
EC-CouncilCertified Network Defender
Domain 2Objective 2
Endpoint Security Windows Systems CND Practice Questions (Page 2)
Part of the Perimeter and Endpoint Security domain, which makes up ~24% of our current practice bank.
45questions here
9free pages
12concepts
Questions 6–10
- 6
A financial firm requires that all USB drives used by employees be encrypted so that lost devices cannot expose client data. They also want to prevent employees from using unencrypted USB drives. Which solution should you implement?
Select an answer first - 7
A Windows Server 2019 host runs a legacy application that requires SMBv1. The security team wants to reduce the attack surface without breaking the application. Which approach is the best balance?
Select an answer first - 8
Which Windows feature allows administrators to create rules that allow only approved applications to run on a system, using conditions such as publisher, path, or file hash?
Select an answer first - 9
A Windows Server 2019 host runs a legacy application that requires the 'Remote Registry' service to be enabled. The security team wants to harden the server by reducing the attack surface, but the application vendor insists that Remote Registry must remain enabled. Which alternative hardening measure should the administrator implement?
Select an answer first - 10
A security analyst needs to detect attempts to access sensitive files on Windows servers. The analyst wants to log both successful and failed access attempts to a specific folder. Which auditing configuration should be used?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.