
EC-CouncilCertified Network Defender
Domain 3Objective 1
Administrative Application Security CND Practice Questions (Page 2)
Part of the Application and Data Security domain, which makes up ~10% of our current practice bank.
41questions here
9free pages
10concepts
Questions 6–10
- 6
What is a best practice for patch management in an enterprise environment?
Select an answer first - 7
A company uses a configuration management database (CMDB) to track application configurations. A recent audit found that some servers have configuration settings that do not match the approved baseline. The administrator needs to remediate this. What is the best approach?
Select an answer first - 8
A company is deploying a new application that will be accessed by both employees and external partners. The security policy requires that external partners have limited access compared to employees. The administrator is designing the access control model. What is the best approach?
Select an answer first - 9
A security administrator is configuring logging for a financial application. The compliance team requires that audit logs be retained for at least seven years. The administrator is concerned about storage costs. What is the most appropriate approach?
Select an answer first - 10
Which step is part of the incident recovery process?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.