Last Sec Flashcards
(19 cards)
What should a company do if they have a legacy system they can’t update?
Put in on a vlan
How can you find lateral movement and why?
SIEM. They are designed to centralize and correlate security events across various sources.
Will log files determine root cause?
No
What is needed to set up a load balancer?
Identical hosts
iOS is what type of system?
Apple
What protocol provides real time validation of a certificate?
OCSP
Online certificate status protocol
What is the primary purpose of DKIM?
Verify senders identity and the integrity of the message by adding a digital signature
DomainKeys identified mail
Part of DMARC
What type of network does a NAC protect?
Ethernet
What agreement decides on the contribution of each party, including who will make the final decisions?
BPA. Business partnership agreement
Legal agreement
Example of risk mitigation?
Technical control
Most critical factors for employee training?
Situational awareness
Frequency and duration
Why audit devices on asset register?
Find potential vulnerabilities and weaknesses in the system
Firewall rules are written in order so rule 2 could block rule 3 and 4
Phishing is a specific form of?
Pretexting
Smishng is a specific form of?
Brand impersonation
What factor directly measures the maximum potential loss from a vulnerability?
Exposure factor
Examples of features on access lists?
Time of day
Specific ip addresses
Blocking certain protocols
How to reduce users from installing unauthorized software on microsoft?
Adjust group policy
What is netflow monitoring?
Monitors network traffic flow.