
EC-CouncilEthical Hacking Essentials
Domain 4Objective 3
Social Engineering Countermeasures EHE Practice Questions (Page 2)
Part of the Social Engineering domain, which makes up ~9% of our current practice bank.
55questions here
11free pages
8concepts
Questions 6–10
- 6
A company's IT helpdesk receives a call from someone claiming to be a remote employee who forgot their password. The caller knows the employee's employee ID and home address. The helpdesk policy requires identity verification before resetting passwords. Which verification method is most secure?
Select an answer first - 7
An employee reports a suspected phishing email to the security team. The security team wants to determine whether other employees have received the same email and whether anyone has clicked the link. Which combination of actions is most effective?
Select an answer first - 8
Which of the following topics is typically covered in security awareness training to help users resist social engineering?
Select an answer first - 9
An organization wants to reduce the risk of employees being tricked into visiting malicious websites via email links. Which technical control is most effective when combined with user awareness training?
Select an answer first - 10
A security team wants to detect unusual patterns of data access that might indicate an insider is gathering information for a social engineering attack. Which monitoring approach would be most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.