wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cyber Security Month 2019

Total questions: 20

Worksheet time: 4hrs 58mins

Name
Class
Date
1.

What does the “https://” at the beginning of a URL denote, as opposed to "http://" (without the “s”)?

a)

The site has special high definition

b)

Information entered into the site is encrypted

c)

The site is the newest version available

d)

The site is not accessible to certain computers

e)

None of the above

2.

Which of the following is an example of a “phishing” attack?

a)

Sending someone an email that contains a malicious link that is disguised to look like an email from someone the person knows

b)

Creating a fake website that looks nearly identical to a real website in order to trick users into entering their login information

c)

Sending someone a text message that contains a malicious link that is disguised to look like a notification that the person has won a contest

d)

All of the above

3.

A group of computers that is networked together and used by hackers to steal information is called a …

a)

Botnet

b)

Rootkit

c)

DDoS

d)

Operating System

4.

Criminals access someone’s computer and encrypt the user’s personal files and data. The user is unable to access this data unless they pay the criminals to decrypt the files. This practice is called …

a)

Botnet

b)

Ransomware

c)

Driving

d)

Spam

5.

“Private browsing” is a feature in many internet browsers that lets users access web pages without any information (like browsing history) being stored by the browser. Can internet service providers see the online activities of their subscribers when those subscribers are using private browsing?

a)

Yes

b)

No

6.

Turning off the GPS function of your smartphone prevents any tracking of your phone’s location.

a)

True

b)

False

7.

What kind of cybersecurity risks can be minimized by using a Virtual Private Network (VPN)?

a)

Use of insecure Wi-Fi networks

b)

Key-logging

c)

Malware

d)

Phishing attacks

8.

To ensure your device and data remain secure and safe, when you install a new app it is good practice to

a)

Not use too many apps as the smartphone will become less secure

b)

Block all the app downloads and just use the standard one already on your phone

c)

Scrutinize permission requests when using or installing smartphone apps

9.

Someone posing as an IT tech requests information about your computer configuration. What kind of attack is this?

a)

Insider Threat

b)

Phishing

c)

Social Engineering

d)

Whaling

10.

Within our company, IT Security is the responsibility of:

a)

The Cyber Security Team

b)

Corporate Security

c)

Cafeteria Staff

d)

Everyone

11.

Cyber Security threats can originate from:

a)

“Outside” the company

b)

“Inside” the company

c)

Both “Outside” and “Inside”

d)

None of the above

12.

You receive an email from a vendor that you have been in contact with previously who replied to a conversation that you had closed the loop on weeks ago. The email had an attachment that you opened but the contents of the document did not make sense. You should:

a)

Reply to the vendor asking for more clarification

b)

Ignore the email, it was just a mistake

c)

Send the email to your co-worker to see if they can make sense of it

d)

Report the email via PhishMe

13.

You find a document at the printer with ITAR markings in the Header and Footer. You should:

a)

Leave it in the printer. The person will be by shortly

b)

Read the document while yours prints out

c)

Bring the document to Corporate Security and explain the situation to them

14.

GDMS Cyber Security Policies can be found:

a)

On the IT Cyber Security CrossPoint Site

b)

Nowhere, they do not exist

c)

On HUB

d)

In your New Hire Passport

15.

Sending Company Proprietary information to a Personal Email address is ok if (hint, check IT-POL-4):

a)

I get approval from my manager

b)

I don’t get caught

c)

It is something that I created

d)

It is approved by IT and Corporate Security

16.

It is ok to test out ethical hacking techniques on GDMS-C networks if (hint, check IT-POL-4):

a)

It is for security research

b)

It is for my program

c)

It is approved by Corporate Security and IT Security

d)

Never

17.

It is ok to install software of my choice on my PC if:

a)

My manager approves

b)

I have an approved eSAC for Green Net use

c)

I have an approved eSAC for Red Net use

d)

I have admin rights on my PC

18.

CP 07-102 is

a)

The GD Corporate Policy for Cyber Security

b)

The GDMS Policy on Cyber Security

c)

The GDMS-C Cyber Security Process

d)

Just a bunch of letters and numbers

19.

The primary difference between "Patches" and "Vulnerabilities" (in software & hardware) is:

a)

Vulnerabilities are weaknesses and Patches are fixes

b)

Patches are weaknesses and Vulnerabilities are fixes

c)

Patches and Vulnerabilities are both fixes

d)

Patches and vulnerabilities are the same

20.

GDMS reserves the right to monitor, collect, audit, access and inspect any data within the network in the following circumstances (hint, check IT-POL-3). Check all that apply

a)

To collect evidence pertaining to compliance issues or validation with GDMS policies

b)

To detect malware on devices or moving through the network

c)

To ensure GDMS sensitive data in not being exfiltrated

d)

To collect metrics on employee productivity