
[Apr 28, 2024] Pass Cybersecurity Audit Cybersecurity-Audit-Certificate Exam With 77 Questions
Ultimate Guide to Prepare Free ISACA Cybersecurity-Audit-Certificate Exam Questions and Answer
NEW QUESTION # 14
Availability can be protected through the use of:
- A. user awareness training and related end-user training.
- B. logging, digital signatures, and write protection.
- C. redundancy, backups, and business continuity management
- D. access controls. We permissions, and encryption.
Answer: C
Explanation:
Explanation
Availability can be protected through the use of redundancy, backups, and business continuity management.
This is because these measures help to ensure that systems, data, and services are accessible and functional at all times, even in the event of a disruption or disaster. The other options are not directly related to protecting availability, but rather focus on enhancing confidentiality (A), integrity C, or awareness (D).
NEW QUESTION # 15
One way to control the integrity of digital assets is through the use of:
- A. hashing.
- B. frameworks.
- C. caching
- D. policies.
Answer: A
Explanation:
Explanation
One way to control the integrity of digital assets is through the use of hashing. This is because hashing is a technique that applies a mathematical function to a digital asset, such as a file or a message, and produces a unique and fixed-length value, known as a hash or a digest. Hashing helps to verify the integrity of digital assets, by comparing the hash values before and after transmission or storage, and detecting any changes or modifications to the original asset. The other options are not ways to control the integrity of digital assets, but rather different concepts or techniques that are related to information security, such as policies (A), frameworks (B), or caching C.
NEW QUESTION # 16
Which of the following provides the GREATEST assurance that data can be recovered and restored in a timely manner in the event of data loss?
- A. Data backups are available onsite for recovery.
- B. The recovery plan is executed during or after an event
- C. Backups of information are regularly tested.
- D. full data backup is performed daily.
Answer: C
Explanation:
Explanation
The feature that provides the GREATEST assurance that data can be recovered and restored in a timely manner in the event of data loss is that backups of information are regularly tested. This is because testing backups helps to ensure that they are valid, complete, and usable, and that they can be restored within the expected time frame and without errors or corruption. Testing backups also helps to identify and resolve any issues or problems with the backup process, media, or software. The other options are not features that provide the greatest assurance that data can be recovered and restored in a timely manner in the event of data loss, but rather different aspects or factors that affect the backup process, such as availability (B), execution C, or frequency (D) of backups.
NEW QUESTION # 17
Which of the following is the GREATEST advantage of using a virtual private network (VPN) over dedicated circuits and dial-in servers?
- A. It is more cost effective.
- B. It is higher speed.
- C. It is more reliable
- D. It is more secure
Answer: A
Explanation:
Explanation
The GREATEST advantage of using a virtual private network (VPN) over dedicated circuits and dial-in servers is that it is more cost effective. This is because a VPN is a technology that creates a secure and encrypted connection between a client and a server over an existing public network, such as the Internet. A VPN reduces the cost of establishing and maintaining a secure communication channel, as it does not require any additional hardware, software, or infrastructure, unlike dedicated circuits and dial-in servers, which require dedicated lines, modems, routers, switches, etc. The other options are not the greatest advantage of using a VPN over dedicated circuits and dial-in servers, because they either involve security (A), reliability (B), or speed C aspects that may not be significantly different or better than dedicated circuits and dial-in servers.
NEW QUESTION # 18
While risk is measured by potential activity, which of the following describes the actual occurrence of a threat?
- A. Target
- B. Attack
- C. Vulnerability
- D. Payload
Answer: B
Explanation:
Explanation
An attack is the actual occurrence of a threat, which is a potential activity that could harm an asset. An attack is the result of a threat actor exploiting a vulnerability in a system or network to achieve a malicious objective.
For example, a denial-of-service attack is the occurrence of a threat that aims to disrupt the availability of a service.
NEW QUESTION # 19
Within the NIST core cybersecurity framework, which function is associated with using organizational understanding to minimize risk to systems, assets, and data?
- A. Recover
- B. Detect
- C. Respond
- D. Identify
Answer: D
Explanation:
Explanation
Within the NIST core cybersecurity framework, the identify function is associated with using organizational understanding to minimize risk to systems, assets, and data. This is because the identify function helps organizations to develop an organizational understanding of their cybersecurity risk management posture, as well as the threats, vulnerabilities, and impacts that could affect their business objectives. The other functions are not directly related to using organizational understanding, but rather focus on detecting (A), recovering C, or responding (D) to cybersecurity events.
