220-801 · Question #785
Which of the following security threats are MOST likely prevented through user training?
The correct answer is C. Social Engineering. Social engineering attacks exploit human psychology rather than technical vulnerabilities, making user awareness training the primary defense against them.
Question
Which of the following security threats are MOST likely prevented through user training?
Options
- ANetwork Intrusion
- BAdware Popups
- CSocial Engineering
- DSpam Messages
How the community answered
(31 responses)- A10% (3)
- C87% (27)
- D3% (1)
Why each option
Social engineering attacks exploit human psychology rather than technical vulnerabilities, making user awareness training the primary defense against them.
Network intrusion is prevented through technical controls such as firewalls, IDS/IPS, and patch management, not primarily through user training.
Adware popups are countered by anti-malware software and browser security settings, not user training.
Social engineering manipulates users into divulging credentials or granting access through deception, phishing, pretexting, or tailgating. Because the attack vector is human behavior rather than a software flaw, technical controls alone cannot stop it. Training users to recognize manipulation tactics is the most effective countermeasure.
Spam is mitigated by spam filters and email gateway policies at the infrastructure level, not by training alone.
Concept tested: Social engineering prevention through user awareness training
Source: https://www.cisa.gov/topics/cybersecurity-best-practices/social-engineering
Topics
Community Discussion
No community discussion yet for this question.