Question 216

Which of the following best practices gives administrators a set period to perform changes to an operational system to ensure availability and minimize business impacts?
  • Question 217

    An organization recently updated its security policy to include the following statement:
    Regular expressions are included in source code to remove special characters such as $, |, ;. &, `, and ? from variables set by forms in a web application.
    Which of the following best explains the security technique the organization adopted by making this addition to the policy?
  • Question 218

    An employee clicked a link in an email from a payment website that asked the employee to update contact information. The employee entered the log-in information but received a "page not found" error message. Which of the following types of social engineering attacks occurred?
  • Question 219

    A security analyst finds a rogue device during a monthly audit of current endpoint assets that are connected to the network. The corporate network utilizes 002.1X for access control. To be allowed on the network, a device must have a Known hardware address, and a valid user name and password must be entered in a captive portal. The following is the audit report:

    Which of the following is the most likely way a rogue device was allowed to connect?
  • Question 220

    A client asked a security company to provide a document outlining the project, the cost, and the completion time frame. Which of the following documents should the company provide to the client?