Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Network Defender

Domain 3Objective 1

Administrative Application Security CND Practice Questions (Page 5)

Part of the Application and Data Security domain, which makes up ~10% of our current practice bank.

41questions here
9free pages
10concepts

Questions 21–25

  1. 21application · medium

    A network administrator is configuring access for a new finance application. The company requires that employees in the finance department can view and edit their own department's records, but managers must be able to approve transactions. The administrator wants to enforce least privilege. What should the administrator implement?

    Select an answer first
  2. 22foundation · easy

    What is the primary goal of incident response in the context of application security?

    Select an answer first
  3. 23application · medium

    A security administrator is setting up logging for a web application. The administrator needs to detect a possible brute-force attack on user accounts. Which logging configuration would best support this detection?

    Select an answer first
  4. 24foundation · easy

    Which topic should be included in security awareness training for application users?

    Select an answer first
  5. 25expert · hard

    A company's incident response plan is being updated. The plan must address a ransomware attack that encrypts application data. The administrator is evaluating recovery strategies. What is the most important element to include in the plan?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.