SSCP: Monitoring and Analysis
Fast practice, instant feedback. Timer auto-submits when time’s up.
Avg score: 0% Most missed: “When should a penetration test stop?”
SSCP: Monitoring and Analysis
Time left 00:00
20 Questions

1. An outside security consultant recently performed a vulnerability assessment on your organization
2. An organization has hired you to perform a vulnerability assessment. Which of the following steps would you perform first?
3. Your organization handles and transmits a significant amount of privacy data. As a result, it needs to comply with several laws and regulations. Which of the following tools would you most likely find within the network to provide continuous monitoring of all network traffic?
4. Of the following choices, what best describes an IPS?
5. Which of the following identifies a system that requires a database to detect attacks?
6. Which of the following choices identifies a major drawback associated with a host-based IDS (HIDS)?
7. A security expert in your organization regularly scans your network to detect potential vulnerabilities using a vulnerability scanner. How would this vulnerability scanner most likely fingerprint a system?
8. What logs are most valuable after an attack?
9. What logs are most valuable after an attack?
10. An external organization is performing a vulnerability test for a company. Officials from the company give this group some information on the company
11. You are an IT administrator working in a 24-hour network operations center. One of your tasks is to evaluate alerts from various tools and determine if any are events of interest. Which of the following events would you most likely flag as events of interest?
12. How does an anomaly-based IDS detect attacks?
13. You want to monitor a server for potential attacks. Of the following choices, what is the best choice?
14. Of the following choices, what best describes an IPS?
15. What
16. When should a penetration test stop?
17. Which of the following choices identifies a major drawback associated with a host-based IDS (HIDS)?
18. A vulnerability assessment reports that a patch is not installed on a system, but you
19. Which of the following can detect if a system file has been modified?
20. An external organization is performing a vulnerability test for a company. Officials from the company give this group some information on the company