EXAM QUESTIONS AND CORRECT ANSWERS / WGU
C702 EXAM 300 EXAM QUESTIONS AND ANSWERS |
VERIFIED ANSWERS||BRAND NEW VERSION!!
Identify the following which was launched by the National Institute of
Standards and Technology (NIST), that establishes a "methodology for
testing computer
forensics software tools by development of general tool specifications, test
procedures, test criteria, test sets, and test hardware."
ANSWERS: Computer Forensic Tool Testing Project (CFTTP)
Which of the following is NOT a digital data storage type?
ANSWERS: Quantum storage devices.
Cybercrimes can be classified into the following two types of attacks,
based on the line of attack.
ANSWERS: Internal and External.
,Espionage, theft of intellectual property, manipulation of records, and trojan
horse attacks are examples of what?
ANSWERS: Insider attack or primary attacks.
External attacks occur when there are inadequate information-security
policies and procedures.
ANSWERS: True.
Which type of cases involve disputes between two parties?
ANSWERS: Civil.
A computer forensic examiner can investigate any crime as long as he or she
takes detailed notes and follows the appropriate processes.
ANSWERS: False.
_ ____ is the standard investigative model used by the FBI when conducting
investigations against major criminal organizations.
ANSWERS: Enterprise Theory of Investigation (ETI).
Forensic readiness includes technical and nontechnical actions that maximize
an organization's competence to use digital evidence.
ANSWERS: True.
, Which of the following is the process of developing a strategy to address
the occurrence of any security breach in the system or network?
ANSWERS: Incident Response.
Digital devices store data about session such as user and type of connection.
ANSWERS: True.
Codes of ethics are the principles stated to describe the expected
behavior of an investigator while handling a case. Which of the following
is NOT a principle that a computer forensic investigator must follow?
ANSWERS: Provide personal or prejudiced opinions.
What must an investigator do in order to offer a good report to a court of
law and ease the prosecution?
ANSWERS: Preserve the evidence.
What is the role of an expert witness?
ANSWERS: To educate the public and court.
Which of the following is NOT a legitimate authorizer of a search warrant?
ANSWERS:
First Responder.
, Under which of the following circumstances has a court of law allowed
investigators to perform searches without a warrant?
ANSWERS: Delay in obtaining a warrant may lead to the destruction of
evidence and hamper the investigation process.
Which of the following should be considered before planning and
evaluating the budget for the forensic investigation case?
ANSWERS: Breakdown of costs into daily and annual expenditure.
Which of the following should be physical location and structural design
considerations for forensics labs?
ANSWERS: Lab exteriors should have no windows.
Which of the following should be work area considerations for forensics
labs?
ANSWERS: Examiner station has an area of about 50-63 square feet.
Which of the following is NOT part of the Computer Forensics Investigation
Methodology?
ANSWERS: Testify as an expert defendant.
Which of the following is NOT part of the Computer Forensics Investigation
Methodology?
ANSWERS: Destroy the evidence.