🌍 All Study Guides📊 Dashboard📰 Blog💡 About
CompTIA Security+ (SY0-701) • STUDY MODE

Security+ Practice Quiz 1

QUESTION 1 OF 2

A security analyst discovers an employee fell for an email claiming to be from HR requesting urgent password verification via a fake login link. Which type of social engineering attack occurred?

A
Spear PhishingCorrect Answer
B
Vishing
C
Whaling
D
Smishing
Explanation:

Spear phishing is a targeted phishing attack aimed at specific individuals or roles within an organization using tailored contextual information (like impersonating HR).

QUESTION 2 OF 2

Which access control model grants user permissions based strictly on job roles and defined responsibilities within an organization?

A
DAC (Discretionary Access Control)
B
RBAC (Role-Based Access Control)Correct Answer
C
MAC (Mandatory Access Control)
D
ABAC (Attribute-Based Access Control)
Explanation:

Role-Based Access Control (RBAC) assigns security permissions to predefined organizational roles (e.g. Accountant, Admin) rather than individual user accounts.

Ready to test your recall?

A security analyst discovers an employee fell for an email claiming to be from HR requesting urgent password verification via a fake login link. Which type of social engineering attack occurred?

A
Spear Phishing
B
Vishing
C
Whaling
D
Smishing

How confident are you in this answer?