Security+ Welcome to your Security+ What kind of physical access device restricts access to a small number of individuals at one time? Checkpoint Perimeter security Security zones Mantrap None Which of the following is a set of voluntary standards governing encryption? PKI PKCS ISA SSL None Which type of audit can be used to determine whether accounts have been established properly and verify that privilege creep ins't occurring? Privilege audit Usage audit Escalation audit Report audit None What is the acronym associated with the point of maximum tolerable loss for a system due to a major incident? ARO RPO RTP WML None What type of exercise involves discussing possible security risks in a low-stress environment? White box Tabletop Black hat DHE None You want to install a crypto processor chip that can be used to enhance security with the PKI systems. Which of the following is the one you are looking for? OCSP HSM MTU PIV None Which design concept limits access to system from outside users while protecting users and systems inside the LAN? DMZ VLAN I&A Router None In the key recovery process, which key must be recoverable? Rollover key Secret Key Previous Key Escrow Key None Which kind of attack is designed to overload a particular protocol or service? Spoofing Back door Man in the middle Flood None Which component of an IDS collects data? Data source Sensor Event Analyzer None Which of the following is included in an SSID broadcast (choose the best answer)? Network Name MAC address DHCP configuration information DNS default values None The integrity objective addresses which characteristic of information security? Verification that information is accurate Verification that ethics are properly maintained Establishment of clear access control of data Verification that data is kept private and secure None Which mechanism is used by PKI to allow immediate verification of a certificate's validity? CRL MD5 SSHA OCSP None The process of verifying the steps taken to maintain the integrity of evidence is called what? Security investigation Chain of custody Three A's of investigation Security policy None Time's up