Browse all practice questions for the SV Cyber Security Certification Practice Exam. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Ace the SV Cyber Security Certification 2026 – Protect the Future with Your Skills! course image
All questions

These questions are part of the practice quiz. Start practicing

  • Which of the following is a secret numeric password used for authentication?
  • What key component is essential for encryption and decryption?
  • Which of the following is NOT a function of the CISO?
  • What type of attacks can a botnet facilitate?
  • What type of attack attempts to guess passwords by trying every possible combination of characters?
  • What does the concept of 'cyber hygiene' entail?
  • What does risk management involve in cybersecurity?
  • What does 'ransomware' do?
  • What is the purpose of a cybersecurity incident response plan?
  • Which of the following best describes a botnet?
  • What is the main risk associated with phishing attacks?
  • Which of the following best describes "phishing"?
  • On which OSI layer do TCP and UDP protocols function?
  • What Microsoft technology verifies that a client has the latest Windows updates and an updated antivirus before granting network access?
  • What does a highly secure system typically require?
  • How is an adversary defined in cybersecurity?
  • Which of the following is NOT a benefit of implementing a firewall?
  • What does DNS spoofing involve?
  • Which is a characteristic feature of a Denial of Service (DoS) attack?
  • What term refers to the scope that a hacker can exploit to break into a system?
  • What does the term "malware" refer to?
  • What type of devices poses a significant challenge to security professionals in recent years?
  • Which of the following is a disadvantage of using PAP authentication?
  • Which of the following ensures that data is not changed when it is not supposed to be?
  • What is the primary purpose of authentication in security?
  • What is the aim of penetration testing?
  • What is identity theft?
  • What is a spear phishing attack?
  • What is the primary purpose of a vulnerability assessment?
  • Which statement best describes the function of a proxy server?
  • What do you call the process in which a user is identified via a username and password?
  • What process is used to verify that an administrator is not accessing data that they should not be accessing?
  • What is meant by the term "network security"?
  • What is the fundamental aim of penetration testing?
  • What does a VPN primarily provide for remote users?
  • What process prevents someone from denying that she accessed a resource?
  • What is the purpose of a security audit?
  • What does the term "vulnerability assessment" refer to in cybersecurity?
  • Why is data backup important in cybersecurity?
  • Which of the following best describes the nature of endpoint security?
  • Which type of software is used to monitor usernames and passwords transmitted over a network?
  • Which type of routing protocol transmits the entire routing table to neighboring routers?
  • What authentication type is the default for active directory?
  • What is often considered the first line of defense when setting up a network?
  • When assigning access permissions to a folder, which should be granted first?
  • What are "security patches"?
  • What is the purpose of multi-factor authentication (MFA)?
  • In risk management, what does risk transfer involve?
  • When granting access to print to a printer, what is being granted?
  • Which type of group is capable of being granted rights and permissions in Windows?
  • What type of server is responsible for managing Active Directory?
  • Which of the following servers would you not place on the DMZ?
  • What is a "firewall" used for?
  • What is an "intrusion detection system" (IDS)?
  • What is patch management?
  • What is "penetration testing"?
  • What does patch management involve?
  • What is the main purpose of authentication in cybersecurity?
  • What does "DDoS" stand for?
  • What is a data breach?
  • What is the primary goal of cyber security?
  • What is a common technique employed in social engineering attacks?
  • Which of the following is a common method for securing data in transit?
  • What is the purpose of access control?
  • What does a security audit evaluate?
  • Define 'zero-day exploit'.
  • What is a botnet?
  • Which type of accounts are generally exempt from password expiration policies?
  • What does "SSL" stand for?
  • What type of authentication method identifies and recognizes people based on physical traits such as fingerprints?
  • Which statement accurately defines 'endpoint security'?
  • What is the primary role of user authentication in network security?
  • What is a common outcome of a data breach?
  • What does the CIA triad stand for in cyber security?
  • If you have multiple web servers that need to interact with a SQL server, where should the SQL server be located?
  • In the context of cybersecurity, what does "availability" refer to?
  • What is a threat vector?
  • Which authentication method transmits the username and password in plain text?