NEW QUESTION # 20
Which of the following is a client-server program that opens a secure, encrypted command-line shell session from the Internet for remote logon?
- A. IPsec
- B. SSH
- C. SFTP
- D. VPN
Answer: B
Explanation:
Explanation
The correct answer is C. SSH.
SSH stands for Secure Shell, a client-server program that opens a secure, encrypted command-line shell session from the Internet for remote logon. SSH allows users to remotely access and execute commands on a server without exposing their credentials or data to eavesdropping, tampering or replay attacks. SSH also supports secure file transfer protocols such as SFTP and SCP1.
VPN stands for Virtual Private Network, a technology that creates a secure, encrypted tunnel between two or more devices over a public network such as the Internet. VPN allows users to access resources on a remote network as if they were physically connected to it, while protecting their privacy and identity2.
IPsec stands for Internet Protocol Security, a set of protocols that provides security at the network layer of the Internet. IPsec supports two modes: transport mode and tunnel mode. Transport mode encrypts only the payload of each packet, while tunnel mode encrypts the entire packet, including the header. IPsec can be used to secure VPN connections, as well as other applications that require data confidentiality, integrity and authentication3.
SFTP stands for Secure File Transfer Protocol, a protocol that uses SSH to securely transfer files between a client and a server over a network. SFTP provides encryption, authentication and compression features to ensure the security and reliability of file transfers.
1: SSH (Secure Shell) 2: What is a VPN? How It Works, Types of VPN | Kaspersky 3: IPsec - Wikipedia :
[SFTP - Wikipedia]
NEW QUESTION # 21
Which of the following would provide the BEST basis for allocating proportional protection activities when comprehensive classification is not feasible?
- A. Business dependency assessment
- B. Single classification level allocation
- C. Business process re-engineering
- D. Comprehensive cyber insurance procurement
Answer: A
Explanation:
Explanation
The BEST basis for allocating proportional protection activities when comprehensive classification is not feasible is a business dependency assessment. This is because a business dependency assessment helps to identify the criticality and sensitivity of business processes and their supporting assets, based on their contribution to the organization's objectives and value proposition. This allows for prioritizing protection activities according to the level of risk and impact. The other options are not as effective as a business dependency assessment, because they either use a single classification level allocation (A), which does not account for different levels of risk and impact; require a significant amount of time and resources to perform a business process re-engineering (B); or rely on external parties to cover potential losses without reducing the likelihood or impact of incidents (D).
NEW QUESTION # 22
What is the FIRST activity associated with a successful cyber attack?
- A. Reconnaissance
- B. Exploitation
- C. Maintaining a presence
- D. Creating attack tools
Answer: A
Explanation:
Explanation
The FIRST activity associated with a successful cyber attack is reconnaissance. This is because reconnaissance is a phase of the cyber attack lifecycle that involves gathering information about the target organization or system, such as its network topology, IP addresses, open ports, services, vulnerabilities, etc. Reconnaissance helps to identify potential entry points and weaknesses that can be exploited by the attackers in later phases of the attack. The other options are not the first activity associated with a successful cyber attack, but rather follow after reconnaissance in the cyber attack lifecycle, such as exploitation (A), maintaining a presence C, or creating attack tools (D).
NEW QUESTION # 23
Which of the following BEST characterizes security mechanisms for mobile devices?
- A. Configurable and reliable across device types
- B. Easy to control through mobile device management
- C. Comparatively weak relative to workstations
- D. Inadequate for organizational use
Answer: B
Explanation:
Explanation
The BEST characteristic that describes security mechanisms for mobile devices is easy to control through mobile device management. This is because mobile device management is a technique that allows organizations to centrally manage and secure mobile devices, such as smartphones, tablets, laptops, etc., that are used by their employees or customers. Mobile device management helps to enforce security policies, configure settings, install applications, monitor usage, wipe data, etc., on mobile devices remotely and efficiently. The other options are not characteristics that describe security mechanisms for mobile devices, but rather different aspects or factors that affect security mechanisms for mobile devices, such as weakness (B), inadequacy C, or reliability (D).
NEW QUESTION # 24
Which of the following is the BEST method of maintaining the confidentiality of digital information?
- A. Use of backups and business continuity planning
- B. Use of logging digital signatures, and write protection
- C. Use of access controls, file permissions, and encryption
- D. Use of the awareness tracing programs and related end-user testing
Answer: C
Explanation:
Explanation
The BEST method of maintaining the confidentiality of digital information is using access controls, file permissions, and encryption. This is because these techniques help to prevent unauthorized access, disclosure, or modification of digital information, by restricting who can access the information, what they can do with it, and how they can access it. The other options are not as effective as using access controls, file permissions, and encryption, because they either relate to protecting availability (B), integrity C, or awareness (D).
