ALISON Diploma in Information Technology Support and Security — Questions and Answers
Question 1: What US law governs the interception of electronic communications and is relevant to digital forensics investigations?
- Electronic Communications Privacy Act (ECPA) (Correct answer)
- Health Insurance Portability and Accountability Act (HIPAA)
- Computer Fraud and Abuse Act (CFAA)
- Sarbanes-Oxley Act (SOX)
Correct answer: Electronic Communications Privacy Act (ECPA)
The ECPA sets legal standards for accessing stored electronic communications and monitoring digital transmissions, directly governing how forensic evidence is collected.
Question 2: What is a DMZ (Demilitarized Zone) in network architecture?
- A restricted area where damaged equipment is stored
- A network segment between internal and external networks that hosts public-facing services (Correct answer)
- A backup data center in a remote location
- A meeting room for discussing network security
Correct answer: A network segment between internal and external networks that hosts public-facing services
A DMZ is a network segment that sits between the internal network and external networks, hosting public-facing services while protecting the internal network from direct exposure.
Question 3: What is the recommended approach to staying current in Database Management & Security?
- Regular professional development, industry publications, and peer collaboration (Correct answer)
- Reviewing initial training materials once per year
- Waiting for regulatory changes to force updates
- Relying solely on past experience
Correct answer: Regular professional development, industry publications, and peer collaboration
Staying current in Database Management & Security requires ongoing professional development, reading industry publications, and collaborating with peers to share knowledge and best practices.
Question 4: What is 'steganography' and why is it relevant to digital forensics?
- Hiding data within ordinary-looking files like images to conceal communications or exfiltrate data (Correct answer)
- A type of malware that hides in system firmware
- A technique for encrypting network traffic to avoid detection
- A method for bypassing file system access controls
Correct answer: Hiding data within ordinary-looking files like images to conceal communications or exfiltrate data
Steganography conceals data inside carrier files, and forensic investigators must detect and extract hidden content during investigations.
Question 5: What is the relationship between Cloud Computing & Virtualization and ethical professional conduct?
- Ethical considerations are integrated into all aspects of professional practice in this area (Correct answer)
- Ethics applies only to separate, unrelated decisions
- Ethics is relevant only when legal issues arise
- There is no connection between technical knowledge and ethics
Correct answer: Ethical considerations are integrated into all aspects of professional practice in this area
Ethical considerations are deeply integrated into Cloud Computing & Virtualization, as professional conduct and integrity underpin all aspects of practice in this field.
Question 6: Which best describes the scope of Cloud Computing & Virtualization in professional practice?
- A theoretical framework with no practical applications
- A narrow topic relevant only to entry-level professionals
- An outdated concept no longer relevant to modern practice
- A comprehensive area covering both theoretical foundations and practical applications (Correct answer)
Correct answer: A comprehensive area covering both theoretical foundations and practical applications
Cloud Computing & Virtualization encompasses both theoretical foundations and practical applications that are essential to professional practice in this field.
Question 7: Which approach to compliance is considered most effective?
- A reactive approach that addresses issues only after violations
- A proactive approach that integrates compliance into daily operations (Correct answer)
- Focusing compliance efforts only on areas that have been cited previously
- Hiring a consultant once a year for a brief review
Correct answer: A proactive approach that integrates compliance into daily operations
A proactive compliance approach that integrates regulatory requirements into daily operations is most effective at preventing violations and maintaining standards.
Question 8: What is the most important competency assessed in Database Management & Security for professionals in this field?
- Years of experience without demonstrated skill
- Academic credentials without practical application
- Memorization of textbook definitions only
- Applied knowledge and practical problem-solving ability (Correct answer)
Correct answer: Applied knowledge and practical problem-solving ability
Database Management & Security assessment focuses on applied knowledge and practical problem-solving ability, ensuring professionals can effectively perform in real-world situations.
Question 9: What is the relationship between Access Control & Identity Management and ethical professional conduct?
- There is no connection between technical knowledge and ethics
- Ethics applies only to separate, unrelated decisions
- Ethical considerations are integrated into all aspects of professional practice in this area (Correct answer)
- Ethics is relevant only when legal issues arise
Correct answer: Ethical considerations are integrated into all aspects of professional practice in this area
Ethical considerations are deeply integrated into Access Control & Identity Management, as professional conduct and integrity underpin all aspects of practice in this field.
Question 10: What common challenge do professionals face when applying Cloud Computing & Virtualization principles?
- The principles are too simple to present any challenge
- Balancing theoretical best practices with practical constraints and real-world conditions (Correct answer)
- Obtaining permission to use the principles
- Finding the relevant textbook chapter
Correct answer: Balancing theoretical best practices with practical constraints and real-world conditions
Professionals commonly face the challenge of adapting theoretical best practices in Cloud Computing & Virtualization to the practical constraints and varying conditions encountered in real-world settings.