  • What mechanism is used to ensure that a sender cannot deny sending a message?
  • Which type of firewall filters packets based on IP address and port numbers?
  • What is the primary goal of cybersecurity?
  • What item, about the size of a credit card, allows access to a network and its resources?
  • What main purpose does the OSI layer 2 serve in networking?
  • How many firewalls are typically required to set up a sandwich DMZ?
  • Which type of software is specifically created to disrupt system functionality?
  • What is a "botnet"?
  • What is the function of an encryption key?
  • What is the main function of an antivirus program?
  • How is "ransomware" characterized?
  • What is the purpose of using encryption in data transmission?
  • What is the process of giving individual access to a system or resource?
  • What type of server primarily focuses on file storage and access for users?
  • Which method used by hackers relies on the trusting nature of the person being attacked?
  • What does "social engineering" primarily exploit?
  • What does effective cloud security include?
  • Which concept determines what resources users can access after they log on?
  • Which type of attack is characterized by intercepting communications to extract sensitive information?
  • What is the function of endpoint security?
  • What type of attack does a VPN primarily protect against?
  • What does an 'SSL certificate' provide for a website?
  • What technology is often used to implement confidentiality?
  • Define a "zero-day exploit."
  • What is a "keylogger"?
  • Which setting prevents users from reusing previous passwords?
  • What is the process of identifying an individual for secure access?
  • What is another name for an application-level firewall?
  • Describe "network segmentation."
  • How do conventional firewalls primarily protect a network?
  • What area acts as a buffer zone between the internet and an internal network, often housing public-facing servers?
  • Which of the following best describes a honeypot's purpose?
  • What type of password guessing attack uses common words?
  • What is meant by a 'confidentiality breach'?
  • What does compliance in cybersecurity entail?
  • Which of the following is true about two-factor authentication (2FA)?
  • Which component is often used in biometric authentication systems?
  • Where are local user accounts stored on a computer running Windows 7?
  • What port does the LDAP protocol commonly use?
  • How does a firewall enhance network security?
  • What does tokenization achieve in data security?
  • What is a cybersecurity framework?
  • What are security patches used for in cybersecurity?
  • What is the purpose of a "penetration test"?
  • What is the primary function of a firewall in network security?
  • What is the recommended group to assign permissions for a shared folder?
  • What is the primary function of a "VPN"?
  • Which IPSec protocol provides integrity protection for packet headers, data, and user authentication but does not encrypt?
  • What is the concept of social engineering in cybersecurity?
  • What type of permissions are applied directly to files or folders?
  • What is the process of keeping track of a user's activity?
  • What characterizes a malicious insider threat?
  • What is the primary purpose of using protocols like AH and ESP in network security?
  • Which of the following is a common type of malware that encrypts a user’s files?
  • What directory service is used with Windows domain?
  • What function does encryption serve in data security?
  • What type of electronic document contains a public key?
  • How is malware defined in the context of computer systems?
  • What does a risk assessment help an organization identify?
  • Which of the following is NOT a characteristic of packet-filtering firewalls?
  • What is considered the best way to protect against social engineering attacks?
  • In the context of cybersecurity, what does the term 'threat' refer to?
  • Which strategy is used to provide protection when one line of defense is breached?
  • What is the purpose of 'data loss prevention' (DLP) technologies?
  • Which type of authentication would you use for a highly sensitive transaction?
  • What type of attack is characterized by personalized messages targeting specific individuals?
  • Which of the following terms indicates that information is to be read only by those people for whom it is intended?
  • Which of the following is not a typical response when dealing with a risk?
  • What is the main difference between symmetrical and asymmetrical encryption?
  • Which component is essential for establishing an IPSec connection?
  • What characterizes a DDoS attack?
  • What does the "principle of least privilege" refer to in cyber security?
  • What kind of approach does security awareness training utilize?
  • What does the term 'audit trail' refer to in the context of cybersecurity?
  • What is the primary purpose of a domain controller in a Windows network?
  • What is the purpose of SSL/TLS?
  • What is a security policy?
  • What does virtualization security focus on?
  • What is a key factor in ensuring network security?
  • Which setting forces users to change their password at regular intervals?
