
EC-CouncilCertified Cybersecurity Technician
Domain 1Objective 1
Information Security Threats and Vulnerabilities CCT Practice Questions (Page 4)
Part of the Information Security Threats and Attacks domain, which makes up ~12% of our current practice bank.
47questions here
10free pages
7concepts
Questions 16–20
- 16
Which of the following is an example of an attack vector?
Select an answer first - 17
A small business wants to identify weaknesses in its network before attackers do. They have a limited budget and no dedicated security staff. Which approach should they take to perform a basic vulnerability assessment?
Select an answer first - 18
A company is planning to deploy a new customer-facing web application. The security team must choose between two architectures: one that places the application directly on the internet with a web application firewall (WAF), and another that places it behind a VPN that requires customers to authenticate. The application must be accessible to a broad customer base. Which architecture is more appropriate?
Select an answer first - 19
A security analyst is reviewing a series of security incidents. Which of the following are characteristics of an advanced persistent threat (APT)? (Select all that apply.)
Select an answer first - 20
What is the primary purpose of a vulnerability assessment?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCT” is a trademark of its owner, used for identification only.