
EC-CouncilCertified Cybersecurity Technician
Domain 2Objective 1
Identification, Authentication, and Authorization CCT Practice Questions (Page 9)
Part of the Identity and Network Security Controls domain, which makes up ~20% of our current practice bank.
48questions here
10free pages
8concepts
Questions 41–45
- 41
A financial services company wants to authenticate remote employees accessing a high-security application. The security team is evaluating options and has these requirements: (1) the method must be resistant to phishing, (2) it must not require a physical device that can be lost, and (3) it should be relatively easy for users. Which authentication method best satisfies all three requirements?
Select an answer first - 42
What is a common weakness of password-based authentication?
Select an answer first - 43
A company is implementing an IAM solution. They want to enforce MFA for all administrative accounts and automatically deprovision access when an employee leaves. Which IAM capability is most directly responsible for ensuring that a departing employee's accounts are disabled promptly?
Select an answer first - 44
Which of the following is an example of multi-factor authentication?
Select an answer first - 45
An online retailer wants to grant access to its partner portal based on the partner's location, the time of day, and the type of partnership agreement. Which access control model is best suited for this dynamic, attribute-based requirement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCT” is a trademark of its owner, used for identification only.