form of authentication?
  • What type of malware involves forging a fake sender address in an email?
  • What is a VPN primarily used for?
  • Which of the following is considered a technical control in cybersecurity?
  • What are the three types of attack surfaces?
  • What is the main benefit of using strong, unique passwords for every service?
  • Which type of backup captures all files that have changed since the last full backup?
  • Which of the following protocols is commonly used for sending secure email?
  • Which Windows registry hive contains current settings for the current user?
  • Which internet technology is considered to pose the greatest risk to users?
  • What effect does installing an anti-malware app often have on existing malware areas in Windows security?
  • Does a stateful firewall allow only packets matching known active connections while rejecting others?
  • Which format is most commonly used for digital certificates?
  • Can application-level firewalls provide content filtering?
  • Which is a primary purpose of encryption in network security?
  • Which security feature provides encryption for full drives on Windows operating systems?
  • Does a virus need a carrier in order to propagate itself?
  • Which of the following is true about WPA and WPA2?
  • Which protocols are used to encrypt emails? Choose 2.
  • What malicious activity is triggered at a specific time to cause harm?
  • What email filtering technique verifies that an email is from a trusted IP address?
  • What is the primary purpose of a firewall in a network?
  • What characteristic defines a polymorphic virus?
  • Which type of DNS record is used to lookup an associated host or domain name by its IP address?
  • Which feature would allow a user to browse without leaving a trace in most web browsers?
  • What kind of encryption does SSL VPN generally use?
  • What type of malware is specifically designed to replicate itself and spread to other computers?
  • What is the primary goal of a disaster recovery plan (DRP)?
  • How does a worm typically propagate?
  • What does the minimum password age policy enforce in an organization?
  • When operating in private browsing mode, does the workplace know which sites are visited?
  • Which of the following statements about dedicated hardware firewalls is true?
  • Which of the following best describes the function of a firewall?
  • Which of the following is a common feature of phishing attacks?
  • What is the primary purpose of implementing an Encrypted File System (EFS) on laptops?
  • What is a common password policy regarding password reuse?
  • What technique is often used to gain unauthorized access to passwords?
  • Which of the following is a false statement regarding DES?
  • Which tunneling protocol is used to carry packets from unroutable IP addresses across a routable IP network?
  • The CEO of a company wants to prevent users from copying confidential data to removable media devices. The best protection is to ___________________.
  • What is the primary goal of implementing anti-spam solutions in email systems?
  • What is an effective method to prevent an attack on a company server that uses cookie-related misdirection?
  • Which of the following are NOT considered specific types of audits?
  • Which NTFS permission allows a user to change a file's content?
  • Which password is considered the strongest based on complexity?
  • In a public key infrastructure, which key is responsible for decrypting the data?
  • In private browsing, what typically happens to the browsing history?
  • Which of the following best describes a stealth virus?
  • What is spyware commonly thought to be?
  • Which of the following actions best helps in managing password security within an organization?
  • What provides an encrypted connection between a remote user and an enterprise network?
  • What is the primary function of Read Only Domain Controllers?
  • Where are password policies typically established for an Active Directory domain?
  • What type of malware steals data and demands a ransom for its return?
  • Which of the following protocols are part of IPsec? Choose three.
  • What is the status of WEP in current security practices?
  • Is DNSSEC proprietary to Microsoft domain name servers?
  • Which two actions are part of hardening a server?
  • Which of the following represents a strategy for effectively managing network security?
  • What is the primary reason for encrypting offline files?
  • For what type of network is MAC filtering best suited?
  • Do Read Only Domain Controllers have any benefits regarding management requirements?
  • Which of the following represents an example of a simple, weak password?
  • What does BitLocker primarily encrypt?
  • What does the "C" in CIA stand for when discussing network security?
  • True or False: Trojan horses are designed to appear as legitimate applications.
  • What is one of the core functions of RADIUS in a network?
  • What is one of the layers of defense in Microsoft’s anti-phishing strategies?
