Cybersecurity Interview Questions For Freshers
文章分享了网络安全领域的基础知识、常见面试问题及学习资源推荐,涵盖网络设备、协议、防火墙、加密技术等核心概念,并提供了备考建议和实用工具链接。 2025-6-4 04:13:49 Author: infosecwriteups.com(查看原文) 阅读量:17 收藏

Naman Thakur

Hello Everyone, I’m working as an Cyber Security Analyst having around 1 year of working experience. In this article I’ll be sharing useful resources, tips & interview questions for all Cyber Security Freshers.

To excel in a Cyber Security interview as a fresher, it is important to have a foundational understanding of Cyber Security concepts, rather than being a pro. Therefore, prioritize clearing the basics and fundamentals before diving into advanced topics. This approach can increase your chances of success in the interview.

  1. What are Network Devices ? Repeater, Hub, Switch, Bridge, Router.
  2. What is an IP address, Classes of IP address ?
  3. Common Protocols & Port No. (FTP, SSH, TLS, SMTP, DNS, HTTP, LDAP, HTTPS, RDP, ARP, DHCP etc)
  4. Explain OSI & TCP/IP Model (Mostly OSI model is asked)
  5. What is 3-Way Handshake?
  6. What is a Firewall and types of firewall.
  7. Difference in Stateless and Statefull Firewall?
  8. What is IDS(Intrusion Detection System) & IPS (Intrusion Prevention System) ? Difference between them.
  9. What is the difference in HIDS and NIDS?
  10. What is VPN and types of VPN?
  11. What is WAF(Web Application Firewall)?
  12. What is DNS (Domain Name System) ? How DNS works.
  13. What are proxy server?
  14. What is the difference in NAT & PAT ?
  15. What is DMZ (Demilitarized zone)?
  16. What is cryptography?
  17. Difference in symmetric and asymmetric cryptography?
  18. Difference in Encryption, hashing & encoding ?
  19. What is salted hash?
  20. What is SSL and TLS ?
  21. What is CIA triad? (Confidentiality, Integrity & Availability)
  22. What is Vulnerability, Threat & Risk ?
  23. Difference in V.A (Vulnerability assessment) and P.T(Penetration testing) ?
  24. What is AAA ? ( Authentication, Authorization & Accounting)
  25. What is Social Engineering attack?
  26. What is phishing attack ? Types of phishing attacks (Vishing, Smishing, Spear Phishing, Whaling, Shoulder Surfing)
  27. What is a malware ? Different types of malware. (Virus, Worm, Ransomware, Trojan Horse, Backdoor, Rootkits, Adware, Spyware)
  28. What is port scanning?
  29. What is Spoofing ?
  30. What is Brute Force Attack and how to prevent it?
  31. What is Dictionary attack & Rainbow attack?
  32. What is MITM (Man in The Middle Attack)?
  33. What is DOS & DDOS attack .Difference between them and how to prevent it?
  34. What is botnet?
  35. What is vulnerability management?
  36. What is 2FA (Two Factor Authentication)?
  37. What is SSO (Single Sign On)?
  38. What is OWASP Top 10?
  39. What is SQL injection and how to prevent it ?
  40. What is XSS (Cross Site Scripting )? Types of XSS and how to prevent it?
  41. What is CSRF (Cross Site Request Forgery)? How to prevent it?
  42. What is IDOR (Insecure direct object references)?
  43. What is Broken Authentication and how to prevent it?
  44. What is Identity & Access Management (IAM)?
  45. What is DHCP ? How DHCP works.
  46. What is ISO 27001 Framework ?
  47. What is PCI -DSS compliance ?(Payment Card Industry Data Security Standards)
  48. What is HIPAA ? (Health Insurance Portability and Accountability Act)
  49. What are the recent attacks?
  50. What is log4j vulnerability?
  51. What is DLP ? (Data Loss Prevention)
  52. What is Kerberos authentication ?
  53. What is NIST Framework?
  54. What is Zero day attack?
  1. What is SOC (Security Operation Center)?
  2. What are the different roles in SOC ?
  3. What is an event & incident ?
  4. What is True Positive, False Positive & False Negative ?
  5. What is SIEM (Security Investigation & Event Management)?
  6. What is SOAR (Security Orchestration, Automation, and Response)?
  7. What is EDR (Endpoint Detection & Response)?
  8. Difference in EDR & Antivirus .
  9. What is XDR (Extended Detection & Response) ?
  10. What is Splunk ? Explain its component and architect?
  11. What is SLA (Service Level Agreement) ?
  12. Explain Incident Response Life Cycle ?
  13. What are correlation rules ?
  14. What is threat intelligence ?
  15. If a malware is detected, is there any tool to block it directly?
  16. What is host hardening?
  17. Explain Cyber kill chain?
  18. What is a MITRE ATT&CK ?
  19. What is a playbook?
  20. What is DWELL time, MTTD & MTTR ?
  21. What is an IOC (Indicator of Compromise)?
  1. Certifications are not mandatory for beginners in cybersecurity. Don’t overspend on them. The CompTIA Security+ certification is a good option if you have a budget of around 15–17k.
  2. Bug bounty hunting should not be motivated by money. Learn from free resources on YouTube and Google. Focus on gaining experience and knowledge.
  3. During interview always try to make a two way communication.
  4. Always ask questions from the interviewer at end. Try to understand what the interviewer is looking from an candidate.
  5. Start working on your resume & Linkedin profile.
  6. Don’t fake anything in your resume.
  7. Explore different domains in Cyber Security such as Application Security, SOC (Security Operation Center), Cloud Security, IAM (Identity & Access Management), IT-auditing.
  8. Make notes of your learning it will gonna help you during interview preparation.
  1. Prabh Nair Playlist
  2. Intellipaat Interview questions.
  3. Edureka Interview questions
  4. SOC Expert Playlist.
  5. Github link
  6. Cyber Community Interview questions.
  7. Professor Messer Security+ Playlist.
  1. TryHackme Platform for learning networking & security.
  2. Letsdefend Platform for SOC.
  3. Hackthebox Platform for advance learning.
  4. PicoCTF to practise CTF’s.
  5. HackerSploit YT Channel.
  6. BittenTech YT Channel.

Leave a comment below if you’ve any queries or you can connect with me on Linkedin


文章来源: https://infosecwriteups.com/cyber-security-interview-questions-for-freshers-a6307092b1a5?source=rss----7b722bfd1b8d---4
如有侵权请联系:admin#unsafe.sh