lab 2 Flashcards
Which account or group object on the access control list should NOT have been assigned permissions on the share?
Users
Domain Admins
LocalAdmin
CREATOR OWNER
Users
File access controls are classed as preventive in terms of functionality. What category of security control are file permissions?
Technical
Managerial
Operational
Physical
Technical
The results of the find operation indicate what?
Jamie is an administrator
Folder deletion is not being audited
Users are unable to access empty folders
User activity is being tracked
Folder deletion is not being audited
The results of the find operation indicate what?
Jamie is an administrator
Folder deletion is not being audited
Users are unable to access empty folders
User activity is being tracked
Folder deletion is not being audited
What is the purpose of a detective control?
Deny access to an object
Notify subjects about system policies
Inform users of the proper steps to perform an activity
Create a record of events and activities
Create a record of events and activities
What is the goal of directive controls?
Defense
Compliance
Prohibition
Tracking
Compliance
What are the dual purposes of corrective controls? (Select two)
Address an unwanted or less secure state or event
Record evidence of user and event activities
Return the system to a normal and generally secure condition
Provide guidance on proper user behavio
Address an unwanted or less secure state or event
Return the system to a normal and generally secure condition
What is the typical means (which was used in this exercise) to detect changes in a file?
encryption
authentication
authorization
hashing
hashing
What is the primary purpose of preventive controls?
Stop unwanted activity from succeeding
Record information about activities
Give instructions
Restore a system back to preferred condition
Persuade a perpetrator to go elsewhere
Compensate for a failed control
Stop unwanted activity from succeeding
What is the primary purpose of directive controls?
Stop unwanted activity from succeeding
Record information about activities
Give instructions
Restore a system back to preferred condition
Persuade a perpetrator to go elsewhere
Compensate for a failed control
Give instructions
What is the primary purpose of corrective controls?
Stop unwanted activity from succeeding
Record information about activities
Give instructions
Restore a system back to preferred condition
Persuade a perpetrator to go elsewhere
Compensate for a failed control
Restore a system back to preferred condition
What is the purpose of the dot and slash in front of the filenames in the PowerShell scripts and when executing PowerShell scripts?
Allow for administrator execution
Reference the current working directory
To set the security content of the process
For avoiding detection by an IDS
Reference the current working directory