JK0-018 Exam Details

  • Exam Code
    :JK0-018
  • Exam Name
    :CompTIA Security+ E2C (2011 Edition)
  • Certification
    :CompTIA Security+
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 09, 2021

CompTIA JK0-018 Online Questions & Answers

  • Question 531:

    Human Resources (HR) would like executives to undergo only two specific security training programs a year. Which of the following provides the BEST level of security training for the executives? (Select TWO).

    A. Acceptable use of social media
    B. Data handling and disposal
    C. Zero day exploits and viruses
    D. Phishing threats and attacks
    E. Clean desk and BYOD
    F. Information security awareness

  • Question 532:

    Which of the following would allow the organization to divide a Class C IP address range into several ranges?

    A. DMZ
    B. Virtual LANs
    C. NAT
    D. Subnetting

  • Question 533:

    Corporate IM presents multiple concerns to enterprise IT. Which of the following concerns should Jane, the IT security manager, ensure are under control? (Select THREE).

    A. Authentication
    B. Data leakage
    C. Compliance
    D. Malware
    E. Non-repudiation
    F. Network loading

  • Question 534:

    Which of the following provides a static record of all certificates that are no longer valid?

    A. Private key
    B. Recovery agent
    C. CRLs
    D. CA

  • Question 535:

    A firewall technician has been instructed to disable all non-secure ports on a corporate firewall. The technician has blocked traffic on port 21, 69, 80, and 137-139. The technician has allowed traffic on ports 22 and 443. Which of the following correctly lists the protocols blocked and allowed?

    A. BlockeD. TFTP, HTTP, NetBIOS; AlloweD. HTTPS, FTP
    B. BlockeD. FTP, TFTP, HTTP, NetBIOS; AlloweD. SFTP, SSH, SCP, HTTPS
    C. BlockeD. SFTP, TFTP, HTTP, NetBIOS; AlloweD. SSH, SCP, HTTPS
    D. BlockeD. FTP, HTTP, HTTPS; AlloweD. SFTP, SSH, SCP, NetBIOS

  • Question 536:

    HOTSPOT

    For each of the given items, select the appropriate authentication category from the dropdown choices. Instructions: When you have completed the simulation, please select the Done button to submit.

    Hot Area:

  • Question 537:

    Which of the following is a security risk regarding the use of public P2P as a method of collaboration?

    A. Data integrity is susceptible to being compromised.
    B. Monitoring data changes induces a higher cost.
    C. Users are not responsible for data usage tracking.
    D. Limiting the amount of necessary space for data storage.

  • Question 538:

    An insurance company requires an account recovery process so that information created by an employee can be accessed after that employee is no longer with the firm. Which of the following is the BEST approach to implement this process?

    A. Employee is required to share their password with authorized staff prior to leaving the firm
    B. Passwords are stored in a reversible form so that they can be recovered when needed
    C. Authorized employees have the ability to reset passwords so that the data is accessible
    D. All employee data is exported and imported by the employee prior to them leaving the firm

  • Question 539:

    Which of the following BEST describes the weakness in WEP encryption?

    A. The initialization vector of WEP uses a crack-able RC4 encryption algorithm. Once enough packets are captured an XOR operation can be performed and the asymmetric keys can be derived.
    B. The WEP key is stored in plain text and split in portions across 224 packets of random data. Once enough packets are sniffed the IV portion of the packets can be removed leaving the plain text key.
    C. The WEP key has a weak MD4 hashing algorithm used. A simple rainbow table can be used to generate key possibilities due to MD4 collisions.
    D. The WEP key is stored with a very small pool of random numbers to make the cipher text. As the random numbers are often reused it becomes easy to derive the remaining WEP key.

  • Question 540:

    A security administrator needs a locally stored record to remove the certificates of a terminated employee. Which of the following describes a service that could meet these requirements?

    A. OCSP
    B. PKI
    C. CA
    D. CRL

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your JK0-018 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.