Tech4Examでは、学習スタイルに合わせてPDF版・デスクトップテストエンジン・オンラインテストエンジンの3つの形態をご用意しています。自宅のパソコンでじっくり解くもよし、移動中に1D0-571の練習問題をスマートフォンで確認するもよし。CIW v5 Security Essentialsの対策を自分のペースで進められます。
CIW 1D0-571 試験概要:
| 認定ベンダー: | CIW |
|---|---|
| 試験名: | CIW v5 セキュリティ基礎 |
| 試験番号: | 1D0-571 |
| 関連資格: | CIW Web Security Professional CIW Web Security Specialist CIW Web Foundations Associate |
| 出題数: | 60-62 |
| 試験形式: | 多肢選択式, シナリオ設問形式 |
| 認定の有効期間: | 3年間 |
| 合格点: | 76% |
| 対応言語: | 英語 |
| 試験時間: | 90 分 |
| 受験料: | 125米ドル |
| 推奨トレーニング: | CIW公式学習教材 |
| 受験申し込み: | CIW公式登録 Pearson VUE試験関連手続き |
| サンプル問題: | DOWNLOAD DEMO |
| 受験方法: | オンライン監督付き受験、またはPearson VUE認定試験会場での対面受験 |
| 前提条件: | 推奨条件:CIW Web Foundations Associateの資格または同等の知識を有すること。必須の受験資格はなし |
| 公式シラバスのURL: | https://www.ciwcertified.com/_resources/objectives/1D0_571.pdf |
CIW 1D0-571 試験シラバストピック:
| セクション | 比重 | 目標 |
|---|---|---|
| トピック 1: アクセス制御と認証 | 15% | - 認証方式と多要素認証(MFA) - 権限付与とアクセスモデル - パスワードの方針と管理 - ID管理 |
| トピック 2: インシデント対応とセキュリティ方針 | 15% | - セキュリティの監視と検知 - インシデントの処理と対応手順 - セキュリティ方針の策定 - 事業継続と災害復旧 |
| トピック 3: 暗号化の実践的活用 | 15% | - 共通鍵暗号方式と公開鍵暗号方式 - ハッシュ関数とデジタル署名 - SSL/TLS、HTTPSおよび安全な通信 - 鍵管理の概念 |
| トピック 4: ネットワークセキュリティとファイアウォール | 20% | - ファイアウォールの種類と構造 - 侵入検知システムおよび侵入防止システム - VPNと安全なリモートアクセス - パケットフィルタリングとステートフルインスペクション |
| トピック 5: 脅威、攻撃、脆弱性 | 20% | - Webアプリケーションのセキュリティ上のリスク - 悪意のある攻撃の種類 - ソーシャルエンジニアリングとフィッシング - ネットワークおよびプロトコルの脆弱性 |
| トピック 6: セキュリティ入門 | 15% | - セキュリティ関連機関と規格 - セキュリティの目標:機密性、完全性、可用性 - セキュリティの基本概念と原則 |
CIW v5 Security Essentialsに関するよくあるご質問
1D0-571試験はCIW v5 Security Essentialsの公式認定試験で、合格するとCIW Web Security Associateの認定を取得できます。この認定はアソシエイトレベルに位置づけられています。関連する認定には、CIW Web Foundations Associate、CIW Web Security Specialist、CIW Web Security Professionalなどがあります。Tech4Examでは、この試験の出題傾向に沿った62問の練習問題をご用意しています。
1D0-571試験の出題数は60-62、制限時間は90 分です。出題数に対して使える時間は限られるため、1問あたりにかけられるペースを意識しながら解き進める必要があります。難問に時間を使いすぎず、確実に答えられる問題から拾っていく時間配分が得点を安定させる鍵になります。Tech4Examのテストエンジンで制限時間つきの模擬試験を繰り返し、本番と同じリズムで解く感覚を身につけておくことをおすすめします。
1D0-571試験の合格ラインは76%、受験料は125米ドルです。不合格になった場合、再受験には改めて全額の受験料が必要になるため、一度の受験で合格ラインをクリアできる準備が費用面でも重要です。Tech4Examの62問の練習問題で繰り返し自己採点を行い、安定して合格点を上回れることを確認してから本番に臨むと安心です。
受験条件は見直される場合があります。お申し込みの前に、CIWの公式ページで最新の情報をご確認ください。
1D0-571試験は、以下の公式窓口からお申し込みいただけます。
試験方式については、オンライン監督付き受験、またはPearson VUE認定試験会場での対面受験
CIWが推奨する公式トレーニングには、以下のようなものがあります。
公式トレーニングで知識を体系的に学んだうえで、Tech4Examの62問の練習問題に取り組めば、理解度を試験形式で確かめながら弱点を補強できます。
はい、Tech4Examでは1D0-571練習問題の無料サンプルをご用意しています。62問の問題集の一部を事前にご確認いただけるので、内容や品質に納得してからご購入いただけます。ご購入後は365日間の無料アップデートが付き、期間終了後も50%割引で更新を継続いただけるため、常に最新の出題内容に沿って学習できます。
Tech4Examには返金保証があります。ご購入後60日以内に対応する試験を受験して不合格だった場合、全額返金をお申し込みいただけます。ただし、購入後3日以内の受験による不合格、ダウンロード後に実際の試験を受験しなかった場合、無料資料や有効期限切れのご注文は対象外となり、受験者の氏名はお支払い者の氏名と一致している必要があります。お申し込みの際は、受験票のコピーと公式のScore ReportのPDFを試験後2日以内にご提出ください。提出後7日以内に手続きが完了します。返金の代わりに、同等の試験資料2点を無料でお受け取りいただき、お手持ちの製品の更新サービスをそのまま継続する選択も可能です。納品は即時ダウンロード方式で、お支払い完了後1分以内にメールでお届けします。2時間経っても届かない場合はカスタマーサポートまでご連絡ください。インストールするパソコンの台数に制限はありません。
