
[2023年11月18日] 最新版を今すぐ試そうECSSv9練習テスト問題解答
ECSSv9問題集と試験テストエンジン
ECSSV9認定試験には、幅広いセキュリティトピックをカバーする複数選択の質問が含まれています。この試験は、さまざまなシナリオでセキュリティソリューションを理解および実装する候補者の能力をテストするように設計されています。試験は50の質問で構成されており、候補者はそれを完了するのに2時間あります。 ECSSV9試験の合格スコアは70%であり、試験に合格した候補者には、EC-Council認定セキュリティスペシャリストV9認定が授与されます。
質問 # 36
Secure user authentication in cryptography is achieved by _____.
- A. password compressions
- B. user checksums
- C. data authentication
- D. password encryption
正解:D
解説:
Explanation: The encrypted passwords are similar to the private keys used to decrypt the resources the password has access to.
質問 # 37
Class 2 Bluetooth devices have an expected range of _____ ?
- A. 100 metres
- B. 10 metres
- C. 10 feet
- D. 30 metres
正解:B
解説:
Explanation: Bluetooth devices in class 2, which is typically used for phones and computers, generally have a range of up to 10 metres or 30 feet.
質問 # 38
What is required for a VPN to function correctly?
- A. Two or more networks connected together
- B. Encryption and authentication protocols
- C. They must not use encryption
- D. Two or more networks
正解:B
質問 # 39
IPv4 requires that every system with connectivity to the Internet have a unique
_____ internet address.
- A. 64-bit
- B. 16-bit
- C. 32-bit
- D. 128-bit
正解:C
質問 # 40
_____ is anything that can negatively affect information.
- A. A threat
- B. An information security threat
- C. A rule
- D. None of these answers are correct
正解:B
解説:
Explanation: An information security threat is anything that can negatively affect information. A threat doesn't deal specifically with information, and a rule is used to protect information.
質問 # 41
The type of intrusion detection system that places detection at the device is:
- A. NIDS
- B. HIDS
- C. TIDS
- D. KIDS
正解:B
解説:
Explanation: The type of intrusion detection system that places detection at the device is HIDS. NIDS places them at strategic points, and KIDS and TIDS are bogus.
質問 # 42
A/An _____ can happen if you're not careful when using public Wi-Fi.
- A. encryption lapse
- B. SSID launch
- C. man-in-the-middle attack
- D. DDoS attack
正解:C
解説:
Explanation: A man-in-the-middle is when a hacker broadcasts a phoney SSID to fool a public Wi-Fi user.
質問 # 43
Which layer provides the physical connection between the computer and network?
- A. Transport layer
- B. Network layer
- C. Physical layer
- D. Session layer
正解:C
解説:
Explanation: The physical layer is concerned with hardware and provides the physical connection between the computer and network. The physical components may include servers, clients and circuits.
質問 # 44
Which internet protocol is responsible for moving data packets along the Internet network?
- A. HTML
- B. OSI
- C. IP
- D. TPC
正解:C
質問 # 45
Which of the following distributions was designed primarily for security and penetration testing?
- A. Kali
- B. Debian
- C. Fedora
- D. Red Hat
正解:A
解説:
Explanation: Kali is a Linux distribution designed primarily for security and penetration testing.
質問 # 46
What are the four principles of information security?
- A. Availability, Integrity, Confidentiality, Non-Repudiation
- B. Safety, Secrecy, Ease of Use, Availability
- C. Confidentiality, Secrecy, Safety, Non-Repudiation
- D. Availability, Integrity, Confidentiality, Cost
正解:A
解説:
Explanation: The four principles are availability, integrity, confidentiality, non-repudiation.
To help you remember, you can think of the CIA model (Confidentiality, Integrity, Availability) as the building and non-repudiation as the lock on the door.
質問 # 47
Which is considered the 'ethical' hacker?
- A. The white hat
- B. The black hat
- C. The grey hat
- D. There is no such thing as an 'ethical hacker'.
正解:A
質問 # 48
In securing information and information systems, an organisation can implement an SMS-based password authentication protocol in addition to the username/password combination requirement for system access. Which aspect of information security is addressed by the additional layer of security?
- A. None
- B. Availability
- C. Integrity
- D. Confidentiality
正解:D
解説:
Explanation: SMS-based verification provides additional identity verification when information access is restricted to authorised users, thereby maintaining the confidentiality of the information being secured.
質問 # 49
A key is:
- A. Different for encryption and decryption in asymmetric encryption.
- B. The same for encryption and decryption in symmetric encryption.
- C. An external piece of information used in the encryption and decryption process.
- D. All of these answers are correct.
正解:D
解説:
Explanation: Each describes a characteristic of a key, in certain situations.
質問 # 50
Which of the following is NOT a method for intrusion detection?
- A. Inclusive
- B. Anomaly
- C. Reactive
- D. Passive
正解:A
解説:
Explanation: Inclusive is NOT a method for intrusion detection.
質問 # 51
A phishing attack that incorporates personal information about the user is known as which of the following?
- A. DNS copying.
- B. Spear phishing.
- C. Website spoofing.
- D. Spam filtering.
正解:B
解説:
Explanation: Spear phishing schemes use personal information of the victim to increase the probability of the success of the attack.
質問 # 52
Information security threats can be _____.
- A. Internal
- B. All of these answers are correct
- C. External
- D. Physical
正解:B
解説:
Explanation: They each describe the nature of threats.
質問 # 53
Which data storage technology stores data temporarily, not permanently, for use by a device?
- A. Random Access Memory (RAM)
- B. CD
- C. DVD
- D. Hard disk drive
正解:A
解説:
Explanation: Random Access Memory (RAM), also known simply as memory or computer memory is what computers use to hold information temporarily so it can be easily accessed by the computer as you work.
質問 # 54
......
ECSSv9認定は、情報セキュリティの概念の包括的な知識とセキュリティコントロールの実装における専門知識を獲得することを支援するように設計されています。試験は、ネットワークコンセプト、暗号化、アクセス制御、ファイアウォール、侵入検知および防止システムなど、広範なトピックをカバーしています。合格した候補者は、セキュリティリスクを特定、分析、緩和するために必要なスキルを持っており、敏感なデータやシステムを保護することができます。
2023年最新のPassTest ECSSv9のPDFで最近更新された問題です:https://www.passtest.jp/ECCouncil/ECSSv9-shiken.html
ECCouncil ECSSv9問題集にはリアル試験問題解答:https://drive.google.com/open?id=1c275w5r3xieGCFqVnML6M39lLxiVZmi-