WorksheetsInformation Security Fundamentals
Total questions: 60
Worksheet time: 3600secs
Which element of the CIA triad deals with ensuring users only access files they need to do their job?
Authorization
Integrity
Availability
Confidentiality
If a file has been altered without permission or knowledge, this violates the principle of ____.
encryption
integrity
least privilege
confidentiality
What process prevents a user from denying they made changes to a file?
Encryption
Permissions
Nonrepudiation
Secure passwords
Which of the following helps provide confidentiality to data?
A secure password
Encryption
Nonrepudiation
Antimalware
Which security principle is violated by an attack in which users are unable to access their files?
Availability
Principle of least privilege
Integrity
Nonrepudiation
Which security technique is provided by using multiple levels of protection, such as firewalls, antimalware software, and strong password policies?
Integrity
Nonrepudiation
Defense in depth
Principle of least privilege
Which of the following security domains represents the weakest link in the security chain?
Workstation
User
System
LAN
Which security domain secures Supervisory Control and Data Acquisition (SCADA) systems, such as a citywide electrical grid?
System
WAN
LAN
Remote Access
Which of the following would be considered an IoT device?
Tablet
Desktop PC
Video doorbell
Cell phone
A computer that does not have any antimalware programs installed represents a ____ to data.
threat
vulnerability
payload
time bomb
A computer has been infected with malware that allows the hacker to access the computer through a backdoor from a distant location. What is the most likely example of the malware on this machine?
Trojan horse
Logic bomb
Remote access Trojan
Armored virus
Which of the following describes a type of malware that is hidden inside other software?
Trojan horse
Worm
Backdoor
Rootkit
Which of the following describes a type of malware that can only infect a computer after specific criteria have been met?
Time bomb
Logic bomb
Worm
Backdoor
Which type of malware is designed to prevent anyone from reading the source code?
Rootkit
RAT
Armored virus
Ransomware
___ is malware that prevents legitimate access to data by encrypting the data content.
Drive-by-download
Polymorphic
Worm
Ransomware
The action or intent of a virus is called its ____.
threat
payload
design
strategy
A user unknowingly visits a webpage that has been compromised with ransomware, which was downloaded to the user’s device. This is an example of a ____.
vulnerability
crypto-infection
drive-by-download
nonrepudiation process
Which type of malware renders a computer infected before the operating system is even loaded into memory?
Ransomware
Rootkit
Armored virus
Polymorphic virus
Microsoft documents can be easily compromised by ____.
time bombs
ransomware
rootkits
macro viruses
Which of the following describes an update from a software vendor that can help prevent vulnerabilities?
Patch
Heuristic methodology
Firmware
Upgrade
A(n) ____ exists in software when it was released and remains unknown until it is exploited by hackers.
adware
bug
zero-day vulnerability
weak app
Which of the following is a true statement?
Updated antimalware programs always find the latest threats on a system.
Opening e-mail attachments is a common attack vector for malware.
USB drives are no longer vulnerable to malware infection.
Heuristic analysis of systems can find only previously known viruses or threats.
A ____ cookie remains on your computer until the expiration date is reached.
session
persistent
third-party
super
A ____ cookie is deleted when the user’s web browser is closed.
session
shopping
persistent
third-party
____ refers to using a lie or scam to obtain private information.
Digital footprint
Public records
Pretexting
Dumpster diving
Which best describes the results of the following search-engine query:
World cup soccer -England
Search results show only world-cup soccer links to the England team
Search results show world-cup soccer prioritizing links for the England team
Search results show world-cup soccer omitting references to the England team
Search results show world-cup soccer deprioritizing links to the England
Which of the following will provide the best search results for information on rootkits on Symantec’s website?
Allintitle:Symantec +rootkit
Site:Symantec.com “rootkit”
cache:rootkit +Symantec
Filetype:pdf “Symantec rootkit”
Which legislation covers data protection through wire and electronic transmissions of data?
CFAA
ECPA
HIPAA
SOX
With which law must a security analyst working for a bank be familiar?
HIPAA
CFAA
PCI DSS
GLBA
PCI DSS applies to which type of businesses?
Any business that accepts credit card transactions
Organizations that are publicly traded
Organizations that submit data through the Internet
Organizations that deal with financial information
Obtaining information as it is typed is a characteristic of a ____.
worm
keylogger
polymorphic virus
macro virus
Which is a true statement regarding adware?
