
EC-CouncilNetwork Defense Essentials
Domain 1Objective 1
Fundamentals of Network Security and Defense NDE Practice Questions (Page 9)
Part of the Network Security Fundamentals and Access Control domain, which makes up ~14% of our current practice bank.
44questions here
9free pages
8concepts
Questions 41–44
- 41
An attacker intercepts communication between a client and a server and modifies the data being transmitted. Which security principle is violated, and which control would prevent this?
Select an answer first - 42
A company is designing a layered security architecture for a new data center. The security team has already implemented a perimeter firewall, an intrusion detection system, and antivirus on all servers. The management wants to add a control that specifically protects against an attacker who has already gained a foothold on an internal server and is attempting to move laterally to other servers. Which control would be most effective?
Select an answer first - 43
An organization wants to implement single sign-on (SSO) so users authenticate once and then access multiple applications. However, the security team is concerned that if a user's account is compromised, all applications become accessible. Which additional control would best mitigate this risk?
Select an answer first - 44
A company has a limited budget and must protect a network that contains both a public web server and internal employee workstations. They currently have only a perimeter firewall. Which additional control would provide the most significant improvement in defense in depth without requiring a major redesign?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to NDE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “NDE” is a trademark of its owner, used for identification only.