SANS Security 528 CASP Practice Exam
|
|
|
- Arron Strickland
- 10 years ago
- Views:
Transcription
1 SANS Security 528 CASP Practice Exam Number: CAS-001 Passing Score: 750 Time Limit: 60 min File Version: 1.1 Join us in Washington DC the week of July 22nd for SEC528: SANS Training Program for the CompTIA New Advanced Security Practitioner Certification Or check out SANS' Training Program for the new CompTIA Advanced Security Practitioner Certification is designed to prepare you to pass the CASP (CompTIA Advanced Security Practitioner ) exam. The CASP exam is an advanced hands-on vendor-neutral exam. In addition to multiple choice questions, the exam tests hand-on knowledge via simulation questions. The simulations may feature the use of command-line encryption tools, applying firewall ACLs, placing secure devices onto a live network map, and much more. This SANS CompTIA training provides courseware custom-built to pass the exam; it was designed by SANS instructors who have taken and passed the CASP exam. Numerous hands-on exercises will prepare you both for the exam and for the real world. Exercises include: configuring a live NAS (Network Attached Storage) server, configuring a VoIP server, multiple encryption exercises including applying digital signatures, network design scenarios, configuring and using IPv6, and much more. Security 528 includes a CASP quiz after each section. The instructor will discuss every question and explain the rationale for each right and wrong answer. Our goal is not memorization. We will teach students how to understand and analyze complex security challenges and determine the right approach: both on the exam and in the real world. You will learn skills you can apply directly when they you back to work. SANS' training program for the new CompTIA Advanced Security Practitioner Certification contains the following domains, weighted per the CASP exam objectives: Enterprise security (40%) Risk Management, policy/procedure and legal (24%) Research & analysis (14%) Integration of computing, communications, and business disciplines (22%)
2 Exam A QUESTION 1 You work as a security engineer for SEC528, Inc. The e-commerce aspect of SEC528's web application has been breached and customer financial information appears to have been accessed by the attackers. Based on the information provided, which of the following is the best way to explain the compromise to the CIO? A. A likely SQL Injection vector was leveraged to breach the database backend of our web application. B. The confidentiality of customer information seems to have been breached. C. Our web application's availability has been breached. D. A claim should be filed with our data reach insurance provider. /Reference: From what is stated in the question, we know that confidential customer information has been breached. Explaining this breach of confidentiality to the CIO is incredibly important. Perhaps a SQL Injection vector was used, but that is going beyond what is provided, and likely beyond what the CIO needs to know immediately. QUESTION 2 Understanding basic risk management is critical for security professionals. Which term is used to explain a weakness in a system or application? A. Vulnerability B. Threat C. Impact D. Likelihood /Reference: Vulnerability is a weakness in an application or system. A threat is something that can cause harm. Impact is the result of a threat taking advantage of a vulnerability. Likelihood demonstrates how often a threat is expected to exploit a vulnerability. QUESTION 3 In quantitative risk management, Single Loss Expectancy (SLE) is used to quantify what? A. The amount of data that would be lost if a breach occurred. B. The percentage of an asset's value that would be lost if a breach occurred. C. The percentage of data that would be lost if a breach occurred. D. The amount of financial impact that would result if a breach occurred impacting an asset. /Reference: Single Loss Expectancy (SLE) is a term used in quantitative risk management. Understanding the formula for SLE makes the answer obvious: SLE = AV x EF or Single Loss Expectancy = Asset Value x Exposure Factor. Asset Value is how much the asset is worth. Exposure Factor is the percentage of an asset's value that would be lost. So, SLE is a measure of how much money would be lost if a breach occurred. QUESTION 4 A user has notified SEC528's help desk to report her inability to access internal corporate after the new
3 firewall was put into place. After accessing the firewall logs, you notice that her IP address shows the following ports were blocked by the firewall. Which is most likely causing the issue? A. TCP 25 B. TCP 110 C. UDP 53 D. TCP 3389 /Reference: TCP port 110 is associated with POP, which is used for client downloads of . Note, a block of port 995 would be preferable, as this would indicate the client is using an encrypted version of POP. TCP port 25 is also associated with , but this port is unlikely to impact client downloads of . QUESTION 5 SEC528's public facing web server is an IIS system with a vulnerability in the Server Service that is unable to be patched. Your manager is concerned that this system could be exploited from the outside by an attacker using the SMB protocol. SEC528 likely has a significant mitigating factor that decreases the likelihood of exploitation using the method the manager noted. Name the mitigating countermeasure most likely to exist. A. A NGFW that can block an exploit using advanced signature detection of SMB attacks B. A traditional firewall that would deny access to the associated ports for SMB C. An IPS that could employ behavior-based blocking of someone communicating with the web server over SMB D. An application whitelisting product that would block a web server from communicating over SMB /Reference: A simple traditional network based firewall is likely available and also configured to deny access to the ports associated with exploitation of this vulnerability. QUESTION 6 Client-Side exploitation is the most common means for an attacker to initially gain access within a modern network. The effectiveness of which countermeasure is most significantly diminished by the shift from serverside to client-side exploitation A. NGFW B. IPS C. Antivirus D. Firewall /Reference: The traditional firewall's utility has been substantially impacted by the shift from server to client-side exploitation. The firewall is very effective at reducing the exposure associated with listening services that could be attacked from an external actor. However, the most common vectors for client-side exploitation malicious websites and s with links/attachments are not easily controlled using traditional firewalls. QUESTION 7 Which of the following is associated with filtering access on network devices?
