
EC-CouncilNetwork Defense Essentials
Domain 2Objective 3
Security and Awareness Training NDE Practice Questions (Page 6)
Part of the Administrative and Physical Security Controls domain, which makes up ~15% of our current practice bank.
47questions here
10free pages
6concepts
Questions 26–30
- 26
A regional bank has a high rate of employees clicking on simulated phishing emails. The security team wants to reduce this behavior. They have already delivered an annual instructor-led training session. Which additional measure would most directly address the problem?
Select an answer first - 27
After a year of security awareness training, the security team observes that phishing click rates have decreased, but the number of reported incidents has also decreased. What is the most likely explanation?
Select an answer first - 28
A startup with 50 employees is experiencing an increase in malware infections caused by employees downloading unauthorized software. The CEO asks the security lead for a cost-effective way to reduce this risk. What should the security lead recommend?
Select an answer first - 29
What is the primary purpose of simulated phishing exercises in security awareness training?
Select an answer first - 30
A company has completed its annual security awareness training. Six months later, a new phishing technique that uses QR codes is spreading widely. Employees are not familiar with this tactic. What should the security team do to address this evolving threat?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “NDE” is a trademark of its owner, used for identification only.