1. To reduce disk consumption,an organization - s legal department has recently approved a new policy setting the data retention period for sent email at six months. Which of the following is the BEST way to ensure this goal is met?
A) Create a daily encrypted backup of the relevant emails.
B) Implement automatic disk compression on email servers.
C) Configure the email server to delete the relevant emails.
D) Migrate the relevant emails into an - Archived folder.
2. New magnetic locks were ordered for an entire building. In accordance with company policy,employee safety is the top priority. In case of a fire where electricity is cut,which of the following should be taken into consideration when installing the new locks?
A) Fail safe
B) Fault tolerance
C) Redundancy
D) Fail secure
3. The Chief Security Officer (CISO) at a multinational banking corporation is reviewing a plan to upgrade the entire corporate IT infrastructure. The architecture consists of a centralized cloud environment hosting the majority of data,small server clusters at each corporate location to handle the majority of customer transaction processing,ATMs,and a new mobile banking application accessible from smartphones,tablets,and the Internet via HTTP. The corporation does business having varying data retention and privacy laws. Which of the following technical modifications to the architecture and corresponding security controls should be implemented to provide the MOST complete protection of data?
A) Ensure all data is encryption according to the most stringent regulatory guidance applicable,implement encryption for data in-transit between data centers,increase data availability by replicating all data,transaction data,logs between each corporate location
B) Store customer data based on national borders,ensure end-to end encryption between ATMs,end users,and servers,test redundancy and COOP plans to ensure data is not inadvertently shifted from one legal jurisdiction to another with more stringent regulations
C) Revoke exiting root certificates,re-issue new customer certificates,and ensure all transactions are digitally signed to minimize fraud,implement encryption for data in-transit between data centers
D) Install redundant servers to handle corporate customer processing,encrypt all customer data to ease the transfer from one country to another,implement end- to-end encryption between mobile applications and the cloud.
4. Which of the following cryptographic algorithms is irreversible?
A) RC4
B) AES
C) DES
D) SHA-256
5. Which of the following can be used to control specific commands that can be executed on a network infrastructure device?
A) SAML
B) LDAP
C) Kerberos
D) TACACS+
Leave a comment