CREST Practitioner Security Analyst (CPSA) Certification Sample Questions

Practitioner Security Analyst Dumps, CPSA Dumps, CPSA PDF, Practitioner Security Analyst VCE, CREST CPSA VCE, CREST Practitioner Security Analyst PDFThe purpose of this Sample Question Set is to provide you with information about the CREST Practitioner Security Analyst exam. These sample questions will make you very familiar with both the type and the difficulty level of the questions on the CPSA certification test. To get familiar with real exam environment, we suggest you try our Sample CREST Practitioner Security Analyst Certification Practice Exam. This sample practice exam gives you the feeling of reality and is a clue to the questions asked in the actual CREST Practitioner Security Analyst (CPSA) certification exam.

These sample questions are simple and basic questions that represent likeness to the real CREST CPSA exam questions. To assess your readiness and performance with real time scenario based questions, we suggest you prepare with our Premium CREST Practitioner Security Analyst Certification Practice Exam. When you solve real time scenario based questions practically, you come across many difficulties that give you an opportunity to improve.

CREST CPSA Sample Questions:

01. What is a key security consideration in a three-tier web architecture (presentation, application, and database layers)?
a) Only the presentation layer requires access control
b) The application tier should validate all input before passing to the database
c) All tiers should use the same credentials
d) SSL is only necessary between users and the database
 
02. Which server-side language is commonly used in legacy web applications and is known for its simplicity and wide adoption?
a) HTML
b) JavaScript
c) CSS
d) PHP
 
03. Which of the following PowerShell commands would help in determining the local machine's patching status?
a) Select-SystemUpdates -Machine localhost
b) Get-SystemUpdates
c) Get-HotFix
d) Get-InstalledSoftware | Where-Object {$_.HotFixID -like 'KB*'}
 
04. Which file, when misconfigured, can allow passwordless login using RSH or RLOGIN?
a) .rhosts
b) /etc/hosts.deny
c) /etc/shadow
d) /etc/passwd
 
05. A well-configured Check Point firewall is running on your local network segment.
Which of the following types of probe is it most likely to respond to?
a) A ICMP Echo request
b) It will not respond to any type of probe
c) A TCP SYN packet to a management service port
d) An IKE probe to UDP port 500
e) An ARP 'who has' request
 
06. You review an Nmap scan and see port 80/tcp reported as open with the service name http-proxy.
What does this imply?
a) The web server is using port forwarding
b) The port is misconfigured and should be closed
c) A proxy service (such as Squid) is running on that port
d) SSL encryption is enforced on that port
 
07. Which of the following fields in an IPv4 header is used for packet fragmentation and reassembly?
a) Identification
b) Protocol
c) Time to Live (TTL)
d) Header Checksum
 
08. In which part of a web application is DOM-based XSS typically executed?
a) In the HTML meta tags
b) Within client-side JavaScript execution
c) In the server-side script
d) Inside CSS stylesheets
 
09. What HTTP response header can help mitigate XSS by instructing the browser not to execute scripts from unauthorised origins?
a) Content-Type
b) X-XSS-Protection
c) Referrer-Policy
d) Content-Security-Policy (CSP)
 
10. Which of the following techniques is most effective for discovering unlinked web content?
a) DNS zone transfer
b) Traceroute mapping
c) Directory brute-forcing with a wordlist
d) SSL certificate inspection

Answers:

Question: 01
Answer: b
Question: 02
Answer: d
Question: 03
Answer: c
Question: 04
Answer: a
Question: 05
Answer: e
Question: 06
Answer: c
Question: 07
Answer: a
Question: 08
Answer: b
Question: 09
Answer: d
Question: 10
Answer: c

Note: For any error in CREST Practitioner Security Analyst (CPSA) certification exam sample questions, please update us by writing an email on feedback@edusum.com.

Rating: 4.8 / 5 (114 votes)