Cybersecurity & Risk Flashcards
7 cards from real CTE practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Cybersecurity & Risk flashcards as text
A telecommunications carrier discovers that a BGP route hijacking attack has redirected customer traffic through a malicious autonomous system. What is the MOST effective technical countermeasure?
Answer: Implement RPKI (Resource Public Key Infrastructure) to validate BGP route origins
RPKI cryptographically validates BGP route origin announcements, preventing illegitimate ASes from hijacking IP prefixes.
Under the NIST Cybersecurity Framework, which function encompasses activities to identify the occurrence of a cybersecurity event in a telecom network?
Answer: Detect
The 'Detect' function includes continuous monitoring, anomaly detection, and security event identification processes.
A CTE executive must assess the risk of a DDoS attack against the company's SS7 signaling infrastructure. Which risk formula is most commonly applied?
Answer: Risk = Likelihood × Impact
The standard risk formula multiplies the likelihood of a threat occurring by the potential impact it would cause.
Which SS7 attack allows an adversary to intercept SMS-based two-factor authentication codes sent to telecom subscribers?
Answer: SS7 MAP SRI-SM interception
SS7 MAP Send Routing Info for Short Message (SRI-SM) queries allow attackers to redirect SMS messages to a controlled endpoint.
A telecom company implements network segmentation to isolate its OSS/BSS systems from the core network. This is an example of which security principle?
Answer: Defense in depth
Defense in depth uses multiple layered security controls so that failure of one layer does not compromise the entire system.
Which regulatory framework specifically requires US telecommunications carriers to implement lawful intercept capabilities and maintain network security standards?
Answer: CALEA
CALEA (Communications Assistance for Law Enforcement Act) mandates that telecom carriers build in lawful intercept capabilities for authorized law enforcement.
During a security audit, an examiner finds that network engineers share a single privileged account for router configuration. Which control would BEST remediate this risk?
Answer: Implement TACACS+ with individual user accounts and command authorization
TACACS+ provides per-user authentication, granular command authorization, and full accounting/audit trails for privileged network access.