
EC-CouncilCertified Cybersecurity Technician
Domain 1Objective 1
Information Security Threats and Vulnerabilities CCT Practice Questions (Page 5)
Part of the Information Security Threats and Attacks domain, which makes up ~12% of our current practice bank.
47questions here
10free pages
7concepts
Questions 21–25
- 21
A vulnerability scan has identified a critical vulnerability in a database server that stores customer personal data. The vulnerability is a missing patch that is available from the vendor. However, applying the patch requires a reboot of the server, which will cause downtime for the customer-facing application. The organization has a strict SLA that requires 99.99% uptime. Which of the following is the most appropriate course of action?
Select an answer first - 22
How does security awareness training help mitigate threats?
Select an answer first - 23
An organization has experienced several ransomware infections that started when employees clicked on malicious links in emails. Which mitigation strategy would be most effective in reducing the likelihood of these infections?
Select an answer first - 24
A security team is conducting a risk assessment for a new cloud-based application. The application will store sensitive customer data. The team is considering two risk treatment options: encrypting the data at rest and implementing multi-factor authentication (MFA) for all users. Which of the following statements best describes the effect of these controls on risk?
Select an answer first - 25
A company has a mix of Windows and Linux servers. The security team wants to implement a mitigation strategy that reduces the risk of malware propagation across the network. Which strategy would be most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCT” is a trademark of its owner, used for identification only.