4 A. SSO B. ACL C. PKI D. SSL /Reference: ACL - Access Control Lists are associated filtering access on firewalls and other network devices. QUESTION 8 This refers to directly migrating a physical machine to a virtual machine platform: A. P2V B. IaaS C. VPS D. PaaS /Reference: P2V stands for Physical 2 Virtual, which is a method of converting a physical device into a virtual machine. QUESTION 9 You read an article about an attacker impacting a host operating system after compromising a guest virtual machine. What term is used to describe this activity? A. Hypervisor Bypass B. Co-mingling C. VMEscape D. Privilege Escalation Correct Answer: C /Reference: VMEscape is the term associated with breaking out of the supposed confines of a guest virtual machine to impact another guest or the host system. QUESTION 10 A hypervisor is not a firewall. This statement is most important when considering. A. Virtual Private Networks B. Multi-tenant cloud service providers C. De-provisioning virtual machines D. Infrastructure as a Service /Reference: The fact that a hypervisor is not a firewall has significant implications especially when considering a multi-
5 tenant could service provider. Other businesses systems situated on the same logical network has serious security implications. QUESTION 11 Requesting that a service provider offer SEC528, Inc. access to prior penetration test reports, SAS70, or evidence of ISO certification is an example of what security principle. A. Due Diligence B. Due Care C. Best Practices D. Attestation /Reference: While any of the answer choices could be considered correct, the best answer is attestation. Attestation is trying to get a service provider to "prove" security by showing evidence of 3rd party vetting or adherence to a particular standard. QUESTION 12 A digitally signed affords the the recipient guarantee that the sender is the person that actually sent the and further that the has not changed. What is the technical/legal term for providing both of these? A. Non-repudiation B. Origin Authentication C. Attestation D. Integrity /Reference: Digital signatures are an example of technical non-repudiation. This means that the sender cannot say that someone else either sent the message or violated the integrity of the message if the digital signature is intact. QUESTION 13 Hashes are cryptographic one-way transformations that accept an arbitrary input and yield a fixed-length output called a digest. The potential for two different inputs to yield the same digest is referred to as: A. Collision B. Diffusion C. Collusion D. Dilution /Reference: A hash collision occurs when two different inputs yield the same output. Collisions will always be possible given that the input side of a hash algorithm allows for infinite possible inputs while the output side is finite. QUESTION 14 What is a realtime alternative to CRL?
6 A. PKI B. OCSP C. CA D. RA /Reference: Online Certificate Status Protocol represents a realtime method for requesting certificate revocation information. The CRL, or Certificate Revocation List, is another means of communicating this information. QUESTION 15 What entails ensuring that if a session key is compromised previously captured communications my not also be decrypted. A. Separation of Duties B. Non-repudiation C. Perfect Forward Secrecy D. High Entropy Correct Answer: C /Reference: Perfect Forward Secrecy ensures that one symmetric session key becoming compromised does not allow for previously captured communications to also be decrypted. QUESTION 16 Which are the two protocols that can be used for IPsec VPNs? A. AH B. ESP C. AES D. SSL B /Reference: AH and ESP are the two IPsec VPN protocols. While SSL VPNs are becoming increasingly common, they are unrelated to IPsec VPNs. QUESTION 17 What type of attack could be detected by noticing an SSL certificate name mismatch warning? A. sslstrip B. SSL key compromise C. CA Compromise D. SSL MITM /Reference:
7 A name mismatch warning could indicate an SSL MITM man-in-the-middle attack. It could, of course, also just be a misconfiguration on the part of the target. QUESTION 18 Which of these insecure programs/protocols is effectively replaced by SSH? A. Telnet B. FTP C. rlogin D. rsh BCD /Reference: All of these protocols/programs can be replaced by the more security-oriented SSH. QUESTION 19 Which term indicates the degree of randomness? A. Cryptography B. Entropy C. Steganography D. PRNG /Reference: Entropy describes the amount of randomness. Truly random will have maximum or perfect entropy. Computers attempt to effect random by employing a PRNG Pseudo Random Number Generator. QUESTION 20 Which password has the most overall entropy? A. correct horse battery staple B. Tr0ub4dor&3 C. password D /Reference: Entropy describes the amount of randomness. While 'Tr0ub4dor&3' has the highest per-character entropy, the longer password 'correct horse battery staple' has higher overall entropy due to its length. See com/936/. QUESTION 21 Which of the following is roughly equivalent to an access list for network storage? A. VSAN Markup B. LUN Masking C. FCoE Access D. HBA Controls
8 /Reference: LUN (Logical Unit Number) Masking is a way of implementing access control for networked storage. QUESTION 22 What technique provides a means for reducing waste storage by eliminating identical chunks of data and replacing them with pointers to one copy of that data? A. Alternate Data Streams B. Hierarchical File Systems C. Compression D. Deduplication /Reference: Deduplication is the technique that eliminates storage waste associated with identical clusters/blocks/files being stored multiple times. It works by replacing the chunk of data with a pointer to a single copy of the duplicated data in question. QUESTION 23 Which IPv6 prefix indicates an IP address that is internally unique, has a local IPv6 infrastructure available, but will not be publicly routed? A. ::1/128 B. fc00::/7 C. ff00::/8 D. fe80::/8 /Reference: fc00::/7 is equivalent to RFC1918 addresses, and exhibits the characteristics described in the question. fe80::/8 could also be used locally and would be unique, but it does not imply a local IPv6 infrastructure. QUESTION 24 Which trend seeks to reduce capital and possibly operational expenses by allowing employees to leverage their personal computing devices for business purposes? A. BYOD B. Cloud Services C. Insourcing D. Outsourcing /Reference: BYOD, Bring-Your-Own-Device, also referred to as consumerization, is a trend toward allowing employees to leverage their personal devices corporately. Significant challenges exist that relate to security, however, the financial incentives are significant.