Question 11: How does Threat Detection & Incident Response contribute to overall professional effectiveness?
- It provides essential knowledge and skills that directly impact quality of work and outcomes (Correct answer)
- It is relevant only during the certification examination
- It applies only to supervisory-level professionals
- It serves only as a credential requirement with no practical impact
Correct answer: It provides essential knowledge and skills that directly impact quality of work and outcomes
Threat Detection & Incident Response directly contributes to professional effectiveness by providing essential knowledge and skills that improve the quality of work and outcomes across all career levels.
Question 12: What is the recommended approach to staying current in Cloud Computing & Virtualization?
- Relying solely on past experience
- Reviewing initial training materials once per year
- Regular professional development, industry publications, and peer collaboration (Correct answer)
- Waiting for regulatory changes to force updates
Correct answer: Regular professional development, industry publications, and peer collaboration
Staying current in Cloud Computing & Virtualization requires ongoing professional development, reading industry publications, and collaborating with peers to share knowledge and best practices.
Question 13: What is the primary purpose of industry regulations in this field?
- To generate revenue for regulatory bodies
- To protect the public and ensure consistent professional standards (Correct answer)
- To create barriers to entry for new professionals
- To limit competition in the marketplace
Correct answer: To protect the public and ensure consistent professional standards
Industry regulations are primarily designed to protect the public by ensuring professionals meet consistent standards of competence and conduct.
Question 14: What is the recommended approach to staying current in Threat Detection & Incident Response?
- Regular professional development, industry publications, and peer collaboration (Correct answer)
- Waiting for regulatory changes to force updates
- Reviewing initial training materials once per year
- Relying solely on past experience
Correct answer: Regular professional development, industry publications, and peer collaboration
Staying current in Threat Detection & Incident Response requires ongoing professional development, reading industry publications, and collaborating with peers to share knowledge and best practices.
Question 15: What is the purpose of intrusion detection systems (IDS)?
- To manage network IP addresses
- To prevent all unauthorized access automatically
- To speed up network performance
- To monitor network traffic for suspicious activity and known threats (Correct answer)
Correct answer: To monitor network traffic for suspicious activity and known threats
IDS monitors network traffic for suspicious activity, known attack patterns, and policy violations, alerting administrators to potential security threats.
Question 16: What is 'anti-forensics' and what challenge does it present to investigators?
- Techniques used by attackers to destroy, hide, or alter digital evidence to impede investigations (Correct answer)
- Encryption tools used to protect forensic images
- Legal restrictions preventing forensic analysis without a warrant
- Software that speeds up forensic analysis
Correct answer: Techniques used by attackers to destroy, hide, or alter digital evidence to impede investigations
Anti-forensics includes wiping tools, timestamp manipulation, and encryption to make evidence collection harder or impossible for investigators.
Question 17: How often should compliance procedures be reviewed and updated?
- Only when an audit is scheduled
- Regularly, and whenever regulations change or new risks are identified (Correct answer)
- Every ten years regardless of changes
- Once at initial certification and never again
Correct answer: Regularly, and whenever regulations change or new risks are identified
Compliance procedures should be reviewed regularly and updated whenever regulations change, new risks emerge, or organizational changes occur.
Question 18: What does a VPN provide in terms of network security?
- Faster internet connection speeds
- Encrypted communication tunnels over public networks (Correct answer)
- Automatic virus removal
- Free internet access worldwide
Correct answer: Encrypted communication tunnels over public networks
A VPN (Virtual Private Network) creates encrypted communication tunnels over public networks, protecting data confidentiality during transmission.
Question 19: What is the principle of least privilege in network security?
- All users should have administrator access for convenience
- Access permissions should be updated annually
- New users should receive the same access as their managers
- Users should have only the minimum access needed to perform their job functions (Correct answer)
Correct answer: Users should have only the minimum access needed to perform their job functions
The principle of least privilege restricts user access to only the resources and permissions necessary for their specific job functions, minimizing potential damage from compromised accounts.
Question 20: What is the consequence of non-compliance with mandatory regulations?
- Automatic extension of compliance deadline
- Reduced insurance premiums
- A verbal warning with no further consequences
- Penalties including fines, license revocation, and potential legal action (Correct answer)
Correct answer: Penalties including fines, license revocation, and potential legal action
Non-compliance with mandatory regulations can result in serious consequences including financial penalties, loss of licensure, and legal proceedings.
Question 21: What common challenge do professionals face when applying Database Management & Security principles?
