QuiztudyPREMIUM
Google IT Support Professional Certificate โข STUDY MODE
SYSTEM HARDENING
QUESTION 1 OF 10
What is an attack vector? Nice job! An attack vector can be thought of as any route through which an attacker can interact with your systems and potentially attack them.
A
The classification of attack typeB
The direction an attack is going inC
A mechanism by which an attacker can interact with your network or systemsCorrect AnswerD
The severity of the attackQUESTION 2 OF 10
Disabling unnecessary components serves which purposes? Check all that apply. Right on! Every unnecessary component represents a potential attack vector. The attack surface is the sum of all attack vectors. So, disabling unnecessary components closes attack vectors, thereby reducing the attack surface.
A
Closing attack vectorsCorrect AnswerB
Making a system harder to useC
Reducing the attack surfaceCorrect AnswerD
Increasing performanceQUESTION 3 OF 10
What's an attack surface? Yep! The attack surface describes all possible ways that an attacker could interact and exploit potential vulnerabilities in the network and connected systems.
A
The target or victim of an attackB
The total scope of an attackC
The payload of the attackD
The combined sum of all attack vectors in a system or networkCorrect AnswerQUESTION 4 OF 10
A good defense in depth strategy would involve deploying which firewalls? You got it! Defense in depth involves multiple layers of overlapping security. So, deploying both host- and network-based firewalls is recommended.
A
Network-based firewalls onlyB
Both host-based and network-based firewallsCorrect AnswerC
No firewallsD
Host-based firewalls onlyQUESTION 5 OF 10
Using a bastion host allows for which of the following? Select all that apply. Wohoo! Bastion hosts are special-purpose machines that permit restricted access to more sensitive networks or systems. By having one specific purpose, these systems can have strict authentication enforced, more firewall rules locked down, and closer monitoring and logging.
A
Running a wide variety of software securelyB
Applying more restrictive firewall rulesCorrect AnswerC
Having more detailed monitoring and loggingCorrect AnswerD
Enforcing stricter security measuresCorrect AnswerQUESTION 6 OF 10
What benefits does centralized logging provide? Check all that apply. Yes! Centralized logging is really beneficial, since you can harden the log server to resist attempts from attackers trying to delete logs to cover their tracks. Keeping logs in place also makes analysis on aggregated logs easier by providing one place to search, instead of separate disparate log systems.
A
It prevents database theft.B
It allows for easier logs analysis.Correct AnswerC
It blocks malware infections.D
It helps secure logs from tampering or destruction.Correct AnswerQUESTION 7 OF 10
What are some of the shortcomings of antivirus software today? Check all that apply. Awesome! Antivirus software operates off a blacklist, blocking known bad entities. This means that brand new, never-before-seen malware won)t be blocked.
A
It can)t protect against unknown threats.Correct AnswerB
It only detects malware, but doesn)t protect against it.C
It)s very expensive.D
It only protects against viruses.QUESTION 8 OF 10
How is binary whitelisting a better option than antivirus software? That)s right! By blocking everything by default, binary whitelisting can protect you from the unknown threats that exist without you being aware of them.
A
It has less performance impact.B
It can block unknown or emerging threats.Correct AnswerC
It)s cheaper.D
It)s not better. It)s actually terrible.QUESTION 9 OF 10
What does full-disk encryption protect against? Check all that apply. Excellent job! With the contents of the disk encrypted, an attacker wouldn)t be able to recover data from the drive in the event of physical theft. An attacker also wouldn)t be able to tamper with or replace system files with malicious ones.
A
Tampering with system filesCorrect AnswerB
Malware infectionsC
IP spoofing attacksD
Data theftCorrect AnswerQUESTION 10 OF 10
What's the purpose of escrowing a disk encryption key? Yep! Key escrow allows the disk to be unlocked if the primary passphrase is forgotten or unavailable for whatever reason.
A
Performing data recoveryCorrect AnswerB
Protecting against unauthorized accessC
Providing data integrityD
Preventing data theftReady to test your recall?
What is an attack vector? Nice job! An attack vector can be thought of as any route through which an attacker can interact with your systems and potentially attack them.
A
The classification of attack type
B
The direction an attack is going in
C
A mechanism by which an attacker can interact with your network or systems
D
The severity of the attack
How confident are you in this answer?