  • What is the key role of transport layer protocols like TCP?
  • What does phishing refer to in cybersecurity?
  • Which of the following is a feature of two-factor authentication?
  • What setting is designed to prevent users from changing their password multiple times in a row?
  • Which model is commonly referenced to describe networking technologies?
  • Which type of firewall analyzes previous conversations to decide if a packet should be allowed into a network?
  • Which device is defined as a physical or logical device used to capture keystrokes?
  • What does two-factor authentication (2FA) require from users?
  • What is the primary responsibility of a Chief Information Security Officer (CISO)?
  • Which layer do hubs operate at in the OSI model?
  • What is the focus of incident response?
  • What does security awareness training primarily aim to achieve?
  • What aspect of the CIA triad does integrity represent?
  • What does encryption achieve?
  • What does 'cloud security' encompass?
  • What differentiates "symmetrical" from "asymmetrical" encryption?
  • Which OSI layer is primarily utilized by switches and bridges?
  • What type of server is used specifically to lure and trap a hacker?
  • What is a vulnerability in cybersecurity?
  • What is "malware as a service" (MaaS)?
  • Which of the following does data loss prevention (DLP) aim to protect?
  • What is a common use of a security token?
  • How is risk defined in the context of cybersecurity?
  • What is a honeypot in the field of cybersecurity?
  • Which layer of the OSI model is responsible for session management?
  • What is the primary function of a firewall in network security?
  • What technology allows a user at home to connect to the corporate network securely?
  • At which layer of the OSI model do routers operate?
  • What type of devices can be easily lost or stolen and may be used for espionage?
  • What is a malicious insider in the context of cybersecurity?
  • Which security principle involves restricting access to sensitive data on a need-to-know basis?
  • A process where security patches are routinely applied to systems is known as what?
  • Name one framework used for managing cyber security risks.
  • What type of malicious software captures keystrokes and sends them to a hacker?
  • What does the acronym "SIEM" stand for?
  • What setting is used to lock an account after a specified number of incorrect logon attempts?
  • What does the principle of 'least privilege' entail in cybersecurity?
  • What is the generally accepted minimum length for a secure password?
  • What is the process of transforming data into a format unreadable by unauthorized users called?
  • Define "data breach."
  • What is the main goal of patch management?
  • What does social media security involve?
  • Where are users and permissions for an NTFS folder stored?
  • What is the primary function of a Security Information and Event Management (SIEM) system?
  • What are the three main components of the CIA triad in cybersecurity?
  • Define "threat intelligence."
  • Which of the following is a primary objective of cybersecurity measures?
  • What is the primary purpose of network segmentation?
  • What does an intrusion detection system (IDS) primarily monitor?
  • What does "two-factor authentication" (2FA) provide?
  • What does 'SQL injection' involve?
  • What is likely the most important factor in implementing a security policy?
  • What is "risk assessment" in cyber security?
  • Which security measure is typically a response to insider threats?
  • What is 'exfiltration' in cybersecurity?
  • What is the security discipline that ensures a user is given no more privilege than necessary to perform their job?
  • What does cloud security protect?
  • What term describes the authorization a user needs to perform actions like logging in or backing up in Windows?
  • What is a primary objective of conducting a vulnerability assessment?
  • What technology is used to isolate a group of servers to prevent them from interacting with others?
  • What does ISO 27001 represent in the context of cybersecurity?
  • How is a 'security policy' best described?
  • In cybersecurity, what does the term incident response refer to?
  • Which practice should users avoid when managing their passwords?
  • What is biometric authentication used for?
  • What does the NIST Cybersecurity Framework primarily help organizations with?
  • Which aspect is essential in social media security?
  • What system detects unauthorized access and takes measures to prevent it?
  • What is the primary goal of conducting a vulnerability assessment?
  • What port number is associated with the SMTP protocol?
  • Which type of device forwards packets based on their destination IP address?
  • What is the primary goal of data loss prevention (DLP)?
  • Which practice enhances security through user verification methods?
  • What is included in 'malware analysis'?
  • What is meant by a network protocol?
  • What is one common type of social engineering attack?
  • Which framework focuses on guiding organizations in managing cybersecurity risks?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy