- "Do I Know This Already?" Quiz
- Foundation Topics
- Exam Preparation Tasks
Exam Preparation Tasks
As mentioned in the section “Strategies for Exam Preparation” in the Introduction, you have a couple choices for exam preparation: the exercises here, Chapter 15, “Final Preparation,” and the practice exams in the Pearson IT Certification test engine.
Review All Key Topics
Review the most important topics in this chapter, noted with the Key Topics icon in the outer margin of the page. Table 4-2 lists these key topics and the page number on which each is found.
Table 4-2 Key Topics in Chapter 4
Key Topic Element |
Description |
Page Number |
Step List |
Steps in a penetration test |
99 |
List |
Strategies for pen testing |
99 |
List |
Pen test categories |
99 |
List |
Rules of engagement |
100 |
List |
Security teams |
105 |
Figure 4-2 |
Risk assessment matrix |
107 |
Define Key Terms
Define the following key terms from this chapter and check your answers against the glossary:
penetration testing
blind test
double-blind test
target test
zero-knowledge test
partial-knowledge test
full-knowledge test
rules of engagement
reverse engineering
isolation
sandboxing
sheep dip computer
imaging tools
file/data analysis tools
registry/configuration tools
sandbox tools
log analyzers
network capture tools
Trusted Foundry
fingerprinting/hashing
decomposition
Red team
Blue team
White team
risk evaluation
risk assessment matrix
technical control review
operational control review
Review Questions
Which of following attempts to exploit vulnerabilities?
Vulnerability test
Pen test
Risk assessment
Port scan
Which of the following is the third step in a pen test?
Analysis and reporting
Vulnerability detection
Penetration attempt
Cleaning up
In which type of test are both the testing team and the organization’s security team given maximum information about the network and the type of test that will occur?
Blind test
Double-blind test
Target test
External test
In which of the following is the testing team provided with public knowledge regarding the organization’s network?
Zero-knowledge test
Partial-knowledge test
Full-knowledge test
Target test
Which of the following rules of engagement includes a list of all devices that are included in the test as well as a description of all testing methodologies to be used?
Timing
Scope
Authorization
Exploitation
Which of the following practices places malware where it is safe to probe it and play with it?
Sandboxing
Compartmentalizing
Boundary enforcement
File locks
Which of the following is a system that has been isolated from other systems and is used for analyzing suspect files and messages for malware?
Sheep dip computer
Virtual machine
Sandbox
Honeypot
Which of the following is a good example of exercising care in ensuring the authenticity and integrity of the components of hardware purchased from a vendor?
Trusted Foundry program
Fingerprinting
Hashing
Decomposition
Which of the following is the process of taking a large document or file and, with the use of a hashing algorithm, reducing the file to a character string that can be used to verify the integrity of the file?
Hashing
Decomposing
Sandboxing
Reverse engineering
Which of the following helps prioritize the application of resources to the most critical vulnerabilities?
Access control matrix
Risk assessment matrix
PERT chart
Gantt chart
