An attacker alters the dollar amounts stored in a payroll database. Which element of the CIA triad is most directly violated?
Security+
COMPTIA_SY0_701Ready to test yourself?
A timed, blueprint-proportional exam drawn fresh from this bank โ with a per-domain score report.
๐ Free preview: showing 10 of 258 questions. Unlock the full bank โ every question, explanation, and reference.
Unlock all 258 questions โ10 questions across 5 topics. Choose an answer for each question, then check it to see the correct answer and explanation.
Filter by topic
10 questions in General Security Concepts
General Security Concepts
10 questions in topicSecurity controls, the CIA triad, zero trust, AAA, change management, and cryptography/PKI.
A locked server-room door that physically stops unauthorized entry is which category and type of control?
An organization can't patch a vulnerable legacy application, so it deploys strict application-layer firewall rules around it as an interim safeguard. This alternative safeguard is which control type?
In a Zero Trust architecture, which element is part of the control plane rather than the data plane?
Which authentication concept is satisfied by requiring a password (something you know) plus a hardware token (something you have)?
A file's SHA-256 digest is recomputed and compared to a known-good value to confirm the file was not modified. Which security goal does this support?
Two parties who have never met must establish a shared symmetric session key over an untrusted network without transmitting the key itself. Which technique enables this?
A company wants one certificate to secure www.example.com, mail.example.com, and vpn.example.com. Which certificate type is most appropriate?
Which mechanism lets a client verify in real time whether a single certificate has been revoked, avoiding the overhead of downloading a full list?
An application must protect signing keys so they can never be exported in plaintext, even by administrators. Which technology best meets this?