Unit3 - Subjective Questions

INT242 • Practice Questions with Detailed Answers

1

Explain the concept of Zero Trust Architecture (ZTA) and list its core guiding principles.

2

Compare and contrast Full Backup, Incremental Backup, and Differential Backup in the context of redundancy strategies.

3

Discuss the Shared Responsibility Model in cloud computing. How do responsibilities shift between IaaS, PaaS, and SaaS?

4

What are Embedded Systems, and why do they pose unique security challenges compared to traditional IT assets?

5

Explain the concept of Micro-segmentation and its role in a Secure Cloud Network Architecture.

6

Differentiate between Vulnerability Scanning and Penetration Testing.

7

Why is Asset Management considered the prerequisite for effective Vulnerability Management?

8

Describe the CVSS (Common Vulnerability Scoring System) and its three metric groups.

9

Explain the four primary strategies for Vulnerability Remediation/Risk Treatment.

10

Describe SQL Injection (SQLi) and how it can be prevented in application development.

11

Compare Credentialed vs. Non-Credentialed vulnerability scans.

12

What is Physical Security in the context of Defense in Depth, and what are the layers of physical protection?

13

Explain the risks associated with Cloud Misconfigurations and provide two examples.

14

What is a Buffer Overflow vulnerability, and why is it dangerous?

15

Define High Availability (HA) vs. Fault Tolerance (FT).

16

Describe the differences between Hot, Warm, and Cold disaster recovery sites.

17

What is Containerization, and how does it differ from traditional Virtualization?

18

Explain the Vulnerability Management Lifecycle.

19

What are Cross-Site Scripting (XSS) vulnerabilities?

20

Discuss the importance of Redundancy in Network Architecture.