1509 Flashcards
Which 3D career field deploys, sustains, troubleshoots, and repairs wireless, line-of-sight, beyond line-of-sight, wideband and ground-based satellite and encryption transmission devices?
Radio Frequency Transmission Systems (3D1X3)
What is not a communications security program duty and responsibility for Cyber Transport Systems? A. Transmission security B. Technical security C. Emission security D. Physical security
Technical Security
What is defined as an integrated bundle of expert knowledge and organization skills inherent to a particular career field?
Core Competency
Which of the following is a core competency of Cyber Transport Systems? A. Fixed cable systems B. Voice Network systems C. Application software systems D. Client-server database systems
Voice network systems
Which AF form is used to report hazardous conditions that place Air Force personnel or property at risk?
AF Form 457
What is not one of the four major types of hazards? A. Biological B. Chemical C. Physical D. Nuclear
Nuclear
What hazard is caused by heavy workloads, lack of control over the pace of work, shift work, noise, working by yourself, and conflict with coworkers and employers?
Stress
To prevent manual handling hazards, utilize team lifting when lifting items that weigh more that how many pounds?
25
When working on electrical circuits, the role of safety observer is normally performed by the…
Supervisor
When working on electrical circuits, you may only wear metal framed eyeglasses if…
They are secured with a nonmetallic cord
To whom does the risk management (RM) process apply
All personnel
What simple, systematic process allows commanders to maximize combat capability, while limiting risk?
Risk Management
Which is a principle of Risk Management? A. Accept unnecessary risk B. Apply RM process continuously C. Train and adhere to safety guidelines D. Make risk decisions at the lowest level
Apply the RM process continuously
How many steps are in the risk management process?
5
An enclave that does not have a firewall and IDS is classified as having what category of vulnerability?
Category I
How many Integrated Network and Operation Security Centers (INOSCs) does the Air Force have?
Two
The Integrated Network and Operation Security Center (INOSC) has several responsibilities except…
A. Maintain sole administrative privileges on the firewall
B. Standardize, configure, backup, and otherwise maintain the firewall
C. Maintain a single naming/configuration standard for boundary devices
D. Install patches or perform any upgrades provided by the Air Force Enterprise Network (AFEN)
Standardize, configure, back up, and otherwise maintain the firewall
What term is used to describe the technology for transmitting voice communications over a data network using open-standard-based internet protocol?
IP Telephony
What security feature should you not implement to help defend IP telephony systems from attackers?
A. enabling ACLs on firewalls, routers, and switches
B. deploying protection from DHCP spoofing
C. consolidating your voice with your data using VLANs
D. enabling port security access to only allow the required devices needed by the client
consolidating your voice with your data using VLANs
At which OSI layer does a packet filter gateway operate at?
3 (Network)
At which OSI layer does a circuit layer gateway operate?
4 (Transport)
At which OSI layer does an application-level firewall operate?
7 (Application)
The disadvantage of a host-based intrusion detection system (HIDS) is that it…
A. can analyze any encrypted data if it is decrypted before reaching the target host
B. consumes resources on the host it resides on and slows that device down
C. monitors log files for inadvisable settings or passwords
D. monitors traffic on the host on which it is installed
Consumes resources on the host it resides on and slows that device down.
One advantage of a network-based intrusion detection system (NIDS) is that it... A. can decrypt data B. uses very few network resources C. Monitors logs for policy violations D. Can analyze encrypted network traffic
uses very few network resources
Which intrusion detection system uses software sensors?
Host-based
Which intrusion detection system monitors packets for protocol anomalies and known virus signatures?
Network-based
Host-based intrusion detection systems (HIDS) are... A. Active only B. Passive only C. Passive or active D. Neither passive nor active
Passive and active
Network-based intrusion detection systems (NIDS) are... A. Active only B. Passive only C. Passive or active D. Neither passive nor active
Passive only
What security posture permits everything that is not specifically denied?
Open
What type of certificate authenticates the identify of a user?
Digital
What is the first line of defense in securing laptops?
Set a login ID and password combination for access
The definition of integrity as applied to identification, authentication, and encryption is…
A. having information ready when needed
B. not being able to deny who performed network actions.
C. the protection of the network from those not authorized access.
D. the assurance that no one has changed or destroyed information without permission.
the assurance that no one has changed or destroyed information without permission
What Air Force Systems Security Instructions (AFSSI) series covers emission security (EMSEC)?
7000
Which AF System Security Instruction (AFSSI) provides the overall implementation of DOD’s TEMPEST program?
7700
Which method of containing radiated emanations requires both facility and equipment testing?
Zoning
A facility with and inspectable space of more than 20 meters but less than 100 meters would be considered to be in facility zone…
B
Equipment with an equipment radation TEMPEST zone (ERTZ) of 20 to 100 meters would be considered to be in equipment zone…
C
Why must the use of TEMPEST-certified equipment be validated by an AF Certified TEMPEST technical authority (CTTA) prior to testing an inspectable space?
It is expensive
What plays a major role in a conductor’s ability to minimizing compromising emanations?
Distance and angle
Equipment is comprised as machines that process information in electronic or electrical form. What equipment should be designated as RED?
Equipment processing clear-text classified information
What equipment should be designated as BLACK when designating equipment that supports physical and electrical concepts?
Equipment processing encrypted classified information
Which type of separation ensure that every signal conductor from a RED device routes to another RED device, or becomes encrypted before connecting to a BLACK device?
Electrical
What is the grounding resistance goal for military communications electronics (C-E) facilities?
10 ohms or less
What facility ground subsystem uses surge arrestors?
Lightning protection
What facility ground subsystem is also called the safety ground?
Fault protection
Which facility ground subsystem is also called the “signal ground” and controls electrical noise and static in a facility?
Signal reference