
EC-CouncilCertified Network Defender
Domain 1Objective 3
Technical Network Security CND Practice Questions (Page 5)
Part of the Network Security Fundamentals and Defense Strategy domain, which makes up ~16% of our current practice bank.
45questions here
9free pages
7concepts
Questions 21–25
- 21
Which component is typically included in a network security policy to define the scope of the policy?
Select an answer first - 22
A network administrator notices a sudden spike in outbound DNS queries from an internal workstation to an external domain that is known to be malicious. The workstation has also been observed communicating with an IP address in a foreign country at odd hours. Which two actions should the administrator take first to contain the potential threat?
Select an answer first - 23
A network administrator notices a sudden spike in outbound DNS traffic from a single workstation to multiple external domains, many of which are newly registered. The workstation has not been used by its assigned user for the past hour. What should the administrator do first?
Select an answer first - 24
A financial company is designing a secure network architecture. It must comply with regulations that require strict separation between the cardholder data environment (CDE) and the rest of the network. The company also needs to allow employees to access the internet for research. Which architecture best balances compliance and usability?
Select an answer first - 25
A company's security policy requires that all network traffic be encrypted. However, some legacy applications do not support encryption. Which technical control can be used to enforce encryption for these applications?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.