- Finding the relevant textbook chapter
- The principles are too simple to present any challenge
- Balancing theoretical best practices with practical constraints and real-world conditions (Correct answer)
- Obtaining permission to use the principles
Correct answer: Balancing theoretical best practices with practical constraints and real-world conditions
Professionals commonly face the challenge of adapting theoretical best practices in Database Management & Security to the practical constraints and varying conditions encountered in real-world settings.
Question 22: What is the relationship between Database Management & Security and ethical professional conduct?
- There is no connection between technical knowledge and ethics
- Ethics applies only to separate, unrelated decisions
- Ethics is relevant only when legal issues arise
- Ethical considerations are integrated into all aspects of professional practice in this area (Correct answer)
Correct answer: Ethical considerations are integrated into all aspects of professional practice in this area
Ethical considerations are deeply integrated into Database Management & Security, as professional conduct and integrity underpin all aspects of practice in this field.
Question 23: What is network segmentation and why is it important?
- Dividing a network into smaller segments to contain breaches and control access (Correct answer)
- Increasing the number of network devices
- Upgrading all network cables simultaneously
- Removing old network equipment
Correct answer: Dividing a network into smaller segments to contain breaches and control access
Network segmentation divides a network into isolated segments, limiting the spread of security breaches and providing granular access control.
Question 24: Which best describes the scope of Database Management & Security in professional practice?
- A comprehensive area covering both theoretical foundations and practical applications (Correct answer)
- An outdated concept no longer relevant to modern practice
- A narrow topic relevant only to entry-level professionals
- A theoretical framework with no practical applications
Correct answer: A comprehensive area covering both theoretical foundations and practical applications
Database Management & Security encompasses both theoretical foundations and practical applications that are essential to professional practice in this field.
Question 25: What does 'quid pro quo' mean as a social engineering tactic?
- Offering a service or benefit in exchange for information or access (Correct answer)
- Impersonating a vendor during a physical visit
- Sending fake invoices to financial departments
- Monitoring network traffic for sensitive data
Correct answer: Offering a service or benefit in exchange for information or access
In quid pro quo attacks, the attacker offers something valuable (like IT help) in exchange for the victim providing credentials or access.
Question 26: How does Cloud Computing & Virtualization contribute to overall professional effectiveness?
- It provides essential knowledge and skills that directly impact quality of work and outcomes (Correct answer)
- It is relevant only during the certification examination
- It applies only to supervisory-level professionals
- It serves only as a credential requirement with no practical impact
Correct answer: It provides essential knowledge and skills that directly impact quality of work and outcomes
Cloud Computing & Virtualization directly contributes to professional effectiveness by providing essential knowledge and skills that improve the quality of work and outcomes across all career levels.
Question 27: What encryption algorithm does WPA2 use to secure wireless communications?
- RC4
- AES with CCMP (Correct answer)
- DES
- 3DES
Correct answer: AES with CCMP
WPA2 uses AES (Advanced Encryption Standard) with CCMP (Counter Mode CBC-MAC Protocol), providing much stronger security than WEP's RC4.
Question 28: What is the purpose of the Windows Registry in a forensic investigation?
- It records system configuration, user activity, and installed software that can reveal attacker behavior (Correct answer)
- It contains all email messages sent and received on the system
- It stores temporary internet files and browser cache
- It stores encrypted copies of all user passwords
Correct answer: It records system configuration, user activity, and installed software that can reveal attacker behavior
The Windows Registry contains keys tracking program execution, USB connections, recently accessed files, and persistence mechanisms used by malware.
Question 29: What is the correct order of volatility in digital evidence collection?
- RAM → Disk → CPU registers → Network
- Network → Disk → RAM → CPU registers
- Disk → RAM → Network → CPU registers
- CPU registers → RAM → Network → Disk (Correct answer)
Correct answer: CPU registers → RAM → Network → Disk
Evidence should be collected from most volatile (CPU registers, cache) to least volatile (disk) to preserve the most transient data first.
Question 30: What is the role of documentation in regulatory compliance?
- It provides verifiable evidence that standards are being met (Correct answer)
- It serves no practical purpose beyond record-keeping
- It is optional if verbal confirmation is available
- It is only necessary for international operations
Correct answer: It provides verifiable evidence that standards are being met
Documentation provides verifiable evidence that regulatory requirements are being met and creates an audit trail for compliance verification.
ALISON Diploma in Information Technology Support and Security
ALISON's free online Diploma covering IT support and security topics including cloud computing, network security, operating systems, database management, digital forensics, and security compliance through modular assessments on the Alison.com platform.
Exam Rules
- You can skip questions and return to them later
- Flag questions for review before submitting
- No feedback shown until you submit the entire exam
- Unanswered questions count as wrong — answer everything
- 10 pretest questions are mixed in and don't affect your score
- Timer auto-submits when time runs out
- Your progress is auto-saved every 30 seconds