312-38 Exam Details

  • Exam Code
    :312-38
  • Exam Name
    :EC-Council Certified Network Defender (CND)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :653 Q&As
  • Last Updated
    :May 29, 2026

EC-COUNCIL 312-38 Online Questions & Answers

  • Question 331:

    Which of the following UTP cables is NOT suitable for data transmission or Ethernet data work usage?

    A. Category 6
    B. Category 1
    C. Category 4
    D. Category 5

  • Question 332:

    You are monitoring your network traffic with the Wireshark utility and noticed that your network is experiencing a large amount of traffic from a certain region. You suspect a DoS incident on the network. What will be your first reaction as a first responder?

    A. Avoid Fear, Uncertainty and Doubt
    B. Communicate the incident
    C. Make an initial assessment
    D. Disable Virus Protection

  • Question 333:

    A company wants to implement a data backup method that allows them to encrypt the data ensuring its security as well as access it at any time and from any location. What is the appropriate backup method that should be implemented?

    A. Cloud backup
    B. Offsite backup
    C. Hot site backup
    D. Onsite backup

  • Question 334:

    Which of the following sets of incident response practices is recommended by the CERT/CC?

    A. Prepare, notify, and follow up
    B. Notify, handle, and follow up
    C. Prepare, handle, and notify
    D. Prepare, handle, and follow up

  • Question 335:

    Fill in the blank with the appropriate term. A device is used for uniquely recognizing humans based upon one or more intrinsic physical or behavioral traits.

  • Question 336:

    Which type of training can create awareness among employees regarding compliance issues?

    A. Social engineering awareness training
    B. Security policy training
    C. Physical security awareness training
    D. Training on data classification

  • Question 337:

    Which of the following statements are true about volatile memory? Each correct answer represents a complete solution. Choose all that apply.

    A. The content is stored permanently and even the power supply is switched off.
    B. A volatile storage device is faster in reading and writing data.
    C. Read only memory (ROM) is an example of volatile memory.
    D. It is computer memory that requires power to maintain the stored information.

  • Question 338:

    Rosa is working as a network defender at Linda Systems. Recently, the company migrated from Windows to MacOS. Rosa wants to view the security related logs of her system, where con she find these logs?

    A. /private/var/log
    B. /var/log/cups/access-log
    C. /Library/Logs/Sync
    D. /Library/Logs

  • Question 339:

    Which scan attempt can penetrate through a router and a firewall that filter incoming packets with particular flags set and is not supported by Windows?

    A. ARP scan attempt
    B. TCP full connect scan attempt
    C. TCP null scan attempt
    D. PINC sweep attempt

  • Question 340:

    What is the name of the authority that verifies the certificate authority in digital certificates?

    A. Directory management system
    B. Certificate authority
    C. Registration authority
    D. Certificate Management system

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-38 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.