CyOFTS_II,_Section_L,_Attachment_3,_Pt_III.docx
DOCX document 21 KB Posted
- Attached to
- Solicitation Notice Federal contract opportunity
- Solicitation number
- FA8773-17-R-8005
About this file
Part III- Test Questions
View the file
Other files for this federal contract opportunity
Show all 50
Solicitation Notice has more files on GovTribe.
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
UNCLASSIFIED
C-1507L 39 IOS, 16 Jun 2016
Section L, Attachment 3 Cyber Defense and Control Operations (CDCO)
HURLBURT FIELD, FL 32544-5321
PART III – TEST QUESTIONS
Vulnerability Management
TTL REF: CSCS E02, CSCS E02A, CSCS E02A.2, ACD A02E, ACD A02E1
Lesson Objective: LO1 Comprehend the process of conducting Vulnerability Management (VM) (Proficiency Level: B)
Test Question MSB 1.1: What is the purpose of conducting vulnerability assessments?
a. Improve the security posture of the Air Force Information Network (AFIN)
b. Degrade the security posture of the Air Force Information Network (AFIN)
c. Patch network systems to current Standard Desktop Configuration (SDC)
d. Patch network systems to current DISA gold standard
Key: a (Reference: Module 4-Student Guide, Page 6, Paragraph 3)
Test Question MSB 1.2: Which one of the following procedures is NOT used to complete a vulnerability assessment?
a. Fix faults in software affecting security, performance, or functionality
b. Change a software configuration to make it less susceptible to attack
c. Use most effective means to thwart attacks by automated malware
d. Two-person integrity to verify patch installation
Key: d (Reference: Module 4-Student Guide, Page 6, Paragraph 4)
Lesson Objective: LO2 Comprehend the vulnerability assessment process conducted by AF assets (Proficiency Level: B)
Test Question MSB 2.1: Which one of the following organizations does NOT resolve vulnerability scans?
a. Cyber Security & Control System (CSCS)
b. Air Force Cyberspace Defense (ACD)
c. Air Force Intranet Control (AFINC)
d. Cyber Command and Control Mission System (C3MS)
Key: d (Reference: Module 4-Student Guide, Pages 11-12)
Test Question MSB 2.2: What tool is used to perform vulnerability scans on public facing web servers?
a. Acunetix
b. Security Center
c. Nessus
d. McAfee Anti-Virus
Key: a (Reference: Module 4-Student Guide, Page 12, Paragraph 4)
UNCLASSIFIED
File details come from the government source that posted it. Updated .