OPS-1 through OPS-10, OS-2, OS-3 went from 5 → 15. OS-1, OS-4 through OS-11, SEC-1 through SEC-11, TRB-1 through TRB-4 went from 7 → 15. Questions cover exam-weight scenarios not duplicated from original content. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2.7 KiB
SEC-1 Quiz: Security Controls
Take this after studying notes/SEC-1-security-controls.md.
Reply with answers like:
1B 2A 3D 4C 5B 6A 7D
Questions
- Which physical control is designed to stop vehicles from approaching a building entrance?
A. Smart card
B. Bollard
C. SAML
D. DLP
- Which control grants users only the access needed to perform their job?
A. Zero Trust
B. SSO
C. Video surveillance
D. Least privilege
- A company wants to prevent credit card numbers from being emailed outside the organization. Which control fits best?
A. TOTP
B. APIPA
C. DLP
D. Disk Cleanup
- Which technology centrally manages mobile device policies such as PIN requirements and remote wipe?
A. ACL
B. MDM
C. CCTV
D. ReFS
- Which access model grants elevated admin rights only for a limited time?
A. Workgroup access
B. Public network profile
C. File sharing
D. Just-in-time access
- Which authentication method uses a code that changes based on time, often every 30 seconds?
A. TOTP
B. ACL
C. DLP
D. CCTV
- Which feature lets a user authenticate once and then access multiple approved resources?
A. Magnetometer
B. APFS
C. SSO
D. exFAT
- Which access control model assigns permissions based on the user's role in the organization?
A. DAC (Discretionary)
B. RBAC (Role-Based)
C. TOTP
D. DLP
- Which physical security control prevents someone from following an authorized person through a secure door?
A. CCTV
B. Mantrap or access control vestibule
C. Badge color coding
D. SSID broadcast
- Which type of control aims to fix a vulnerability or issue after it is detected?
A. Preventive
B. Detective
C. Corrective
D. Deterrent
- Which authentication factor type is a smartcard?
A. Something you know
B. Something you are
C. Something you have
D. Something you do
- A company requires two of the following to log in: PIN, fingerprint, and a phone app. This is an example of:
A. Single-factor authentication
B. Multi-factor authentication (MFA)
C. Zero-trust bypass
D. Just-in-time SSID
- Which security control type defines policies and procedures rather than technical tools?
A. Physical
B. Technical
C. Administrative
D. Detective
- Which physical control uses a second locked door to trap and verify a person before granting full access?
A. Bollard
B. Badge scanner
C. Mantrap
D. CCTV
- A user authenticates with a fingerprint. Which factor type is this?
A. Something you know
B. Something you have
C. Something you are
D. Something you do
Answer Key For Instructor
- B
- D
- C
- B
- D
- A
- C
- B
- B
- C
- C
- B
- C
- C
- C