EC-Council Certified Network Defender CND 312-38 Exam Questions

Page: 1 / 14
Total 363 questions
Question 1

Management wants to calculate the risk factor for their organization. Kevin, a network administrator in the organization knows how to calculate the risk factor. Certain parameters are required before calculating risk

factor. What are they? (Select all that apply) Risk factor =.............X...............X...........



Answer : A

The risk factor for an organization is typically calculated by considering the potential impact of a threat exploiting a vulnerability. The formula often used is Risk = Threat X Vulnerability X Impact. This means that for a risk to exist, there must be a threat that could exploit a vulnerability and cause an impact on the organization. An attack is not a parameter in the risk calculation but rather the act that occurs when a threat exploits a vulnerability.


Question 2

Harry has sued the company claiming they made his personal information public on a social networking site in the United States. The company denies the allegations and consulted a/an ______for legal advice to defend

them against this allegation.



Answer : B

In the context of legal proceedings, especially when facing allegations of making personal information public, a company would seek the expertise of an attorney. An attorney is qualified to provide legal advice, represent the company in court, and help navigate the complexities of the law regarding data protection and privacy. They would also assist in formulating a defense strategy and ensure that the company's rights are protected throughout the legal process.


Question 3

Which policies exist only on AWS IAM identity (user, group, or role)?



Answer : A

Inline policies are exclusive to AWS IAM identities, which include users, groups, and roles. These are policies that you create and manage and are directly embedded into a single IAM identity. Unlike managed policies, which can be attached to multiple IAM identities, inline policies are strictly one-to-one; they are an integral part of the IAM identity to which they are attached. This means that if the user, group, or role is deleted, the inline policy is also deleted. Inline policies are typically used for ensuring that specific permissions are tightly bound to an IAM identity and are not inadvertently assigned elsewhere.


Question 4

Which of the following commands can be used to disable unwanted services on Debian, Ubuntu and other Debian-based Linux distributions?



Answer : D

In Debian-based Linux distributions, such as Ubuntu, theupdate-rc.dcommand is used to add and remove services from the startup sequence. To disable a service, the-foption (which stands for 'force') is used along with theremoveparameter to remove the service from the startup sequence. This prevents the service from starting automatically during the system boot.


Question 5

Which mobile-use approach allows an organization's employees to use devices that they are comfortable with and best fits their preferences and work purposes?



Answer : A

The mobile-use approach that allows an organization's employees to use devices they are comfortable with and that best fit their preferences and work purposes isBring Your Own Device (BYOD). This approach offers the most flexibility for employees, as they can bring and use their personal devices for work-related activities.It is a popular choice for companies that wish to provide a flexible work environment and cater to the diverse preferences of their employees123.


Question 6

Ryan is a network security administrator, who wants to implement local security policies for privileges granted to users and groups, system security audit settings, user authentication, and want to

send security audit messages to the Event Log. Which Windows security component fulfills Ryan's requirement?



Answer : C

The Local Security Authority Subsystem (LSASS) is the correct answer because it is responsible for enforcing the security policy on the system. It verifies users logging on to a Windows computer or server, handles password changes, and creates access tokens. LSASS also writes to the Windows Security Log, which is essential for auditing and compliance.Therefore, it fulfills Ryan's requirements for implementing local security policies, managing system security audit settings, user authentication, and sending security audit messages to the Event Log123.


Question 7

Which phase of vulnerability management deals with the actions taken for correcting the discovered vulnerability?



Answer : C

The phase of vulnerability management that deals with the actions taken for correcting the discovered vulnerability is known asRemediation. This phase involves the actual fixing or patching of the vulnerabilities to reduce the risk of exploitation. Remediation can include applying patches, making configuration changes, or implementing compensating controls. It is a critical step in the vulnerability management lifecycle, which ensures that the identified vulnerabilities are addressed to protect the network from potential attacks.


Page:    1 / 14   
Total 363 questions