nerdexam
EC-Council

312-38 · Question #55

Fill in the blank with the appropriate term. The_______________ is typically considered as the top InfoSec officer in the organization and helps in maintaining current and appropriate body of…

The correct answer is D. Vanilla. Note: The fill-in-the-blank (CISO) and the multiple choice options appear to be from two different questions that were merged together. The choices A–D are all port scan types, not roles - so I'll explain the port scan question, which is where "Vanilla" (D) is the correct…

Network Security Policy and Management

Question

Fill in the blank with the appropriate term. The_______________ is typically considered as the top InfoSec officer in the organization and helps in maintaining current and appropriate body of knowledge required to perform InfoSec management functions. Answer: CISO

Options

  • AUDP
  • BStrobe
  • CFTP bounce
  • DVanilla

How the community answered

(25 responses)
  • A
    4% (1)
  • B
    4% (1)
  • D
    92% (23)

Explanation

Note: The fill-in-the-blank (CISO) and the multiple choice options appear to be from two different questions that were merged together. The choices A–D are all port scan types, not roles - so I'll explain the port scan question, which is where "Vanilla" (D) is the correct answer.

Option D (Vanilla) refers to a Vanilla scan (also called a full connect scan), which attempts to connect to all 65,535 TCP ports on a target - it's the most basic, straightforward port scan with no stealth or filtering. UDP (A) is a scan type targeting UDP ports specifically, not all ports, so it doesn't fit a "comprehensive baseline" scan. Strobe (B) is a targeted scan that probes only a select subset of ports (like well-known services), making it the opposite of exhaustive. FTP Bounce (C) is an attack/scan technique that exploits misconfigured FTP servers to proxy scan requests - a specific exploit, not a general scanning method.

Memory tip: Think of "vanilla" as the plain, default flavor - no tricks, no targeting, just connecting to everything. Vanilla scan = all ports, all the time.

Topics

#CISO#InfoSec governance#security management#security roles

Community Discussion

No community discussion yet for this question.

Full 312-38 Practice