November 2021

Article

Preparing for your next security certification exam? After trying your hand at this practice test question, join the FREE CertMike Study Group for the CISSP, Security+, CySA+, PenTest+, CISM+ or SSCP certification to receive new questions each week. You’ll also receive free access to my customized study strategies. Rory is reviewing an iPhone used by a former employee and finds that the device contains apps that were not purchased through the app store. These apps allow the modification of security controls on the device. What most likely occurred on this device? A. Geofencing B. Carrier Unlocking C. Tethering D. Jail Breaking Correct Answer: D Apple iOS devices are only able to install apps from the Apple App Store. Users may use jailbreaking techniques to install their own versions of the operating system on their devices that allows the installation of unapproved apps. Geofencing is a technique that triggers notifications or events when a phone enters or leaves a defined geographic area. Carrier unlocking allows a phone to be moved between cellular service providers. Tethering allows phone users to use the phone as a mobile hotspot for laptops and other devices Interested in more practice test questions? Get a copy of my official CertMike Practice Test books for the Security+ exam, CISSP exam, SSCP exam, or CySA+ exam and practice with hundreds of questions designed just like the real test! ...

Preparing for your next security certification exam? After trying your hand at this practice test question, join the FREE CertMike Study Group for the CISSP, Security+, CySA+, PenTest+, CISM+ or SSCP certification to receive new questions each week. You’ll also receive free access to my customized study strategies. Kaitlyn is investigating a security incident and is not sure which systems were contacted from a compromised host. What log information would be most helpful to her in this case? A. Router Logs B. Host Firewall Logs C. Netflow Logs D. Application Logs Correct Answer: C It is possible that any of these log sources might contain relevant information, but the netflow logs are most likely to be helpful, as they track network connections directly. Router logs do not normally record network traffic, but rather track router events. Host firewall logs may contain the relevant information, but they could be spread across multiple systems. Application logs would only contain application-specific information. Interested in more practice test questions? Get a copy of my official CertMike Practice Test books for the Security+ exam, CISSP exam, SSCP exam, or CySA+ exam and practice with hundreds of questions designed just like the real test! ...

Preparing for your next security certification exam? After trying your hand at this practice test question, join the FREE CertMike Study Group for the CISSP, Security+, CySA+, PenTest+, CISM+ or SSCP certification to receive new questions each week. You’ll also receive free access to my customized study strategies. Brian recently determined the number of times that a system experienced a failure during the past year. In disaster recovery terms, what metric has he documented? A. Mean Time Between Failures (MTBF) B. Mean Time To Repair (MTTR) C. Recovery Time Objective (RTO) D. Recovery Point Objective (RPO) Correct Answer: A The recovery time objective (RTO) is the amount of time that the business can tolerate an outage during a disaster. That's not quite what we're looking for here, so it's not the correct answer. The recovery point objective (RPO) is the amount of tolerable data loss. The RPO also isn't what's described in this question. The mean time to repair (MTTR) is the amount of time required to repair a damaged system, so we can eliminate that choice. That leaves us with the correct answer, the mean time between failures (MTBF) which describes the frequency of failures, or the amount of time between failures. Interested in more practice test questions? Get a copy of my official CertMike Practice Test books for the Security+ exam, CISSP exam, SSCP exam, or CySA+ exam and practice with hundreds of questions designed just like the real test! ...