Security+ Chapter 1

Unlock all answers in this set

Unlock answers
question
A user copies files from her desktop to a USB Flash Drive & puts the device into her pocket. Which security goals is most at risk?
answer
Confidentiality
question
Smart phones with cameras and Internet capabilities pose a risk to which security goal?
answer
Confidentiality
question
By definition, which security concept ensures that only authorized parties can access data?
answer
Confidentiality
question
You computer system is a participant in an asymmetric cryptography system. You've crafted a message to be sent to another user. Before transmission, you hash the message, then encrypt the hash using your private key. You then attach this encrypted hash to your message as a digital signature before sending it to the other user. In this example, what protection does the hasing activity ptovide?
answer
Integrity
question
Which of the following is an example of an internal threat? A user accidentally deletes the new product designs. A delivery man is able to walk into a controlled area & steal a laptop. A water pipe in the server room breaks. A server backdoor allows an attacker on the Internet to gain access to the intranet site.
answer
A user accidentally deletes the new product designs.
question
What is the greatest threat to the confidentiality of data in most secure organizations? Hacker intrusion Malware USB Devices Operator error
answer
USB Devices
question
Which of the following is the correct definition of a threat? Any potential danger to the confidentiality, integrity, or availability of information or systems. Absence or weakness of a safeguard that could be exploited. The likelihood of an attack taking advantage of a vulnerability. Instance of being exposed to losses from an attacker
answer
Any potential danger to the confidentiality, integrity, or availability of information systems.
question
Which of the following is an example of a vulnerability? Mis-configured server Virus infection Denial of service attack Unauthorized access to confidential resources
answer
Mis-configured server
question
Which of the following is not a valid concept to associate with integrity? Control access to resources to prevent unwanted access. Ensure your systems record the real information when collecting data Prevent the unauthorized change of data Protect your environment so it maintains the highest source of truth.
answer
Control access to resources to prevent unwanted access
question
When a cryptographic system is used to protect the confidentiality of data, what is actually protected?
answer
Unauthorized users are prevented from view or accessing the resource.
question
By definition, which security concept uses the ability to prove that a sender sent an encrypted message?
answer
Non-repudiation
question
The company network is protected by a firewall, an IDS, and tight access controls. All of the files on this protected network are copied to tape every 24 hours. The backup solution imposed on this network is designed to provide protection for what security service?
answer
Availability
Get an explanation on any task
Get unstuck with the help of our AI assistant in seconds
New