Adware is always malware.
Adware is never malware.
Adware often results in pop-up advertisements.
Adware runs on a computer without the user’s consent.
Which of the following is a true statement?
A computer without an antimalware program installed is considered a system threat.
A computer without an antimalware program installed is considered a system vulnerability.
A computer without an antimalware program installed is considered hacked.
A computer without an antimalware program installed has been exploited.
Which law protects electronic medical records and personal health information?
SOX
PCI DSS
HIPAA
ECBA
A(n) ____ is a device that captures phone numbers and related information on outgoing phone calls.
ECPA
pen register
keylogger
Trojan horse
Which is the primary reason to use cookies?
To remember settings for users when returning to the site
To place malware on computers
To track every website a user opens
To provide clues to a user’s actions on their computer
A ____ occurs when an antimalware program identifies a file as malware, but the file is a valid, nonmalicious file.
false positive
false negative
true positive
true negative
Self-replicating malware is known as a ____.
rootkit
worm
macro virus
logic bomb
Which of the following search queries will allow you to search the Internet for hardware-specific keyloggers with the best result?
keylogger -hardware
Site:hardware keylogger
keylogger +hardware
keylogger -software +hardware
Which type of shredder is the best defense against dumpster diving?
strip-cut shredder
cross-cut shredder
micro-cut shredder
mini-cut shredder
Which of these is not a law instituted by the United States government?
Sarbanes-Oxley
PCI DSS
GLBA
HIPAA
Which of these statements is not true regarding the CIA triad and its implementation?
Protecting a password is done through principles in the Confidentiality portion of the CIA triad.
A historical record of changes cannot be refused or denied is a principle of the Availability portion of the CIA triad.
Ransomware violates the principle of Availability.
A hash can determine if a file’s contents changed from its original content.
Which of these legal regulations requires publicly traded companies to ensure data is not hidden, deleted, or altered?
SOX
GLBA
CFAA
ECPA
Which security domain implements policies regarding security measures for network switches?
WAN
Workstation
System
LAN
A virus that continuously changes its characteristics to avoid detection is called a(n) ____ virus.
armored
stealth
polymorphic
Trojan horse
Which of the following is true about a ransomware attack? (Choose 2)
The data is altered.
The data is removed from the computer.
The CIA principle of Availability is violated.
Data is locked with an encryption process.
The data owner’s permissions were removed from the computer.
Which statements represent elements of the three aspects of the CIA security triad? (Choose 3)
Data should be protected with a need-to-know mentality.
All data should be password protected.
Data should only be changed by authorized users.
A ransomware attack is an example of preventing legitimate access to data.
Permissions should be given to department managers to ensure data access.
Which is true regarding a secure cookie? (Choose 2)
The cookie contents are encrypted.
The cookie can only be sent with https.
The cookie can only be sent with http.
The cookie can be sent with http or https.
This malware continually changes its characteristics to avoid detection.
Polymorphic virus
Time Bomb
Macro virus
Rootkit
Worm
Malware in which the payload is delivered only on a specific date and possibly at a specific point on that day
Time Bomb
Macro virus
Rootkit
Worm
Logic Bomb
Type of malware that inserts snippets of code inside Microsoft Office type files.
Logic Bomb
Worm
Rootkit
Macro virus
Polymorphic virus
Malware type that is potentially very destructive, provides unlimited access to a computer from a remote location, and is very difficult to remove
Macro virus
Worm
Rootkit
Logic Bomb
Polymorphic virus
Malware that spreads very rapidly on a network
Logic Bomb
Worm
Rootkit
Macro virus
Polymorphic virus
Specific conditions or configurations must exist before this malware is executed
Time Bomb
Logic Bomb
Worm
Rootkit
Security domain that includes a policy that instructs employees to lock their computer when leaving their workstation
System
LAN
WAN
Workstation
Users
Domain detailing IoT devices, printers, tablets and related security policies
Workstation
WAN
LAN
Users
Policies related to users that work from home would be covered in this domain
System
LAN
WAN
Remote Access
Users
Domain that includes policies that have password and other security settings to the company’s internal routers and switches
WAN
LAN
System
Workstation
Security domain that addresses firewall settings and rules
WAN
LAN
Workstation
System
Domain in which security settings that cover web servers would be addressed
LAN
WAN
System
Workstation
