SANS SEC530 exam with correct answers
Question :Which of the following is a recommended USB
keyboard mitigation for sites requiring high security?
- Disable USB ports in the system.
- Restrict USB devices with approved PIDs and VIDs.
- Block the USB devices physically.
- Restrict USB devices with approved user accounts.
Correct answer:C) Block the USB devices physically.
Question :Which of the following Cisco IOS commands is
used to shut the port down automatically when the maximum number of MAC addresses is exceeded?
- switchport port-security violation shutdown
- switchport port-security limit rate source-mac-shutdown
- switchport port-security violation auto-shutdown
- switchport port-security mac-exceed-port-shutdown
Correct answer:A) switchport port-security violation
shutdown
Question :What is a common failing associated with focusing
only on compliance-drive security?
- Compliance-driven security tends to focus only on
- Compliance-driven security tends to focus only on
- Compliance-driven security tends to be costly in terms of
- Compliance-driven security tends to fail in the face of a
hardening internal systems.
hardening the perimeter.
solutions and resources.
persistent adversary.
Correct answer:D) Compliance-driven security tends to fail in
the face of a persistent adversary.
Question :Which of the following is described by Lockheed
Martin as a countermeasure action to the Kill Chain?
- Disrupt
- Prevent
- React
- Remove
Correct answer:A) Disrupt
Question :What is an easy to implement and effective control
an organization can leverage to make pivoting more difficult for an attacker?
A) WPA2
- P2P patching
- Private VLAN
D) VPN
Correct answer:C) Private VLAN
Question :Which type of private VLAN ports may only
communicate with promiscuous ports?
- Isolated
- Promiscuous
- Network
- Community
Correct answer:A) Isolated
Question :Which of the following wireless standards supports
up to 1300 Mbps?
- 802.11b
- 802.11ac
- 802.11n
- 802.11w
Correct answer:B) 802.11ac
Question :In which phase of the security architecture design
lifecycle is threat modeling and attack surface analysis conducted?