9 QUESTION 25 Identifying and labeling all PHI would be an example of what? A. Internal Audit B. Separation of Duties C. Data Classification D. Principle of Least Privilege Correct Answer: C /Reference: PHI, Protected Health Information, is data regulated by HIPAA. Identifying and labeling this data would be an example of data classification. QUESTION 26 Which principle would SEC528, Inc. be employing by requiring multiple individuals' authorizations in order to carry out a particularly critical function? A. Principle of Least Privilege B. Minimum Necessary Access C. Rotation of Duties D. Separation of Duties /Reference: Splitting a critical operation across multiple individuals is an example of Separation of Duties. QUESTION 27 Employing configuration management and establishing a hardened baseline image demonstrates what security principle? A. Principle of Least Privilege B. Separation of Duties C. Rotation of Duties D. Prudent Man Rule /Reference: Hardened configurations disable functionality that is not business necessary, and therefore can be seen as demonstrating the principle of least privilege. QUESTION 28 SEC528, Inc. is considering the purchase of a data breach insurance policy. What risk management principle are they considering? A. Risk Transfer B. Risk Avoidance C. Risk Mitigation D. Risk Elimination
10 /Reference: Insurance is the classic example of risk transfer. Purchasing insurance means paying some relatively small consistent fee (premium) to an organization that will in turn accept the risk that your organization is unwilling to accept or cannot effectively mitigate themselves. QUESTION 29 Prior to accepting a risk, what has most likely occurred? A. Risk Transfer B. Risk Mitigation C. Risk Avoidance D. Risk Elimination /Reference: Risk Mitigation is commonly employed prior to accepting risk. The goal of risk mitigation is to decrease the risk down to an acceptable level. QUESTION 30 Considering financial matters beyond just acquisition costs is most closely associated with what? A. TCO B. ROI C. ARO D. ALE /Reference: TCO, Total Cost of Ownership, attempts to consider not just the upfront costs associated with an acquisition, but also the costs associated with ongoing maintenance and administration as well as other costs.
SANS Security 528 CASP Practice Exam
SANS Security 528 CASP Practice Exam Number: CAS-001 Passing Score: 750 Time Limit: 60 min File Version: 1.1 Join us in Washington DC the week of July 22nd for SEC528: SANS Training Program for the CompTIA
Directory and File Transfer Services. Chapter 7
Directory and File Transfer Services Chapter 7 Learning Objectives Explain benefits offered by centralized enterprise directory services such as LDAP over traditional authentication systems Identify major
Security + Certification (ITSY 1076) Syllabus
Security + Certification (ITSY 1076) Syllabus Course: ITSY 1076 Security+ 40 hours Course Description: This course is targeted toward an Information Technology (IT) professional who has networking and
CompTIA Security+ (Exam SY0-410)
CompTIA Security+ (Exam SY0-410) Length: Location: Language(s): Audience(s): Level: Vendor: Type: Delivery Method: 5 Days 182, Broadway, Newmarket, Auckland English, Entry Level IT Professionals Intermediate
CompTIA Cloud+ Course Content. Length: 5 Days. Who Should Attend:
CompTIA Cloud+ Length: 5 Days Who Should Attend: Project manager, cloud computing services Cloud engineer Manager, data center SAN Business analyst, cloud computing Summary: The CompTIA Cloud+ certification
Chapter 10. Cloud Security Mechanisms
Chapter 10. Cloud Security Mechanisms 10.1 Encryption 10.2 Hashing 10.3 Digital Signature 10.4 Public Key Infrastructure (PKI) 10.5 Identity and Access Management (IAM) 10.6 Single Sign-On (SSO) 10.7 Cloud-Based
Thick Client Application Security
Thick Client Application Security Arindam Mandal ([email protected]) (http://www.paladion.net) January 2005 This paper discusses the critical vulnerabilities and corresponding risks in a two
Implementing Cisco IOS Network Security v2.0 (IINS)
Implementing Cisco IOS Network Security v2.0 (IINS) Course Overview: Implementing Cisco IOS Network Security (IINS) v2.0 is a five-day instructor-led course that is presented by Cisco Learning Partners
CompTIA Cloud+ 9318; 5 Days, Instructor-led
CompTIA Cloud+ 9318; 5 Days, Instructor-led Course Description The CompTIA Cloud+ certification validates the knowledge and best practices required of IT practitioners working in cloud computing environments,
Tim Bovles WILEY. Wiley Publishing, Inc.
