BR0-001 Exam Questions
136 real BR0-001 exam questions with expert-verified answers and explanations. Page 1 of 3.
- Question #1
Virtualized applications, such as virtualized browsers, can protect the underlying operating system from which of the following?
- Question #2
Which access control system allows the system administrator to establish access permissions to network resources?
- Question #3
On a remote machine, which action will you usually take to determine the operating system?
- Question #4
Most current encryption schemes are based on:
- Question #5
What are the best practices while installing and securing a new system for a home user? (Select THREE).
- Question #6
How is access control permissions established in the RBAC access control model?
- Question #7
Which item will allow an administrator to proactively collect information on attackers and their attempted methods of gaining access to the internal network?
- Question #8
Which of the following can help an administrator to implement a procedure to control inbound and outbound traffic on a network segment?
- Question #9
Which access control model uses Access Control Lists to identify the users who have permissions to a resource?
- Question #11
A company wants to monitor all network traffic as it traverses their network. Which item will be used by the technician?
- Question #12
What does the DAC access control model use to identify the users who have permissions to a resource?
- Question #13
What is steganography primarily used for?
- Question #14
The Lightweight Directory Access Protocol or LDAP is an application protocol for querying and modifying directory services running over TCP/IP. A user needs to implement secure LDA...
- Question #15
A user has a sensitive message that needs to be sent in via email. The message needs to be protected from interception. Which of the following should be used when sending the email...
- Question #16
Which security policy will be most likely used while attempting to mitigate the risks involved with allowing a user to access company email via their cell phone?
- Question #17
Which intrusion detection system will use well defined models of how an attack occurs?
- Question #18
Which of the following refers to the ability to be reasonably certain that data is not disclosed to unintended persons?
- Question #19
Which security applications require frequent signature updates?
- Question #21
While surfing the Internet a user encounters a pop-up window that prompts the user to download a browser plug-in. The pop-up window is a certificate which validates the identity of...
- Question #22
Which key is generally applied FIRST to a message digest to provide non-repudiation by use of asymmetric cryptography?
- Question #23
Encryption is the conversion of data into a form, called a ciphertext, that cannot be easily understood by unauthorized people. Which of the following is considered the weakest enc...
- Question #24
What does the MAC access control model use to identify the users who have permissions to a resource?
- Question #25
For the following items, which one is a collection of servers setup to attract hackers?
- Question #26
An administrator wants to make sure that no equipment is damaged when encountering a fire or false alarm in the server room. Which type of fire suppression system should be used?
- Question #27
Which of the following statements regarding access control models is FALSE?
- Question #30
Which of the following statements regarding the MAC access control models is TRUE?
- Question #33
Choose the mechanism that is NOT a valid access control mechanism.
- Question #34
Why does a technician use a password cracker?
- Question #35
In computing, a Uniform Resource Locator (URL) is a type of Uniform Resource Identifier (URI) that specifies where an identified resource is available and the mechanism for retriev...
- Question #36
Which of the following are types of certificate-based authentication? (Select TWO)
- Question #37
What should be taken into consideration while executing proper logging procedures? (Select TWO).
- Question #38
Which key can be used by a user to log into their network with a smart card?
- Question #39
Which of the following would be an example of a high-availability disk technology?
- Question #40
Network traffic is data in a network. Which tool can be used to review network traffic for clear text passwords?
- Question #41
In computer security, an access control list (ACL) is a list of permissions attached to an object. Which log will reveal activities about ACL?
- Question #42
Which system is setup to distract potential attackers?
- Question #43
Which of the following is not an organizational policy that reduces the impact of fraud?
- Question #44
An important component of a good data retention policy is:
- Question #45
After installing new software on a machine, what needs to be updated to the baseline?
- Question #46
Which description is correct about a virtual server implementation attack?
- Question #47
The DAC (Discretionary Access Control) model has an inherent flaw. Choose the option that describes this flaw.
- Question #49
Which description is true about the process of securely removing information from media (e.g. hard drive) for future use?
- Question #50
Choose the access control method which provides the most granular access to protected objects?
- Question #51
Why malware that uses virtualization techniques is difficult to detect?
- Question #52
Which one of the following options is an attack launched from multiple zombie machines in attempt to bring down a service?
- Question #53
RBAC (Role Based Access Control) model. The types of resources you must control access to are mailboxes, and files and printers. Research and Development, and Production respective...
- Question #54
What technology is able to isolate a host OS from some types of security threats?
- Question #55
Which method could identify when unauthorized access has occurred?
- Question #56
On the topic of the DAC (Discretionary Access Control) model, choose the statement(s) which are TRUE.
- Question #57
Which of the following can be used to implement a procedure to control inbound and outbound traffic on a network segment?