  • In the CIA triad, which principle is concerned with preventing erroneous modification of data?
  • Which of the following is a benefit of DNSSEC?
  • What is considered the minimum length for a secure password?
  • Which of the following is a function of RADIUS?
  • When processing application-level queries, how do application-level firewalls compare to traditional firewalls?
  • What is one of the main functions of IPsec?
  • If you copy a file or folder to a new volume, which permissions are typically applied?
  • Is "Cookie" a strong password against dictionary attacks?
  • Which type of audit event is best for determining attempts to access non-Active Directory objects?
  • What maps multiple internal IP addresses to a shared external IP address?
  • What is one effective way to protect your computer from hackers and malicious software?
  • Which of the following is considered an advanced permission in NTFS?
  • What type of malware is known to gain administrator-level access and target critical system components?
  • Audit logs can be used to warn off:
  • For what purpose is a Remote Wipe feature primarily used on mobile devices?
  • What does the term spoofing refer to in the context of security?
  • Is a worm typically found in most music and videos?
  • Does an internet service provider know the sites visited while in private browsing mode?
  • What is the procedure for applying a software restriction policy to an entire Active Directory domain?
  • Which Windows registry hive is responsible for runtime information?
  • If a user is experiencing issues with a webpage not displaying the latest content, what is the first troubleshooting step?
  • In the IT field, impersonation such as a person impersonating a help desk agent and asking for a password is a type of ____________________.
  • What is the purpose of system audits in network security?
  • In the context of network security, what does the acronym AUP stand for?
  • What is the significance of the principle of least privilege in network security?
  • What is a key benefit of the SmartScreen filter found in Internet Explorer and Microsoft Edge?
  • Which encryption algorithm is classified as asymmetric?
  • What type of permissions do grey checkboxes indicate in a permissions settings interface?
  • If your email program is blocking emails from a certain sender, what is the best option?
  • Which type of attack is capable of stealing cookies from a user's machine?
  • Phishing primarily involves which type of online crime?
  • Which statement is true about a stealth virus?
  • When a department head wants to control permissions but is not an administrator, what should they do?
  • Which of the following best defines 'vulnerability' in the context of information security?
  • What should be the immediate action for mobile devices used for business if they are lost or stolen?
  • Which of the following protocols is considered unsecured and should be avoided in a server environment?
  • In a secure dynamic DNS environment, who has the ability to create records on a DNS server?
  • What is the name of the segments into which a router can divide a physical network?
  • Which statement about network address translation (NAT) is correct?
  • What is the potential risk associated with not securing data on company laptops?
  • What network security measure can help identify unauthorized access attempts?
  • The process of eliminating risk by choosing not to participate in an action or activity is known as?
  • Do application-level firewalls support caching?
  • Which of the following is NOT a common characteristic of phishing attacks?
  • What network management tool monitors packet traffic and reports on sender, destination, and type of packet?
  • What final step must be taken to ensure the appropriate access to the "Facebook Photos" folder?
  • Which of the following statements is false about RADIUS?
  • True or False: Antimalware tools can completely prevent all types of cyber attacks.
  • You can surf the web without leaving a history trail of the sites you visit by using what feature in Internet Explorer or Microsoft Edge?
  • Which of the following are examples of biometric devices? Choose 2.
  • When you copy folders that have been encrypted through EFS within the same volume, what happens to their encryption?
  • What security feature can be utilized to enhance access control on a network?
  • What term refers to an attack that takes advantage of software vulnerabilities that are unknown to the vendor?
  • An attacker has set up a system that tricks the user's computer into thinking the attacker is the server and tricks the server into thinking the attacker is the user's computer. What is the name of this type of attack?
  • Is RADIUS a Cisco-proprietary protocol?
  • A digital signature included in an e-mail is used to __________.
  • Which type of malware is designed to replicate itself and spread to other machines?
  • What do small software programs designed to spread from one computer to another and interfere with operations called?
