Interview questions for Network Admin
Some questions for Network Admin
- What is a firewall?
- Describe, genrally, how to manage a firewall
- What is a Denial of Service attack?
- What is a “spoofed” packet?
- What is a SYN Flood?
- What do you do if you are a victim of a DoS?
- What is GPG/PGP?
- What is SSH?
- What is SSL? How do you create certificates?
- What would you do if you discovered a UNIX or Network device on your network has been compromised?
- What would you do if you discovered a Windows system on your network has been comrpromised?
- What is DNS Hijacking?
- What is a log host?
- What is IDS or IDP, and can you give me an example of one?
- Why are proxy servers useful?
- What is web-caching?
IDS
1. What IDS stands for
Intrusion Detection System2. Name most common IDS systems in the IT Security field
* Snort
* Securify
* CISCO Secure IDS system3. Name types of IDS systems
* NIDS - Network Intrusion detection systems (monitor all the inbound and the outbound traffic)
* HIDS - Host intrusion detection system - (monitor traffic on individual systems)
* Signature based - Compare traffic against a database of signatures from malicious traffic.
* Anomaly Based (Policy driven) - Compare traffic against the predefined baseline(whats normal and whats not normal)4. Main component of an IDS system
* Sensors (Monitors)
* Database (to store information)TCP
1. TCP protocol layers
Physical (Network Interface), Network, Transport, ApplicatioinOSI Model
1. Physical, Datalink, Network, Transport, Session, Presentation, ApplicationSecurity in general
1. Identify the component that you would see in a Secured Network infrastructure.
Firewalls, AV (Anti Virus) systems, IDS, IPS,Are you current with the common security vulnerabilities
1. Latest one is, UCLA alerts 800,000 to data breach
2. Microsoft patches IE, windows media flaws
3. comScore (market research company) receives spyware allegationsDo you read IT security publications?
1. Securityfocus.com
2. cgisecurity.com
3. Techworld.com
4. nvd.nist.gov (national vulnerability database)
5. insecure.orgAttitude
1.Would you discuss about the IT Security vulnerabilities with friends etc..? - NO
Think like a Security professional
2. Willing to work after hours/ weekends?
3. Availability
4. Willing to learn
5. Whats the last Security book you read
6. Why do you like the IT Security field?
7. Are you a team player?
Comments
Post new comment