210-250 Practice Questions
198 real 210-250 exam questions with expert-verified answers and explanations. Page 2 of 4.
- Question #51
Which definition of the virtual address space for a Windows process is true?
- Question #52
Which information security property is supported by encryption?
- Question #53
Which situation indicates application-level white listing?
- Question #54
If a web server accepts input from the user and passes it to a bash shell, to which attack method is it vulnerable?
- Question #55
Which encryption algorithm is the strongest?
- Question #56
Which protocol maps IP network addresses to MAC hardware addresses so that IP packets can be sent across networks?
- Question #57
Which statement about digitally signing a document is true?
- Question #58
For which reason can HTTPS traffic make security monitoring difficult?
- Question #59
Which directory is commonly used on Linux systems to store log files, including syslog and apache access logs?
- Question #62
Which technology allows a large number of private IP addresses to be represented by a smaller number of public IP addresses?
- Question #63
Which NTP command configures the local device as an NTP reference clock source?
- Question #64
Which three options are types of Layer 2 network attack? (Choose three.)
- Question #65
If a router has four interfaces and each interface is connected to four switches, how many broadcast domains are present on the router?
- Question #66
Where does routing occur within the DoD TCP/IP reference model?
- Question #67
Which two features must a next generation firewall include? (Choose two.)
- Question #68
Which term represents a weakness in a system that could lead to the system being compromised?
- Question #69
Which definition of Windows Registry is true?
- Question #70
Which definition of the IIS Log Parser tool is true?
- Question #72
Which of the following are Cisco cloud security solutions?
- Question #73
What is a trunk link used for?
- Question #74
At which OSI layer does a router typically operate?
- Question #75
Cisco pxGrid has a unified framework with an open API designed in a hub-and-spoke architecture. pxGrid is used to enable the sharing of contextual-based information from which devi...
- Question #76
What are the advantages of a full-duplex transmission mode compared to half-duplex mode? (Select all that apply.)
- Question #77
Stateful and traditional firewalls can analyze packets and judge them against a set of predetermined rules called access control lists (ACLs). They inspect which of the following e...
- Question #78
In which case should an employee return his laptop to the organization?
- Question #79
Which of the following are metrics that can measure the effectiveness of a runbook?
- Question #80
Which of the following access control models use security labels to make access decisions?
- Question #81
Where are configuration records stored?
- Question #82
Which of the following is true about heuristic-based algorithms?
- Question #83
How many broadcast domains are created if three hosts are connected to a Layer 2 switch in full- duplex mode?
- Question #84
What is one of the advantages of the mandatory access control (MAC) model?
- Question #85
According to the attribute-based access control (ABAC) model, what is the subject location considered?
- Question #86
What type of algorithm uses the same key to encryp and decrypt data?
- Question #87
Which actions can a promiscuous IPS take to mitigate an attack?
- Question #88
Which Statement about personal firewalls is true?
- Question #89
Which three statements about host-based IPS are true? (Choose three)
- Question #90
An attacker installs a rogue switch that sends superior BPDUs on your network. What is a possible result of this activity?
- Question #91
The FMC can share HTML, Pdf and csv data type that relate to a specific event type which event type:
- Question #92
For which purpose can Windows management instrumentation be used?
- Question #93
Which international standard is for general risk management, including the principles and guideline for managing risk?
- Question #94
Which statement about the difference between a denial-of-service attack and a distributed denial of service attack is true?
- Question #95
You discover that a foreign government hacked one of the defense contractors in your country and stole intellectual property. In this situation, which option is considered the thre...
- Question #96
After a large influx of network traffic to externally facing devices, you begin investigating what appear to be a denial of service attack. When you review packets capture data, yo...
- Question #97
Which definition of common event format is terms of a security information and event management solution is true?
- Question #98
Which definition of a Linux daemon is true?
- Question #99
Which term describes reasonable effort that must be made to obtain relevant information to facilitate appropriate courses of action?
- Question #100
According to the common vulnerability scoring system, which term is associated with scoring multiple vulnerabilities that are exploit in the course of a single attack?
- Question #101
Which Linux terminal command can be used to display all the processes?
- Question #102
Which statement about an attack surface is true?
- Question #103
You get an alert on your desktop computer showing that an attack was successful on the host but up on investigation you see that occurred duration the attack. Which reason is true?