
EC-CouncilEthical Hacking Essentials
Domain 4Objective 3
Social Engineering Countermeasures EHE Practice Questions (Page 11)
Part of the Social Engineering domain, which makes up ~9% of our current practice bank.
55questions here
11free pages
8concepts
Questions 51–55
- 51
An organization has a security awareness program that includes an annual online course and a poster campaign. After a simulated phishing test, 15% of employees still clicked a malicious link. The security team wants to improve the program without adding significant cost. Which approach is most effective?
Select an answer first - 52
A company wants to encourage employees to report social engineering attempts without fear of punishment. Which practice best supports this goal?
Select an answer first - 53
A financial firm wants to reduce the risk of business email compromise (BEC) where attackers impersonate executives to request wire transfers. They have already implemented MFA and spam filtering. Which additional control would be most effective in preventing the fraudulent transfer?
Select an answer first - 54
An employee receives a suspicious email that appears to be from the IT department asking for their password to 'verify account activity'. The employee recognizes this as a potential phishing attempt. What should the employee do first?
Select an answer first - 55
What is the purpose of a visitor management process in physical security?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to EHE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.