MCQ Bank
As per cis critical security framework what is recommended for network boundaries of an organization?
- A) Deny communication over unauthorized TCP or UDP ports
- B) Deny communication over unauthorized TCP ports
- C) Deny communication with all open ports
- D) Deny communication over unauthorized UDP ports
In which mode should vulnerability scanning be performed?
- A) Dedicated mode
- B) Authenticated mode
- C) Un-authenticated mode
- D) Deep scan mode
Which of the following can be used to look for unusual attack mechanisms on organization’s network boundaries?
- A) Host-based intrusion prevention (ips) system
- B) Network-based intrusion prevention (ips) system
- C) Network-based intrusion detection (ids) sensors
- D) Host-based intrusion detection (ids) sensors
Before deploying any new devices in a networked environment what should be done with passwords?
- A) Remove the passwords
- B) Keep the default passwords
- C) Create very small passwords
- D) Change the default passwords
The dedicated machine used by administrators for administrative tasks should have following features.
- A) Isolated from organization’s primary network
- B) All routine operational functions can be performed on it
- C) Have internet access
- D) Email and browsing facility available
As per boundary defense control of cis what should be done with network traffic at proxy?
- A) Allow all the network traffic
- B) Block all the network traffic
- C) Use blacklist to allow access to sites without decrypting
- D) Decrypt all encrypted network traffic prior to analyzing the content
The main difference between security organization in a large-sized and medium sized organization is that the following is absent in a medium sized security organization.
- A) Security frameworks and standards
- B) Ciso
- C) Chief risk officer
- D) Steering committee