Tim Bovles WILEY Wiley Publishing, Inc. Contents Introduction xvii Assessment Test xxiv Chapter 1 Introduction to Network Security 1 Threats to Network Security 2 External Threats 3 Internal Threats 5
CompTIA Security+ Certification Study Guide. (Exam SYO-301) Glen E. Clarke. Gravu Hill
CompTIA Security+ Certification Study Guide (Exam SYO-301) Glen E. Clarke McGraw-Hill is an independent entity from CompTIA,This publication and CD may be used in assisting students to prepare for the
March 2012 www.tufin.com
SecureTrack Supporting Compliance with PCI DSS 2.0 March 2012 www.tufin.com Table of Contents Introduction... 3 The Importance of Network Security Operations... 3 Supporting PCI DSS with Automated Solutions...
Information Security Basic Concepts
Information Security Basic Concepts 1 What is security in general Security is about protecting assets from damage or harm Focuses on all types of assets Example: your body, possessions, the environment,
BMC s Security Strategy for ITSM in the SaaS Environment
BMC s Security Strategy for ITSM in the SaaS Environment TABLE OF CONTENTS Introduction... 3 Data Security... 4 Secure Backup... 6 Administrative Access... 6 Patching Processes... 6 Security Certifications...
Network Security Fundamentals
APNIC elearning: Network Security Fundamentals 27 November 2013 04:30 pm Brisbane Time (GMT+10) Introduction Presenter Sheryl Hermoso Training Officer [email protected] Specialties: Network Security IPv6
IT Best Practices Audit TCS offers a wide range of IT Best Practices Audit content covering 15 subjects and over 2200 topics, including:
IT Best Practices Audit TCS offers a wide range of IT Best Practices Audit content covering 15 subjects and over 2200 topics, including: 1. IT Cost Containment 84 topics 2. Cloud Computing Readiness 225
APNIC elearning: Network Security Fundamentals. 20 March 2013 10:30 pm Brisbane Time (GMT+10)
APNIC elearning: Network Security Fundamentals 20 March 2013 10:30 pm Brisbane Time (GMT+10) Introduction Presenter/s Nurul Islam Roman Senior Training Specialist [email protected] Specialties: Routing &
CONTENTS. PCI DSS Compliance Guide
CONTENTS PCI DSS COMPLIANCE FOR YOUR WEBSITE BUILD AND MAINTAIN A SECURE NETWORK AND SYSTEMS Requirement 1: Install and maintain a firewall configuration to protect cardholder data Requirement 2: Do not
Overview of CSS SSL. SSL Cryptography Overview CHAPTER
CHAPTER 1 Secure Sockets Layer (SSL) is an application-level protocol that provides encryption technology for the Internet, ensuring secure transactions such as the transmission of credit card numbers
Asheville-Buncombe Technical Community College Department of Networking Technology. Course Outline
Course Number: SEC 150 Course Title: Security Concepts Hours: 2 Lab Hours: 2 Credit Hours: 3 Course Description: This course provides an overview of current technologies used to provide secure transport
IINS Implementing Cisco Network Security 3.0 (IINS)
IINS Implementing Cisco Network Security 3.0 (IINS) COURSE OVERVIEW: Implementing Cisco Network Security (IINS) v3.0 is a 5-day instructor-led course focusing on security principles and technologies, using
Securing the Service Desk in the Cloud
TECHNICAL WHITE PAPER Securing the Service Desk in the Cloud BMC s Security Strategy for ITSM in the SaaS Environment Introduction Faced with a growing number of regulatory, corporate, and industry requirements,
CS 356 Lecture 25 and 26 Operating System Security. Spring 2013
CS 356 Lecture 25 and 26 Operating System Security Spring 2013 Review Chapter 1: Basic Concepts and Terminology Chapter 2: Basic Cryptographic Tools Chapter 3 User Authentication Chapter 4 Access Control
JK0 015 CompTIA E2C Security+ (2008 Edition) Exam
JK0 015 CompTIA E2C Security+ (2008 Edition) Exam Version 4.1 QUESTION NO: 1 Which of the following devices would be used to gain access to a secure network without affecting network connectivity? A. Router
Network Security. 1 Pass the course => Pass Written exam week 11 Pass Labs
Network Security Ola Lundh [email protected] Schedule/ time-table: landris.hh.se/ (NetwoSec) Course home-page: hh.se/english/ide/education/student/coursewebp ages/networksecurity cisco.netacad.net Packet
Information Security. Training
Information Security Training Importance of Information Security Training There is only one way to keep your product plans safe and that is by having a trained, aware and a conscientious workforce. - Kevin
Introduction to Cyber Security / Information Security
Introduction to Cyber Security / Information Security Syllabus for Introduction to Cyber Security / Information Security program * for students of University of Pune is given below. The program will be
Cyber Essentials. Test Specification
Cyber Essentials Test Specification Contents Scope of the Audit...2 Assumptions...3 Success Criteria...3 External systems...4 Required tests...4 Test Details...4 Internal systems...7 Tester pre-requisites...8
Security Controls for the Autodesk 360 Managed Services
Autodesk Trust Center Security Controls for the Autodesk 360 Managed Services Autodesk strives to apply the operational best practices of leading cloud-computing providers around the world. Sound practices
Skoot Secure File Transfer
Page 1 Skoot Secure File Transfer Sharing information has become fundamental to organizational success. And as the value of that information whether expressed as mission critical or in monetary terms increases,
Content Teaching Academy at James Madison University
Content Teaching Academy at James Madison University 1 2 The Battle Field: Computers, LANs & Internetworks 3 Definitions Computer Security - generic name for the collection of tools designed to protect
The following chart provides the breakdown of exam as to the weight of each section of the exam.
