IT Exam Items Repository A security analyst is investigating a cyber attack that began by compromising one file system through a vulnerability in a custom software application. The attack now appears to be affecting additional file systems under the control of another security authority. Which CVSS v3.0 base exploitability metric score is increased by this attack characteristic?ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementWhich step in the Vulnerability Management Life Cycle determines a baseline risk profile to eliminate risks based on asset criticality, vulnerability threat, and asset classification?ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementWhich organization defines unique CVE Identifiers for publicly known information-security vulnerabilities that make it easier to share data?ITExam Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementHow does AIS address a newly discovered threat?ITExam Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementA security professional is asked to perform an analysis of the current state of a company network. What tool would the security professional use to scan the network only for security risks?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat Management, Cybersecurity EssentialsWhat type of network security test can detect and report changes made to network systems?ITExam Editorial Team asked 5 years ago • CCNA Security, Cyber Threat ManagementAs part of HR policy in a company, an individual may opt-out of having information shared with any third party other than the employer. Which law protects the privacy of personal shared information?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat Management, Cybersecurity EssentialsWhat is a wireless security mode that requires a RADIUS server to authenticate wireless users?ITExamAnswers Editorial Team asked 7 years ago • Endpoint SecurityWhat is the difference between an HIDS and a firewall?ITExam Editorial Team asked 6 years ago • CCNA CyberOps, Cybersecurity Essentials, Endpoint SecurityWhat are three access control security services? (Choose three.)ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, CCNA Security, Cybersecurity Essentials, Endpoint SecurityA technician is tasked with using ACLs to secure a router. When would the technician use the ip access-group 101 in configuration option or command?ITExamAnswers Editorial Team asked 7 years ago • CCNAWhat are the two methods that a wireless NIC can use to discover an AP? (Choose two.)ITExam Editorial Team asked 6 years ago • Endpoint SecurityWhich risk management plan involves discontinuing an activity that creates a risk?ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, CCNA Security, Endpoint SecurityWhat kind of ICMP message can be used by threat actors to create a man-in-the-middle attack?ITExam Editorial Team asked 6 years ago • CCNA CyberOps, Endpoint SecurityA security service company is conducting an audit in several risk areas within a major corporate client. What attack or data loss vector term would be used to describe providing access to corporate data by gaining access to stolen or weak passwords?ITExamAnswers Editorial Team asked 4 years ago • Endpoint Security