NEW QUESTION # 25
Security awareness training is MOST effective against which type of threat?
- A. Command injection
- B. Social injection
- C. Social engineering
- D. Denial of service
Answer: C
Explanation:
Explanation
Security awareness training is MOST effective against social engineering threats. This is because social engineering is a type of attack that exploits human psychology and behavior to manipulate or trick users into revealing sensitive or confidential information, or performing actions that compromise security. Security awareness training helps to educate users about the common types and techniques of social engineering attacks, such as phishing, vishing, baiting, etc., and how to recognize and avoid them. Security awareness training also helps to foster a culture of security within the organization and empower users to report any suspicious or malicious activities. The other options are not types of threats that security awareness training is most effective against, but rather types of attacks that exploit technical vulnerabilities or flaws in systems or applications, such as command injection (A), denial of service (B), or SQL injection (D).
NEW QUESTION # 26
Using digital evidence to provide validation that an attack has actually occurred is an example of;
- A. data acquisition.
- B. computer forensic
- C. extraction.
- D. identification.
Answer: B
Explanation:
Explanation
Using digital evidence to provide validation that an attack has actually occurred is an example of computer forensics. This is because computer forensics is a discipline that involves the identification, preservation, analysis, and presentation of digital evidence from various sources, such as computers, networks, mobile devices, etc., to support investigations of cyber incidents or crimes. Computer forensics helps to provide validation that an attack has actually occurred, by examining the digital traces or artifacts left by the attackers on the compromised systems or devices, and by reconstructing the sequence and timeline of events that led to the attack. The other options are not examples of using digital evidence to provide validation that an attack has actually occurred, but rather different techniques or processes that are related to computer forensics, such as extraction (B), identification C, or data acquisition (D).
NEW QUESTION # 27
Which of the following is the MOST important consideration when choosing between different types of cloud services?
- A. Reputation of the cloud providers
- B. Emerging risk and infrastructure scalability
- C. Security features available on demand
- D. Overall risk and benefits
Answer: D
Explanation:
Explanation
The MOST important consideration when choosing between different types of cloud services is the overall risk and benefits. This is because choosing between different types of cloud services involves weighing the trade-offs between the risk and benefits of each type of cloud service, such as Software as a Service (SaaS), Platform as a Service (PaaS), or Infrastructure as a Service (IaaS). For example, SaaS may offer more benefits in terms of cost savings, scalability, and usability, but also more risks in terms of security, privacy, and compliance. On the other hand, IaaS may offer more benefits in terms of flexibility, customization, and control, but also more risks in terms of complexity, management, and maintenance. The other options are not the most important consideration when choosing between different types of cloud services, but rather different aspects or factors that affect the choice of cloud services, such as emerging risk and infrastructure scalability (A), security features available on demand (B), or reputation of the cloud providers (D).
NEW QUESTION # 28
Which of the following is the MOST important step to determine the risks posed to an organization by social media?
- A. Review costs related to the organization's social media outages.
- B. Review access control processes for the organization's social media accounts.
- C. Review cybersecurity insurance requirements for the organization s social media.
- D. Review the disaster recovery strategy for the organization's social media.
Answer: B
Explanation:
Explanation
The MOST important step to determine the risks posed to an organization by social media is to review access control processes for the organization's social media accounts. This is because access control processes help to ensure that only authorized users can access, modify, or share the organization's social media accounts and content, and prevent unauthorized or malicious access or disclosure of sensitive or confidential information.
Access control processes also help to protect the organization's reputation and brand image from being compromised or damaged by unauthorized or inappropriate social media posts. The other options are not as important as reviewing access control processes for the organization's social media accounts, because they either relate to costs (A), insurance (B), or recovery C aspects that are not directly related to the risks posed by social media.
NEW QUESTION # 29
......
ISACA Cybersecurity Audit Certificate Exam Practice Tests 2024 | Pass Cybersecurity-Audit-Certificate with confidence!: https://drive.google.com/open?id=1zSNtd1AuPmc8smC2vHG6EFEP3hvaPxvk
Pass Cybersecurity-Audit-Certificate Tests Engine pdf - All Free Dumps: https://www.exam4free.com/Cybersecurity-Audit-Certificate-valid-dumps.html