Introduction The CWSP-205 exam, covering the 2015 objectives, will certify that the successful candidate understands the security weaknesses inherent in WLANs, the solutions available to address those
Securing Data on Microsoft SQL Server 2012
Securing Data on Microsoft SQL Server 2012 Course 55096 The goal of this two-day instructor-led course is to provide students with the database and SQL server security knowledge and skills necessary to
Guide to Vulnerability Management for Small Companies
University of Illinois at Urbana-Champaign BADM 557 Enterprise IT Governance Guide to Vulnerability Management for Small Companies Andrew Tan Table of Contents Table of Contents... 1 Abstract... 2 1. Introduction...
NSA/DHS CAE in IA/CD 2014 Mandatory Knowledge Unit Checklist 4 Year + Programs
Mandatory Knowledge Units 1.0 Core2Y 1.1 Basic Data Analysis The intent of this Knowledge Unit is to provide students with basic abilities to manipulate data into meaningful information. 1.1.1 Topics Summary
Joint Universities Computer Centre Limited ( JUCC ) Information Security Awareness Training- Session Two
Joint Universities Computer Centre Limited ( JUCC ) Information Security Awareness Training- Session Two Data Handling in University Case Study- Information Security in University Agenda Case Study Background
iscsi Security (Insecure SCSI) Presenter: Himanshu Dwivedi
iscsi Security (Insecure SCSI) Presenter: Himanshu Dwivedi Agenda Introduction iscsi Attacks Enumeration Authorization Authentication iscsi Defenses Information Security Partners (isec) isec Partners Independent
Cisco Certified Security Professional (CCSP)
529 Hahn Ave. Suite 101 Glendale CA 91203-1052 Tel 818.550.0770 Fax 818.550.8293 www.brandcollege.edu Cisco Certified Security Professional (CCSP) Program Summary This instructor- led program with a combination
MANAGED FILE TRANSFER: 10 STEPS TO SOX COMPLIANCE
WHITE PAPER MANAGED FILE TRANSFER: 10 STEPS TO SOX COMPLIANCE 1. OVERVIEW Do you want to design a file transfer process that is secure? Or one that is compliant? Of course, the answer is both. But it s
S E C U R I T Y A S S E S S M E N T : B o m g a r B o x T M. Bomgar. Product Penetration Test. September 2010
S E C U R I T Y A S S E S S M E N T : B o m g a r B o x T M Bomgar Product Penetration Test September 2010 Table of Contents Introduction... 1 Executive Summary... 1 Bomgar Application Environment Overview...
How To Pass A Credit Course At Florida State College At Jacksonville
Form 2A, Page 1 FLORIDA STATE COLLEGE AT JACKSONVILLE COLLEGE CREDIT COURSE OUTLINE COURSE NUMBER: CTS 2658 COURSE TITLE: PREREQUISITE(S): COREQUISITE(S): Managing Network Security CNT 2210 with grade
ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0
ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0 Module 1: Vulnerabilities, Threats, and Attacks 1.1 Fundamental Principles of a Secure Network
Kenna Platform Security. A technical overview of the comprehensive security measures Kenna uses to protect your data
Kenna Platform Security A technical overview of the comprehensive security measures Kenna uses to protect your data V2.0, JULY 2015 Multiple Layers of Protection Overview Password Salted-Hash Thank you
Weighted Total Mark. Weighted Exam Mark
CMP4103 Computer Systems and Network Security Period per Week Contact Hour per Semester Weighted Total Mark Weighted Exam Mark Weighted Continuous Assessment Mark Credit Units LH PH TH CH WTM WEM WCM CU
REPORT ON AUDIT OF LOCAL AREA NETWORK OF C-STAR LAB
REPORT ON AUDIT OF LOCAL AREA NETWORK OF C-STAR LAB Conducted: 29 th March 5 th April 2007 Prepared By: Pankaj Kohli (200607011) Chandan Kumar (200607003) Aamil Farooq (200505001) Network Audit Table of
Virtual Private Networks (VPN) Connectivity and Management Policy
Connectivity and Management Policy VPN Policy for Connectivity into the State of Idaho s Wide Area Network (WAN) 02 September 2005, v1.9 (Previous revision: 14 December, v1.8) Applicability: All VPN connections
MS-55096: Securing Data on Microsoft SQL Server 2012
MS-55096: Securing Data on Microsoft SQL Server 2012 Description The goal of this two-day instructor-led course is to provide students with the database and SQL server security knowledge and skills necessary
E-Commerce Security. The Client-Side Vulnerabilities. Securing the Data Transaction LECTURE 7 (SECURITY)
E-Commerce Security An e-commerce security system has four fronts: LECTURE 7 (SECURITY) Web Client Security Data Transport Security Web Server Security Operating System Security A safe e-commerce system
Overview. Securing TCP/IP. Introduction to TCP/IP (cont d) Introduction to TCP/IP
Overview Securing TCP/IP Chapter 6 TCP/IP Open Systems Interconnection Model Anatomy of a Packet Internet Protocol Security (IPSec) Web Security (HTTP over TLS, Secure-HTTP) Lecturer: Pei-yih Ting 1 2
CISCO IOS NETWORK SECURITY (IINS)
CISCO IOS NETWORK SECURITY (IINS) SEVENMENTOR TRAINING PVT.LTD [Type text] Exam Description The 640-553 Implementing Cisco IOS Network Security (IINS) exam is associated with the CCNA Security certification.