1D0-571試験の出題範囲は6の領域に分かれています。主な領域として、「脅威、攻撃、脆弱性(20%)」、「セキュリティ入門(15%)」、「インシデント対応とセキュリティ方針(15%)」などが挙げられます。各領域の詳しい内訳については、このページ上部に掲載している試験シラバスをご確認ください。
CIW v5 Security Essentials 認定 1D0-571 試験問題:
問題 #1
Which of the following is considered to be the most secure default firewall policy, yet usually causes the most work from an administrative perspective?
A. Allowing all access by default, then blocking only suspect network connections
B. Configuring the firewall to coordinate with the intrusion-detection system
C. Blocking all access by default, then allowing only necessary connections
D. Configuring the firewall to respond automatically to threats
問題 #2
You are using a PKI solution that is based on Secure Sockets Layer (SSL). Which of the following describes the function of the asymmetric-key-encryption algorithm used?
A. It encrypts all of the data.
B. It encrypts the X.509 key.
C. It encrypts the hash code used for data integrity.
D. It encrypts the symmetric key.
問題 #3
A security breach has occurred in which a third party was able to obtain and misuse legitimate authentication information. After investigation, you determined that the specific cause for the breach was that end users have been placing their passwords underneath their keyboards. Which step will best help you resolve this problem?
A. Discipline specific end users as object lessons to the rest of the staff and reset passwords on all systems immediately.
B. Set passwords to expire at specific intervals and establish mandatory continual training sessions.
C. Inform end users that their passwords will be changing on a regular basis and require more complex passwords.
D. Change all passwords on the company servers immediately and inform end users that their passwords will be changing on a regular basis.
問題 #4
You have discovered that the ls, su and ps commands no longer function as expected.
They do not return information in a manner similar to any other Linux system. Also, the implementation of Tripwire you have installed on this server is returning new hash values.
Which of the following has most likely occurred?
A. A root kit has been installed on the system.
B. A trojan has attacked the system.
C. A spyware application has been installed.
D. A SQL injection attack has occurred.
問題 #5
Which of the following is a common problem, yet commonly overlooked, in regards to physical security in server rooms?
A. Biometric malfunctions
B. Firewalls that do not have a dedicated backup
C. False ceilings
D. Logic bombs
解説:
| 問題 #1 正解: C | 問題 #2 正解: D | 問題 #3 正解: B | 問題 #4 正解: A | 問題 #5 正解: C |

弊社は製品に自信を持っており、面倒な製品を提供していません。


-Misaki

