wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

IT Security

Total questions: 40

Worksheet time: 13mins

Name
Class
Date
1.

Controlling who has access to a computer or online service and the information it stores is..

a)

Access Control

b)

DMZ

c)

Business Continuity Management

d)

Encryption

2.

Hardware or software designed to prevent unauthorized access to a computer or network.

a)

Malware

b)

Personal Firewall

c)

Proxy Software

d)

Firewall

3.

The process of identifying, analyzing, and evaluating risk

a)

Risk

b)

Risk Assessment

c)

Asset

d)

Backing Up

4.

Method used by criminals to try to obtain financial or other confidential information by email.

a)

Risk

b)

Keyboard Logger

c)

Phishing

d)

Spyware

5.

A person who performs cyber attack or causes an accident

a)

Hacker

b)

Threat Actor

c)

Spy

d)

Worm

6.

Malware that passes information about a computer user's activities to an external party.

a)

Access Control

b)

Spyware

c)

Cloud Computing

d)

Screen Scraper

7.

A representation of the system threats that are expected to be reasonable

a)

Threat Vector

b)

Overload

c)

Threat Model

d)

Authentication

8.

Protocol for mapping an address to a physical machine address that is recognized

a)

Reverse Address Protocol

b)

Asymmetric Warfare

c)

Auditing

d)

Address Resolution Protocol (ARP)

9.

Intended to specify an unclassified, publicly-disclosed, symmetric encryption algorithm.

a)

Advanced Encryption Standard (AES)

b)

Algorithm

c)

Temporary Key Integrity Protocol

d)

Bandwidth

10.

The process of confirming the correctness of the claimed identity

a)

Authorization

b)

Authentication

c)

Auditing

d)

Availability

11.

BIND stands for Berkeley Internet Network Domain and is it an implementation of DNS.

a)

True

b)

False

12.

The process of encrypting all the data on the hard disk drive used to boot a computer.

a)

Full Disk Encryption

b)

Encryption

c)

Bit Locker

d)

File System

13.

What is brute force?

a)

A cryptanalysis technique or other kind of attack method involving an exhaustive procedure that tries all possibilities, one-by-one.

b)

The mathematical science that deals with analysis of a cryptographic system in order to gain knowledge needed to break or circumvent the protection that the system is designed to provide.

c)

An algorithm that employs the science of cryptography, including encryption algorithms, cryptographic hash algorithms, digital signature algorithms, and key agreement algorithms.

d)

An asymmetric cryptographic algorithm that produces a digital signature in the form of a pair of large numbers

14.

What must a company have to help after a disaster happens towards the information they withhold?

a)

Have a team to send out warnings to customers.

b)

Have a set business continuity plan.

c)

Hold a business impact analysis meeting.

d)

Incorporate digital signature algorithm.

15.

Business Impact Analysis means...

a)

It determines what kind of analysis needs to be used.

b)

It determines what kind of business can use certain types of analysis.

c)

It determines what levels of impact to a system are tolerable.

d)

It determines if impact will create damage to analysis ideas.

16.

What type of caching is commonly used in personal computers?

a)

Memory caching

b)

Disk caching

c)

Neither

d)

Both

17.

Chain of Custody enforces a

a)

Federal rule

b)

State rule

c)

Corporation rule

d)

Global rule

18.

Harvesting key strokes is an example of using...

a)

Adware

b)

Rootkit

c)

Malware

d)

Crimeware

19.

The Cookie Law legally requires websites to warn visitors about cookies that websites may use.

a)

False

b)

True

20.

Fill in the blanks of the definition: "The ______ science that deals with analysis of a _____ system in order to gain knowledge needed to break of circumvent the protection that the system is designed to provide."

a)

Basic; Cryptographic

b)

Mathematical; Basic Graph

c)

Mathematical; Cryptographic

d)

Basic; Basic Graph

21.

What kind of algorithm employs the science of cryptography, including encryption algorithms, digital signature algorithms, and key agreement algorithms.

a)

Blowfish

b)

Twofish

c)

Hash

d)

Triple DES

22.