12/3/08. Security in Wireless LANs and Mobile Networks. Wireless Magnifies Exposure Vulnerability. Mobility Makes it Difficult to Establish Trust
Security in Wireless LANs and Mobile Networks Wireless Magnifies Exposure Vulnerability Information going across the wireless link is exposed to anyone within radio range RF may extend beyond a room or
Criteria for web application security check. Version 2015.1
Criteria for web application security check Version 2015.1 i Content Introduction... iii ISC- P- 001 ISC- P- 001.1 ISC- P- 001.2 ISC- P- 001.3 ISC- P- 001.4 ISC- P- 001.5 ISC- P- 001.6 ISC- P- 001.7 ISC-
Data Protection: From PKI to Virtualization & Cloud
Data Protection: From PKI to Virtualization & Cloud Raymond Yeung CISSP, CISA Senior Regional Director, HK/TW, ASEAN & A/NZ SafeNet Inc. Agenda What is PKI? And Value? Traditional PKI Usage Cloud Security
Information Security Services
Information Security Services Information Security In 2013, Symantec reported a 62% increase in data breaches over 2012. These data breaches had tremendous impacts on many companies, resulting in intellectual
EXAM questions for the course TTM4135 - Information Security May 2013. Part 1
EXAM questions for the course TTM4135 - Information Security May 2013 Part 1 This part consists of 5 questions all from one common topic. The number of maximal points for every correctly answered question
Cornerstones of Security
Internet Security Cornerstones of Security Authenticity the sender (either client or server) of a message is who he, she or it claims to be Privacy the contents of a message are secret and only known to
Guidance Regarding Skype and Other P2P VoIP Solutions
Guidance Regarding Skype and Other P2P VoIP Solutions Ver. 1.1 June 2012 Guidance Regarding Skype and Other P2P VoIP Solutions Scope This paper relates to the use of peer-to-peer (P2P) VoIP protocols,
CPA SECURITY CHARACTERISTIC TLS VPN FOR REMOTE WORKING SOFTWARE CLIENT
29175671 CPA SECURITY CHARACTERISTIC TLS VPN FOR REMOTE WORKING SOFTWARE CLIENT Version 1.0 Crown Copyright 2013 All Rights Reserved UNCLASSIFIED Page 1 About this document This document describes the
Implementing Cisco IOS Network Security
Implementing Cisco IOS Network Security IINS v3.0; 5 Days, Instructor-led Course Description Implementing Cisco Network Security (IINS) v3.0 is a 5-day instructor-led course focusing on security principles
Information Security Training for SysAdmins. Center for Education and Research in Information Assurance and Security, Purdue University
Information Security Training for SysAdmins Center for Education and Research in Information Assurance and Security, Purdue University Published by: CERIAS, The Center for Education and Research in Information
2. From a control perspective, the PRIMARY objective of classifying information assets is to:
MIS5206 Week 13 Your Name Date 1. When conducting a penetration test of an organization's internal network, which of the following approaches would BEST enable the conductor of the test to remain undetected
CTS2134 Introduction to Networking. Module 8.4 8.7 Network Security
CTS2134 Introduction to Networking Module 8.4 8.7 Network Security Switch Security: VLANs A virtual LAN (VLAN) is a logical grouping of computers based on a switch port. VLAN membership is configured by
