wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity Essentials Chapter 6 Review

Total questions: 20

Worksheet time: 2hrs 40mins

Name
Class
Date
1.

Which of the following is NOT a strategy to ensure high availability?

a)

Eliminate single points of failure.

b)

Design for reliability.

c)

Detect failures as they occur.

d)

Take systems offline at night for updates.

2.

Which organizations would rely on high availability systems?

(PIck 3)

a)

banks

b)

hospitals

c)

fire department

d)

retail businesses

e)

schools

3.

What types of things would be documented in a asset database?

(PIck 3)

a)

operating systems

b)

software applications

c)

networking devices

d)

employees

e)

work groups

4.

What are three criteria used to classify organization assets?

(PIck 3)

a)

Identify owner of information assets

b)

Identify the importance of the asset

c)

Identify the category of asset it is

d)

Identify the age of the asset

e)

Identify how often the asset is used

5.

This type of analysis is being done if a list of all equipment's value is being tallied?

a)

quantitative

b)

qualitative

6.

This type of analysis is being done if employees are being asked rank how likely it would be for a certain type of threat to occur.

a)

quantitative

b)

qualitative

7.

Buying insurance is an example of this type of risk mitigation.

a)

avoidance

b)

transference

c)

reduction

d)

acceptance

8.

Changing the way you do things so a risk is less likely.

a)

avoidance

b)

transference

c)

reduction

d)

acceptance

9.

Encrypting files on a server that is behind a firewall in a building with watch dogs is an example of this defense strategy.

a)

Layering

b)

Limiting

c)

Diversity

d)

Obscurity

e)

Simplicity

10.

Changing file permission to be more restrictive is an example if this type of defense strategy.

a)

Layering

b)

Limiting

c)

Diversity

d)

Obscurity

e)

Simplicity

11.

This device works with a copy of network data to determine if there are concerns without impacting network performance.

a)

IDS

b)

IPS

c)

Firewall

d)

Default Gateway

12.

What does the term N+1 redundancy refer to?

a)

A system that has one backup for similar types of equipment.

b)

A system that has one back up for every piece of equipment.

c)

A system that is fully redundant.

d)

Default Gateway

13.

What RAID level will provide redundancy but necessary give a big performance boost?

a)

0

b)

1

c)

3

d)

5

14.

This technology allows redundancy on a network but prevents data looping from occurring.

a)

STP

b)

NAT

c)

HSRP

d)

RAID

15.

These technologies allows redundancy on layer four devices.

Pick 3

a)

STP

b)

HSRP

c)

VRRP

d)

GLBP

e)

RAID

16.

This is the phase of disaster recovery when changes are implemented from lessons that have been learned from an attack.

a)

Recovery

b)

Preparation

c)

Analyze

d)

Post-Incident

17.

What category of threat would cover a disgruntled former employee that changed the configurations on a company firewall?

a)

Human Error

b)

Hardware Failure

c)

Software Errors

d)

Sabotage

18.

What is a benefit of asset standardization?

Pick 2

a)

Employees don't have to learn about a bunch of different systems.

b)

Working with a single vendor can help with negotiating costs for equipment.

c)

Systems become more complex therefore harder to hack into.

d)

Harder to find replacement components.

19.

Where can you go to see a list of Common Vulnerabilities an and Exposures? (CVE)

a)

The MITRE Corporation Website

b)

Wikipedia

c)

Netacad.com

d)

CV Dictionary

20.

Which of the following is not a strategy that involves improving system resilience?

a)

Fault Tolerant Hardware

b)

Cluster Architechture

c)

Backup and Restore

d)

Limiting