CompTIA SY0-601 Security+ Take Ten Challenge #4Step 1 of 1010%4-1: Which of the following threat actors would be MOST motivated by profit? Organized crime Hacktivist Shadow IT Nation state 4-2: Which of the following would use rules to limit API communication? SSH NAT VPN WAF TLS 4-3: Which of the following allows the browser to check for certificate revocation? CSR TLS CN OCSP CA 4-4: Which of the following provides a knowledge base of adversary tactics and techniques? MITRE ATT&CK framework ISO 31000 Diamond model SSAE SOC 2 EAP-TTLS 4-5: Which security control would be MOST associated with a backup generator? Preventive Detective Managerial Compensating Physical 4-6: Which of the following would be the BEST way to randomize multiple hashes of the same data? FDE Key exchange Salt SDN VPN 4-7: Which of the following would determine which laws would apply to stored data? Masking Sovereignty Information Rights Management Data-at-rest Diffusion 4-8: Which of the following would be the MOST secure way of viewing traffic statistics from a router? FTPS RDP SMB SNMPv3 Telnet 4-9: A security administrator would like to restrict application use to a predefined set of apps. Which of the following would BEST describe this security type? DLP Approved list Quarantine Segmentation Deny list 4-10: A company has determined that laptops valued at $50,000 have been stolen over the last calendar year. Which of the following would describe this value? ARO Risk appetite SLE Inherent risk ALE