7 Network Security. 7.1 Introduction 7.2 Improving the Security 7.3 Internet Security Framework. 7.5 Absolute Security?
7 Network Security 7.1 Introduction 7.2 Improving the Security 7.3 Internet Security Framework 7.4 Firewalls 7.5 Absolute Security? 7.1 Introduction Security of Communications data transport e.g. risk
SCP - Strategic Infrastructure Security
SCP - Strategic Infrastructure Security Lesson 1 - Cryptogaphy and Data Security Cryptogaphy and Data Security History of Cryptography The number lock analogy Cryptography Terminology Caesar and Character
E-commerce. Security. Learning objectives. Internet Security Issues: Overview. Managing Risk-1. Managing Risk-2. Computer Security Classifications
Learning objectives E-commerce Security Threats and Protection Mechanisms. This lecture covers internet security issues and discusses their impact on an e-commerce. Nov 19, 2004 www.dcs.bbk.ac.uk/~gmagoulas/teaching.html
Topics in Network Security
Topics in Network Security Jem Berkes MASc. ECE, University of Waterloo B.Sc. ECE, University of Manitoba www.berkes.ca February, 2009 Ver. 2 In this presentation Wi-Fi security (802.11) Protecting insecure
EUCIP - IT Administrator. Module 5 IT Security. Version 2.0
EUCIP - IT Administrator Module 5 IT Security Version 2.0 Module 5 Goals Module 5 Module 5, IT Security, requires the candidate to be familiar with the various ways of protecting data both in a single
Chapter 8 Security. IC322 Fall 2014. Computer Networking: A Top Down Approach. 6 th edition Jim Kurose, Keith Ross Addison-Wesley March 2012
Chapter 8 Security IC322 Fall 2014 Computer Networking: A Top Down Approach 6 th edition Jim Kurose, Keith Ross Addison-Wesley March 2012 All material copyright 1996-2012 J.F Kurose and K.W. Ross, All
Reducing Application Vulnerabilities by Security Engineering
Reducing Application Vulnerabilities by Security Engineering - Subash Newton Manager Projects (Non Functional Testing, PT CoE Group) 2008, Cognizant Technology Solutions. All Rights Reserved. The information
APNIC elearning: IPSec Basics. Contact: [email protected]. esec03_v1.0
APNIC elearning: IPSec Basics Contact: [email protected] esec03_v1.0 Overview Virtual Private Networks What is IPsec? Benefits of IPsec Tunnel and Transport Mode IPsec Architecture Security Associations
Client Server Registration Protocol
Client Server Registration Protocol The Client-Server protocol involves these following steps: 1. Login 2. Discovery phase User (Alice or Bob) has K s Server (S) has hash[pw A ].The passwords hashes are
FINAL DoIT 04.01.2013- v.8 APPLICATION SECURITY PROCEDURE
Purpose: This procedure identifies what is required to ensure the development of a secure application. Procedure: The five basic areas covered by this document include: Standards for Privacy and Security
Chapter 17. Transport-Level Security
Chapter 17 Transport-Level Security Web Security Considerations The World Wide Web is fundamentally a client/server application running over the Internet and TCP/IP intranets The following characteristics
Overview of Network Security The need for network security Desirable security properties Common vulnerabilities Security policy designs
Overview of Network Security The need for network security Desirable security properties Common vulnerabilities Security policy designs Why Network Security? Keep the bad guys out. (1) Closed networks
Network Security Guidelines. e-governance
Network Security Guidelines for e-governance Draft DEPARTMENT OF ELECTRONICS AND INFORMATION TECHNOLOGY Ministry of Communication and Information Technology, Government of India. Document Control S/L Type
ADMINISTRATIVE POLICY # 32 8 117 (2014) Remote Access. Policy Number: ADMINISTRATIVE POLICY # 32 8 117 (2014) Remote Access
Policy Title: Remote Access Policy Type: Administrative Policy Number: ADMINISTRATIVE POLICY # 32 8 117 (2014) Remote Access Approval Date: 05/20/2014 Revised Responsible Office: Office of Information
MANAGED FILE TRANSFER: 10 STEPS TO PCI DSS COMPLIANCE
WHITE PAPER MANAGED FILE TRANSFER: 10 STEPS TO PCI DSS COMPLIANCE 1. OVERVIEW Do you want to design a file transfer process that is secure? Or one that is compliant? Of course, the answer is both. But
Högskolan i Halmstad Sektionen för Informationsvetenskap, Data- Och Elektroteknik (IDÉ) Ola Lundh. Name (in block letters) :
Högskolan i Halmstad Sektionen för Informationsvetenskap, Data- Och Elektroteknik (IDÉ) Ola Lundh Written Exam in Network Security ANSWERS May 28, 2009. Allowed aid: Writing material. Name (in block letters)
Firewalls, Tunnels, and Network Intrusion Detection
Firewalls, Tunnels, and Network Intrusion Detection 1 Part 1: Firewall as a Technique to create a virtual security wall separating your organization from the wild west of the public internet 2 1 Firewalls
Consensus Policy Resource Community. Lab Security Policy
Lab Security Policy Free Use Disclaimer: This policy was created by or for the SANS Institute for the Internet community. All or parts of this policy can be freely used for your organization. There is
Building A Secure Microsoft Exchange Continuity Appliance
Building A Secure Microsoft Exchange Continuity Appliance Teneros, Inc. 215 Castro Street, 3rd Floor Mountain View, California 94041-1203 USA p 650.641.7400 f 650.641.7401 ON AVAILABLE ACCESSIBLE Building
Windows Remote Access
Windows Remote Access A newsletter for IT Professionals Education Sector Updates Issue 1 I. Background of Remote Desktop for Windows Remote Desktop Protocol (RDP) is a proprietary protocol developed by
DRAFT Standard Statement Encryption
DRAFT Standard Statement Encryption Title: Encryption Standard Document Number: SS-70-006 Effective Date: x/x/2010 Published by: Department of Information Systems 1. Purpose Sensitive information held
Eleventh Hour Security+
Eleventh Hour Security+ Exam SYO-201 Study Guide I do Dubrawsky Technical Editor Michael Cross AMSTERDAM BOSTON HEIDELBERG LONDON NEWYORK OXFORD PARIS SAN DIEGO SAN FRANCISCO SINGAPORE SYDNEY TOKYO SYNGRESS.
