712-50 Exam Questions
505 real 712-50 exam questions with expert-verified answers and explanations. Page 5 of 11.
- Question #201
Network Forensics is the prerequisite for any successful legal action after attacks on your Enterprise Network. Which is the single most important factor to introducing digital evi...
- Question #202
Which of the following is the MAIN security concern for public cloud computing?
- Question #203
Which wireless encryption technology makes use of temporal keys?
- Question #204
The ability to hold intruders accountable in a court of law is important. Which of the following activities are needed to ensure the highest possibility for successful prosecution?
- Question #205
Your incident handling manager detects a virus attack in the network of your company. You develop a signature based on the characteristics of the detected virus. Which of the follo...
- Question #206
The general ledger setup function in an enterprise resource package allows for setting accounting periods. Access to this function has been permitted to users in finance, the shipp...
- Question #207
In terms of supporting a forensic investigation, it is now imperative that managers, first- responders, etc., accomplish the following actions to the computer under investigation:
- Question #208
One of your executives needs to send an important and confidential email. You want to ensure that the message cannot be read by anyone but the recipient. Which of the following key...
- Question #209
The process of creating a system which divides documents based on their security level to manage access to private data is known as
- Question #210
While designing a secondary data center for your company what document needs to be analyzed to determine to how much should be spent on building the data center?
- Question #211
Which of the following is a countermeasure to prevent unauthorized database access from web applications?
- Question #212
SQL injection is a very popular and successful injection attack method. Identify the basic SQL injection text:
- Question #213
A customer of a bank has placed a dispute on a payment for a credit card account. The banking system uses digital signatures to safeguard the integrity of their transactions. The b...
- Question #214
Security related breaches are assessed and contained through which of the following?
- Question #215
Which of the following is a symmetric encryption algorithm?
- Question #216
An anonymity network is a series of?
- Question #217
What is the term describing the act of inspecting all real-time Internet traffic (i.e., packets) traversing a major Internet backbone without introducing any apparent latency?
- Question #218
Which of the following is MOST important when tuning an Intrusion Detection System (IDS)?
- Question #219
The process for identifying, collecting, and producing digital information in support of legal proceedings is called
- Question #220
An access point (AP) is discovered using Wireless Equivalent Protocol (WEP). The ciphertext sent by the AP is encrypted with the same key and cipher used by its stations. What auth...
- Question #221
Which of the following backup sites takes the longest recovery time?
- Question #222
Physical security measures typically include which of the following components?
- Question #223
A hacker is attempting to use nslookup to query Domain Name Service (DNS). The hacker uses the nslookup interactive mode for the search. Which command should the hacker type into t...
- Question #224
Which type of scan is used on the eye to measure the layer of blood vessels?
- Question #225
Which solution can be used to emulate computer services, such as mail and ftp, and to capture information related to logins or actions?
- Question #226
What is the FIRST step in developing the vulnerability management program?
- Question #227
Scenario: Your company has many encrypted telecommunications links for their world-wide operations. Physically distributing symmetric keys to all locations has proven to be adminis...
- Question #228
The ability to demand the implementation and management of security controls on third parties providing services to an organization is
- Question #229
Scenario: Your organization employs single sign-on (user name and password only) as a convenience to your employees to access organizational systems and data. Permission to individ...
- Question #230
When updating the security strategic planning document what two items must be included?
- Question #231
SCENARIO: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used a...
- Question #232
Scenario: An organization has made a decision to address Information Security formally and consistently by adopting established best practices and industry standards. The organizat...
- Question #233
Scenario: An organization has recently appointed a CISO. This is a new role in the organization and it signals the increasing need to address security consistently at the enterpris...
- Question #234
What is the primary reason for performing a return on investment analysis?
- Question #235
Scenario: Your corporate systems have been under constant probing and attack from foreign IP addresses for more than a week. Your security team and security infrastructure have per...
- Question #236
Scenario: An organization has made a decision to address Information Security formally and consistently by adopting established best practices and industry standards. The organizat...
- Question #237
The process to evaluate the technical and non-technical security controls of an IT system to validate that a given design and implementation meet a specific set of security require...
- Question #238
Scenario: An organization has recently appointed a CISO. This is a new role in the organization and it signals the increasing need to address security consistently at the enterpris...
- Question #239
The newly appointed CISO of an organization is reviewing the IT security strategic plan. Which of the following is the MOST important component of the strategic plan?
- Question #240
The process for management approval of the security certification process which states the risks and mitigation of such risks of a given IT system is called
- Question #241
Scenario: Your program is developed around minimizing risk to information by focusing on people, technology, and operations. An effective way to evaluate the effectiveness of an in...
- Question #242
Scenario: Most industries require compliance with multiple government regulations and/or industry standards to meet data protection and privacy mandates. When multiple regulations...
- Question #243
What is the BEST reason for having a formal request for proposal process?
- Question #244
SCENARIO: Critical servers show signs of erratic behavior within your organization's intranet. Initial information indicates the systems are under attack from an outside entity. As...
- Question #245
As the CISO you need to write the IT security strategic plan. Which of the following is the MOST important to review before you start writing the plan?
- Question #246
Scenario: Your organization employs single sign-on (user name and password only) as a convenience to your employees to access organizational systems and data. Permission to individ...
- Question #247
Scenario: An organization has recently appointed a CISO. This is a new role in the organization and it signals the increasing need to address security consistently at the enterpris...
- Question #248
You are just hired as the new CISO and are being briefed on all the Information Security projects that your section has on going. You discover that most projects are behind schedul...
- Question #249
When creating contractual agreements and procurement processes why should security requirements be included?
- Question #250
SCENARIO: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used a...