
EC-CouncilEthical Hacking Essentials
Domain 1Objective 1
Overview of Information Security and Defense Strategies EHE Practice Questions (Page 5)
Part of the Information Security and Ethical Hacking Foundations domain, which makes up ~16% of our current practice bank.
50questions here
10free pages
7concepts
Questions 21–25
- 21
A company's employee laptop is infected with malware after the employee clicked a link in a phishing email. Which of the following is the threat in this scenario?
Select an answer first - 22
A manufacturing company has a legacy control system that cannot be patched. The system is critical to production, and a vulnerability could allow an attacker to shut down the plant. What is the most appropriate risk treatment?
Select an answer first - 23
A multinational company must comply with data protection regulations in multiple countries. The security team is developing a new data classification policy. They need to balance the need for data sharing across teams with the requirement to protect sensitive data. Which approach best balances these needs?
Select an answer first - 24
An organization wants to ensure that all security incidents are reported and handled consistently. Which document should define the steps to follow when an incident occurs?
Select an answer first - 25
A company has implemented a firewall, antivirus software, and user training. Which defense-in-depth principle does this illustrate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.