INFORMATION SUPPLEMENT. Migrating from SSL and Early TLS. Version 1.0 Date: April 2015 Author: PCI Security Standards Council
Version 1.0 Date: Author: PCI Security Standards Council Executive Summary The time to migrate is now. For over 20 years Secure Sockets Layer (SSL) has been in the market as one of the most widely-used
John Essner, CISO Office of Information Technology State of New Jersey
John Essner, CISO Office of Information Technology State of New Jersey http://csrc.nist.gov/publications/nistpubs/800-144/sp800-144.pdf Governance Compliance Trust Architecture Identity and Access Management
Security+ Guide to Network Security Fundamentals, Third Edition Chapter 9 Performing Vulnerability Assessments
Security+ Guide to Network Security Fundamentals, Third Edition Chapter 9 Performing Vulnerability Assessments Objectives Define risk and risk management Describe the components of risk management List
SSL-TLS VPN 3.0 Certification Report. For: Array Networks, Inc.
SSL-TLS VPN 3.0 Certification Report For: Array Networks, Inc. Prepared by: ICSA Labs 1000 Bent Creek Blvd., Suite 200 Mechanicsburg, PA 17050 USA http://www.icsalabs.com SSL-TLS VPN 3.0 Certification
Chapter 10. Network Security
Chapter 10 Network Security 10.1. Chapter 10: Outline 10.1 INTRODUCTION 10.2 CONFIDENTIALITY 10.3 OTHER ASPECTS OF SECURITY 10.4 INTERNET SECURITY 10.5 FIREWALLS 10.2 Chapter 10: Objective We introduce
Threat Modelling for Web Application Deployment. Ivan Ristic [email protected] (Thinking Stone)
Threat Modelling for Web Application Deployment Ivan Ristic [email protected] (Thinking Stone) Talk Overview 1. Introducing Threat Modelling 2. Real-world Example 3. Questions Who Am I? Developer /
CS5008: Internet Computing
CS5008: Internet Computing Lecture 22: Internet Security A. O Riordan, 2009, latest revision 2015 Internet Security When a computer connects to the Internet and begins communicating with others, it is
CPSC 467b: Cryptography and Computer Security
CPSC 467b: Cryptography and Computer Security Michael J. Fischer Lecture 1 January 9, 2012 CPSC 467b, Lecture 1 1/22 Course Overview Symmetric Cryptography CPSC 467b, Lecture 1 2/22 Course Overview CPSC
Network Security. Gaurav Naik Gus Anderson. College of Engineering. Drexel University, Philadelphia, PA. Drexel University. College of Engineering
Network Security Gaurav Naik Gus Anderson, Philadelphia, PA Lectures on Network Security Feb 12 (Today!): Public Key Crypto, Hash Functions, Digital Signatures, and the Public Key Infrastructure Feb 14:
ETHICAL HACKING 010101010101APPLICATIO 00100101010WIRELESS110 00NETWORK1100011000 101001010101011APPLICATION0 1100011010MOBILE0001010 10101MOBILE0001
001011 1100010110 0010110001 010110001 0110001011000 011000101100 010101010101APPLICATIO 0 010WIRELESS110001 10100MOBILE00010100111010 0010NETW110001100001 10101APPLICATION00010 00100101010WIRELESS110
B database Security - A Case Study
WHITE PAPER: ENTERPRISE SECURITY Strengthening Database Security White Paper: Enterprise Security Strengthening Database Security Contents Introduction........................................................................4
Description: Objective: Attending students will learn:
Course: Introduction to Cyber Security Duration: 5 Day Hands-On Lab & Lecture Course Price: $ 3,495.00 Description: In 2014 the world has continued to watch as breach after breach results in millions of
Network Security. Marcus Bendtsen Institutionen för Datavetenskap (IDA) Avdelningen för Databas- och Informationsteknik (ADIT)
Network Security Securing communications (SSL/TLS and IPSec) Marcus Bendtsen Institutionen för Datavetenskap (IDA) Avdelningen för Databas- och Informationsteknik (ADIT) Network communication Who are you
Metasploit The Elixir of Network Security
Metasploit The Elixir of Network Security Harish Chowdhary Software Quality Engineer, Aricent Technologies Shubham Mittal Penetration Testing Engineer, Iviz Security And Your Situation Would Be Main Goal
