wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

CIS IT Fundamentals Chapter 6

Total questions: 28

Worksheet time: 28mins

Name
Class
Date
1.

You receive a phone call from Dell informing you that there is an issue with your computer and that they can help. What type of concern is this?

a)

Availability

b)

Confidentiality

c)

Integrity

2.

This attack is the unauthorized access or interception of an organization's data. What type of concern is this?

a)

Wiretapping

b)

Eavesdropping

c)

Dumpster Divings

d)

Snooping

3.

Damage to data or equipment that in which the data or equipment can not be recovered is which concern?

a)

Destruction

b)

Power Outage

c)

Service Outage

d)

Denial of Service Attack

4.

A replay attack is when an attacker captures a data and then later tries to play it back to gain unauthorized access. What type of concern is this?

a)

Integrity

b)

Availability

c)

Confidentiality

5.

This attack can use a pineapple to create a new connection that appears legitimate but is intercepting your data in transit. What type of concern is this?

a)

Replay Attack

b)

Impersonation

c)

Unauthorized Information Alteration

6.

When using the Internet, what is one way you can increase your privacy?

a)

Don't Login to Sites

b)

Close your Browser when you are done.

c)

Use Private Browsing Mode

d)

Use Free WiFi instead of Your Internet

7.

Electronic mail or email is a secure method of communication that is private.

a)

True

b)

False

8.

On a corporate network, your use of the computer and network resources is probably not private due to what?

a)

Monitoring of Resources

b)

Logging of Network Traffic

c)

Computer Firewall

d)

Limitation of Available Resources

9.

What is the name of the policy that informs you want you can and cannot do on a computer network? (Choose 2)

a)

Acceptable Use Policy

b)

Responsible Use Policy

c)

Social Media Policy

d)

Security Awareness Policy

10.

What is an example of confidential information? (Choose 2)

a)

Company Address

b)

Passwords

c)

Your Name

d)

Customer Information

11.

When you login to a website it only requires a username and password. What type of identification is this?

a)

Single Factor

b)

Multifactor

c)

Single-Sign On

12.

On an iPhone, a user can setup a fingerprint or facial recognition as a way to access the phone in addition to a PIN number. What type of factor is this?

a)

Password

b)

Software Token

c)

One-Time Password

d)

Biometrics

13.

A system administrator in charge creating user accounts requires that permissions are assigned based on the users department within the company. What type authorization does this describe?

a)

Mandatory Access Controls

b)

Rule-Based Access

c)

Role-Based Access

d)

Discretionary Access Controls

14.

After a user has been authenticated and authorized, key actions will be recorded as a part of accounting in this file.

a)

User Account

b)

History

c)

System File

d)

System Log

15.

Being able to identify that an action has taken place and by whom is known as what?

a)

Authorization

b)

Non-Repudiation

c)

Accounting

d)

Authentication

16.

What is the recommended length of a password?

a)

6 to 64 characters

b)

8 to 32 characters

c)

6 to 32 characters

d)

8 to 64 characters

17.

What should you include in your password at minimum?

a)

Letters and numbers

b)

Uppercase letters, lowercase letters, and numbers

c)

Uppercase letters, lowercase letters, numbers and symbols

d)

Letters, numbers and symbols

18.

A secure password is ok to reuse across sites?

a)

True

b)

False

19.

How can you best protect your password?

a)

Encrypt Stored Passwords

b)

Limit stored passwords to the device the software is installed on

c)

Store decryption keys in the cloud for security

d)

Assist creating strong passwords

20.

Cipher Text is an encrypted version of a message from the original of what?

a)

Encrypted Text Message

b)

Algorithm Applied to Text

c)

Plain Text Message

d)

Encryption Key

21.

How do you know if a website is encrypted using a public key?

a)

The website is using HTTP and you can use view the certificate

b)

The website is using HTTPS and you can view the certificate

c)

The website will have information on a page providing you with details

d)

The website will have a link to the certificate

22.

When setting up the encryption a mobile device, what is a common step for both Android and iOS?

a)

Turning on Encryption

b)

Turning on an app to find the device

c)

Backing up the encryption key

d)

Setting a PIN or Passcode

23.

A browser that encrypts the data in transit is using which protocol as seen in the address bar?

a)

SSL

b)

HTTP

c)

HTTPS

d)

TLS

24.

The idea that a system will continue to run properly in the event of the failure of a component is known as?

a)

System Backup

b)

Fault Tolerance

c)

Tolerate Infrastructure

d)

Outage Resistant

25.

You are looking to buy a new computer and you want a backup drive that will continue to work even if one of the drives fails. What should you buy?

a)

RAID 0

b)

RAID 1

c)

SATA

d)

SSD

26.

For a business, what is a benefit of storing a backup in the cloud?

a)

The backup is off-site away from the business location

b)

The backup will be fast to restore in the event of a disaster

c)

The backup is stored on a private company owned RAID.

d)

No answer text provided.

27.

After you have completed all of your policies and planning, you should do what to ensure the contingency plan is valid and will work should a disaster occur?

a)

Develop the contingency planning policy statement

b)

Identify preventive controls

c)

Ensure plan maintenance

d)

Ensure plan testing, training, and exercises

28.

It is important to verify your backups are working and the data is recoverable in order to meet the recovery point objective. What will this tell you regarding data restoration?

a)

How much time will be lost for restoration

b)

How much data will be lost in a disaster

c)

How much data was actually lost in a disaster

d)

How much time was actually lost in recovering the data