wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

The CIA Triad

Total questions: 24

Worksheet time: 12mins

Name
Class
Date
1.

Identify the three principles of enforcing cybersecurity. (3 answers) (2.0.1.1)

a)

Confidentiality

b)

Information

c)

Integrity

d)

Availability

2.

Which principle of cybersecurity prevents prevents the disclosure of information to unauthorized people, resources, or processes. (2.1.1.1)

a)

Confidentiality

b)

Transmission

c)

Integrity

d)

Availability

3.

Which principle of cybersecurity refers to the accuracy, consistency, and trustworthiness of data. (2.1.1.1)

a)

Confidentiality

b)

Transmission

c)

Integrity

d)

Availability

4.

Which principle of cybersecurity information is accessible by authorized users when needed. (2.1.1.1)

a)

Confidentiality

b)

Transmission

c)

Integrity

d)

Availability

5.

Identify the three possible states of data in cyberspace that requires protection. (3 answers) (2.1.1.2)

a)

Data in transit

b)

Data at rest or in storage

c)

Data to be shared

d)

Data in process

6.

Identify the best way for an organization to comply with the growing number of privacy related laws. (2.1.1.3)

a)

Security

b)

Technology

c)

Policies

d)

Integrity

7.

Hashing, data validation checks, data consistency checks, and access controls are used to ensure....(2.2.2.3)

a)

data transmission

b)

data availability

c)

data security

d)

data integrity

8.

The integrity check that converts each piece of information to a value and sum the total is referred to as a ....(2.2.2.3)

a)

Hash function

b)

Checksum

c)

file permissions

d)

user access controls

9.

System redundancy, system backups, increased system resiliency, equipment maintenance, up-to-date operating systems and software, and plans in place to recover quickly from unforeseen disasters are methods to ensure .....(2.2.2.3)

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Protection

10.

Which of the following is NOT an option for storing data? (2.3.1)

a)

Direct-attached storage (DAS)

b)

Redundant array of independent disks (RAID)

c)

Virtual Private Network(VPN)

d)

Network attached storage (NAS)

e)

Storage area network (SAN)

11.

Which type of storage combines multiple disks so that the operating system sees them as a single disk to provide improved performance and fault tolerance? (2.3.1)

a)

SAN

b)

RAID

c)

DAS

d)

NAS

12.

Which type of network based storage system connects to the network using high-speed interfaces allowing improved performance and the ability to connect multiple servers to a centralized disk storage repository. (2.3.1)

a)

SAN

b)

RAID

c)

DAS

d)

NAS

13.

Which term is used to describe data transmission that uses removable media to physically move data from one computer to another? (2.3.2.1)

a)

Wireless Area Networks

b)

Wired Area Networks

c)

Wide Area Networks

d)

Sneaker net.

14.

Identify the three types of data that need to be protectected against cyber-attack. (2.3)

a)

Data at Rest

b)

Data in Transit

c)

Data in Process

d)

Data at Play

15.

A software based safeguards that are designed to assess weaknesses on computers or networks. (2.4.1.1)

a)

Protocol analyzers

b)

Vulnerability scanners

c)

Host-based intrusion detection systems

d)

Software firewalls

16.

A software based safeguards that are designed to identify performance problems, detect misconfigurations, identify misbehaving applications, establish baseline and normal traffic patterns, and debug communication problems. (2.4.1.1)

a)

Protocol analyzers

b)

Vulnerability scanners

c)

Host-based intrusion detection systems

d)

Software firewalls

17.

A software based safeguards that are designed to generate log files and alarm messages when it detects unusual activity. A system storing sensitive data or providing critical services is a candidate for host-based IDS(2.4.1.1)

a)

Protocol analyzers

b)

Vulnerability scanners

c)

Host-based intrusion detection systems

d)

Software firewalls

18.

A network-based technology that uses the public network (i.e., the Internet) and secures the data through encryption of packets. (2.4.1.3)

a)

Network access control (NAC)

b)

Virtual Private Network (VPN)

c)

Wireless access point security

d)

Host-based intrusion detection systems

19.

A network-based technology that requires a set of checks before allowing a device to connect to a network. Some common checks include up-to-data antivirus software or operating system updates installed. (2.4.1.3)

a)

Network access control (NAC)

b)

Virtual Private Network (VPN)

c)

Wireless access point security

d)

Host-based intrusion detection systems

20.

A cloud-based technology safeguard that allows users to gain access to application software and databases. (2.4.1.4)

a)

IT as a Service (ITaaS)

b)

Platform as a Service (PaaS)

c)

Infrastructure as a Service (IaaS)

d)

Software as a Service (SaaS)

21.

A cloud-based technology safeguard that provides virtualized computing resources over the Internet. The provider hosts the hardware, software, servers, and storage components (2.4.1.4)

a)

Infrastructure as a Service (IaaS)

b)

Platform as a Service (PaaS)

c)

IT as a Service (ITaaS)

d)

Software as a Service (SaaS)

22.

A set of security objectives for a company that includes rules of behavior for users and administrators and specifies system requirements is known as a .....(2.4.3.1)

a)

Protection mechanism

b)

Security policy

c)

Security precaution

d)

CIA Triad

23.

The standards that describe the implementation of a comprehensive information security management system (ISMS) consisting of all of the administrative, technical and operational controls to keep information safe within an organization.

a)

ISO 20

b)

ISO 300

c)

OSI 7 Layer

d)

ISO 27000

24.

The concepts of AAA involve three security services to provide the primary framework to prevent unauthorized access to a computer, network, database, or other data resources.

a)

Accessibility, Authorization, Attitude

b)

Authentication, Authorization and Accounting

c)

Area Control, Accessibility, Accounting

d)

Attitude, Accessibility, Accounting