
EC-CouncilCertified Cybersecurity Technician
Domain 2Objective 1
Identification, Authentication, and Authorization CCT Practice Questions (Page 2)
Part of the Identity and Network Security Controls domain, which makes up ~20% of our current practice bank.
48questions here
10free pages
8concepts
Questions 6–10
- 6
A hospital wants to ensure that only nurses in the cardiology department can access the electronic health records (EHR) system, and only during their scheduled shifts. The system already authenticates users with smart cards. Which authorization model best meets this requirement?
Select an answer first - 7
A user claims to be 'jsmith' and provides the correct password. The system then checks the user's account to see if 'jsmith' is allowed to access the payroll application. Which sequence of security controls is being performed?
Select an answer first - 8
A company is choosing an authentication method for employees who frequently work from public Wi-Fi. They are concerned about credential theft and want a method that is resistant to phishing and does not rely on a shared secret that can be intercepted. Which method is the best choice?
Select an answer first - 9
A user attempts to access a system by entering 'alice' as their username. The system then prompts for a password. After verifying the password, the system checks if 'alice' is in the 'managers' group to allow access to a shared folder. Which step is the identification step?
Select an answer first - 10
What is the purpose of authorization in a security system?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCT” is a trademark of its owner, used for identification only.