DSA stands for

a)

Digital Signature Alignment

b)

Digital Signature Algorithm

c)

Digital Signature Accident

d)

Digital Signature Advertisement

23.

The process on the router that is running the routing protocol, communicating with its neighbor routers, is usually called

a)

Routing demo

b)

Routing breech

c)

Routing signature

d)

Routing daemon

24.

Are escrow passwords usually stored online?

a)

Yes

b)

No

25.

What are escrow passwords?

a)

Passwords that are written down and stored in a public location so anyone can gain access to information when privileged personnel is not available.

b)

Passwords that are written down and stored in a secure location

that are used by emergency personnel when privileged personnel are unavailable.

c)

Passwords that are written down online and are stores in privileged personals email draft in order to access it at any time.

d)

Passwords that are written down in emails and shared around a company in order to ensure that everyone has the information.

26.

Ethernet is the most widely-installed LAN technology

a)

True

b)

False

27.

Used to adjust TCP timeout values on the fly so that network devices don't continue to timeout sending data over saturated links.

a)

Extended ACLs

b)

Cryptographic Algorithm

c)

Hash

d)

Exponential Backoff Algorithm

28.

Extended ACLs is

a)

Making filtering decisions based on IP addresses, ports, protocols, and whether a session is established.

b)

Making filtering decisions based on regions, ports, protocols, and whether a session has ended.

c)

Making filtering decisions based on countries, ports, protocols, and whether a session is defected.

d)

Making filtering decisions based on IP addresses, ports, protocols, and whether a system is installed.

29.

A TCP/IP protocol specifying the transfer of text or binary files across the network

a)

Point to Point Protocol

b)

Address Resolution Protocol

c)

File Transfer Protocol (FTP)

d)

Password Authentication Protocol (PAP)

30.

Filtering routers cannot be part of a firewall or be the complete firewall.

a)

False

b)

True

31.

Programs that simulate one or more network services that you designate on your computer's ports

a)

Spyware

b)

Honey Pot

c)

Keystrokes

d)

Filtering Program

32.

A form of active wiretapping in which the attacker seizes control of a previously established communication association.

a)

Man in the middle attack

b)

Broad Attack

c)

Communications Attack

d)

Hijack Attack

33.

Why is patching important in MBFS?

a)

It fixes problems that may have been brought up since the last update.

b)

It lets MBFS create new apps to implement for finance

c)

It fixes problems that may have been brought up before a new website launch

d)

It lets MBFS fix clothing items with materials from other clothes.

34.

Only backup the files that have been modified since the last backup

a)

Full backups

b)

Incremental-forever

c)

Differential backups

d)

Incremental backups

35.

An attack that sends an improperly large ICMP echo request packet with the intent of overflowing the input buffers of the destination machine and causing it to crash.

a)

Threat Vector

b)

Hijack Attack

c)

Ping of Death

d)

Pharming

36.

A user’s session is redirected to a masquerading website. This can be achieved by corrupting a DNS server on the Internet and pointing a URL to the masquerading website’s IP.

a)

Man-in-middle attack

b)

Pharming

c)

Threat vector

d)

Overload

37.

What is the acronym for threat modeling?

a)

STRIPE

b)

SPRIDE

c)

SIDE

d)

STRIDE

38.

Attempt by an unauthorized entity to gain access to a system by posing as an authorized user

a)

Spoofing

b)

Elevation of privilege

c)

Tampering with information

d)

Denial of service

39.

A way of letting an anonymous user retrieve information without authentication

a)

Anonymous Venturing

b)

Null Session

c)

Public Session

d)

Anonymous Logon

40.

A protocol developed for credit card transactions in which all parties are authenticated using digital signatures, encryption protects the message and provides integrity, and provides end-to-end security for credit card transactions online.

a)

Point to Pay Protocol

b)

Secure Electronic Transactions

c)

Dynamic Transactions Protocol

d)

Transactions Resolution Protocol