  • Which of the following statements about network sniffing is true?
  • Which Windows tool is specifically used for encrypting removable drives?
  • What happens to folders that have EFS encryption when moved to a different volume?
  • Dedicated hardware firewalls are primarily which type?
  • Which methods can be used to deploy security templates? Choose two.
  • Before access control can happen in a physical security context, what must occur?
  • What is true about how a worm operates?
  • What type of VPN connection is typically used to link two business entities?
  • What type of malware is known for collecting user information without their consent?
  • What occurs during IP address spoofing?
  • What is the defining characteristic of spoofing?
  • Once auditing requirements are established, what must be considered about the logs?
  • Which Windows registry hive stores file extensions for applications?
  • What is the main function of a buffer overflow?
  • Which type of malware is often used to modify or exploit backdoor access in a system?
  • Which type of security policy defines the requirements to connect to a computer network from outside?
  • What is a key feature of two-factor authentication?
  • By default, which websites are assigned to the trusted site zone in browser settings?
  • What is the function of User Account Control (UAC) in Windows?
  • Does IPsec encrypt data packets using the Authentication Header (AH)?
  • What type of malware is designed to replicate itself and spread to other machines?
  • What protocol does a VPN use to encapsulate IP packets over a public network?
  • Which of the following is a common technique used to secure a Wi-Fi network?
  • Which technology allows multiple computers on an internal network to share one public address?
  • An access list on a router is an example of which type of firewall?
  • Application-level firewalls are generally more or less resource-intensive than traditional firewalls?
  • Which Windows application is designed to protect devices from malware?
  • Which group scopes are defined by Active Directory?
  • Which type of backup saves only files changed since the last incremental backup?
  • When will BitLocker use software-based encryption?
  • Are antivirus apps guaranteed to keep the blacklist for email addresses and domains up to date?
  • A person buying something securely from a website will receive a _________ key to encrypt sensitive data.
  • What impact does a worm have on a computer's performance?
  • What technique allows only specific devices to connect to a wireless network?
  • Which of the following statements is true regarding MAC addresses?
  • True or False: You should always audit log on successes.
  • Which of the following best describes adware?
  • What are the two tools that can be used to keep servers updated and patched properly besides Windows Update?
  • What type of attack uses SQL commands to manipulate data through a web application?
  • Which of the following consists of fraudulent emails that appear to be from a legitimate source requesting personal information?
  • What does RADIUS primarily perform in network services?
  • True or False: A stateful firewall remembers the state of connections.
  • What is one primary benefit of using a firewall?
  • Which software provides protection from destructive bits of code loaded onto a computer without the user's knowledge?
  • Which software category encompasses protection from various threats, including spyware and viruses?
  • Which principle describes a polymorphic virus's ability to avoid detection?
  • True or False: A certificate authority provides keys for authentication used in a digital certificate.
  • What can a network sniffer easily obtain?
  • Which attack attempts to break passwords using a dictionary of common words and phrases?
  • Which of the following best describes the role of HKEY_LOCAL_MACHINE?
  • What indicates that an attack is not being eradicated by anti-malware programs?
  • An intrusion prevention system (IPS) functions as which type of control?
  • Which Windows registry hive stores settings for the computer as a whole?
  • Which factor is most important when considering server security?
  • Which of the following would be categorized as a best practice for securing digital certificates?
  • The number of running services on a system falls under which type of attack surface?
  • What type of malware takes advantage of undisclosed vulnerabilities?
  • What aspect of CIA is demonstrated by verifying the sender of a document?
  • In NTFS, which permission allows one to change permissions on a file or folder?
  • What first step should you take to share a folder titled "Facebook Photos" while implementing the principle of least privilege?
  • Which type of record in DNS is primarily used for directing email traffic?
  • Which of the following is NOT true regarding private browsing?
  • Which component of the CIA triad prevents unauthorized withholding of data?
  • Which of the following is NOT a characteristic of a denial of service attack?
  • Rules set on firewalls are primarily associated with which attack surface?
  • Phishing attacks typically aim to obtain what type of information?
  • Which type of risk management strategy involves accepting the level of risk?
  • An acceptable use policy (AUP) is an example of what type of control?
  • What is another name for a perimeter network?
  • What type of key is used to decrypt data that was encrypted with a public key?
  • Is IPsec used to create a secure tunnel between two computing devices?
  • Which statement about RADIUS is true?
  • What is the third step to share the "Facebook Photos" folder according to the least privilege principle?
  • What technique is used to redirect internet traffic to a fraudulent website to obtain user credentials?
  • Threat modelling identifies potential threats and vulnerabilities from whose point of view?
  • What type of malware includes programs that block the user from accessing their data?
  • When should a company conduct a security audit?
  • Which method do audits typically use to track access to sensitive information?
  • Where can a domain user account's password be reset on a Windows Server?
  • What is a 'honey pot' in the context of network security?
  • In network security, which is more critical to monitor: successful logon attempts or failed logon attempts?
  • What is the primary purpose of a VPN?
  • What does the term 'phishing' refer to in cybersecurity?
  • Which of the following is NOT an NTFS permission?
  • Does a worm typically corrupt or modify files?
  • What does the term "buffer overflow" refer to?
  • What does a firewall primarily do in a network?
  • Which tool is commonly used to manage and filter network traffic in cybersecurity?
  • Which of the following is an example of an event that should require auditing?
  • Does DNSSEC enhance the security of domain name system queries?
  • What area of group policy can be utilized to control which applications can be executed on devices?
  • Which of the following is NOT a group scope defined by Active Directory?
  • In terms of CIA, ensuring the sales department can access a document primarily relates to which aspect?
  • What type of malware is characterized by encrypting files and demanding ransom for decryption?
  • What does DNSSEC use to create a chain of authority?
  • Which step follows sharing the "Facebook Photos" folder with read-share permission when implementing least privilege?
  • If a server is experiencing a high volume of packets from several computers in HR, what kind of attack might this indicate?
  • Where do most computers obtain their media access control (MAC) address?
  • Which security feature allows users to recover encrypted files?
  • Which types of audits generally include tracking user access on a network?
  • What is the first action to take when a device is suspected of being infected with malware?
  • What type of software offers protection from applications that gather user information?
  • To ensure the security of sensitive data, which protocol is best avoided?
  • True or False: The tool used to view audit logs is called an event viewer.
  • In which locations can system audit policies be configured?
  • What form of malware allows unauthorized permissions on a system or initiates an unauthorized task?
  • True or False: A good audit plan should collect both successful and failed events.
  • What does BitLocker typically use to store the encryption key on a computer?
  • Which of the following permissions allows a user to view a folder's contents?
  • Is it true that Read Only Domain Controllers need at least one member of the domain administrators group?
  • Which of the following should be considered when implementing security measures for email?
  • True or False: A VPN connects two entities over a wide area network like the internet.
  • What type of backup includes all files and resets the archive bit?
  • What type of VPN often requires users to connect through a web browser?
  • When connecting a laptop to a home router, which combination of security and encryption should be selected for optimal protection?
  • When conducting a full backup, what happens to the archive bit?
  • What types of lists are utilized in anti-spam solutions? Choose two.
  • What is an example of a tool used for managing desktop data center and cloud configurations?
  • The IEEE 802.11 standard defines the name for a WLAN as the _____________.
  • What type of attack might result in users being unable to access their email due to overloading a mail server?
  • What term describes the method of analyzing and classifying information based on its sensitivity?
  • True or False: You cannot limit the size of audit logs.
  • What do grey checkboxes in the Allow column for a group's permissions represent?
  • What Windows 10 feature allows users to authenticate using biometric data such as face or fingerprint?
  • What protocol should be restricted to email servers for sending emails?
  • When considering network security, what is the primary role of a firewall?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy