wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Introduction to Cybersecurity

Total questions: 20

Worksheet time: 20mins

Name
Class
Date
1.

Anny recently implemented an intrusion prevention system designed to block common network attacks from affecting his organization. What type of risk management strategy is Anny pursuing?

a)

Risk Acceptance

b)

Risk Avoidance

c)

Risk Mitigation

d)

Risk Transference

2.

Which of the following principles expects an individual to behave reasonably under any given circumstance?

a)

Due Diligence

b)

Separation of Duties

c)

Due Care

d)

Least Privilege

3.

What type of malware is characterized by spreading from system to system under its own power by exploiting vulnerabilities that do not require user intervention?

a)

Trojan Horse

b)

Virus

c)

Logic Bomb

d)

Worm

4.

Which one of the following security programs is designed to establish a minimum standard common denominator of security understanding?

a)

Training

b)

Education

c)

Indoctrination

d)

Awareness

5.

Which one of the following is an example of physical infrastructure hardening?

a)

Antivirus Software

b)

Hardware-based Network Firewall

c)

Two Factor-Authentication

d)

Fire Suppression System

6.

Which information security goal is impacted when an organization experiences a DoS or DDoS attack?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Denial

7.

What is the best way to provide accountability for the use of identities?

a)

Logging

b)

Authorization

c)

Digital Signatures

d)

Type 1 Authentication

8.

Management support is critical to the success of a business continuity plan. Which of the following should be provided to the management to obtain their support?

a)

Business Case

b)

Business Impact Analysis

c)

Risk Analysis

d)

Threat Report

9.

Which of the following is a critical first step in disaster recovery and contingency planning?

a)

Plan Testing and Drills

b)

Complete a Business Impact Analysis

c)

Determine Offsite Backup Facility Alternatives

d)

Organize and Create Relevant Documentation

10.

What type of encryption is typically used for data at rest?

a)

Asymmetric Encryption

b)

Symmetric Encryption

c)

DES

d)

OTP

11.

If Harry's organization requires him to log in with his username, a PIN, a password, and a fingerprint scan, how many distinct types of factors has he used?

a)

One

b)

Two

c)

Three

d)

Four

12.

Mr. A has worked in human relations, payroll, and customer service roles in his company over the past few years. What type of process should his company perform to ensure that he has appropriate rights?

a)

Reprovisioning

b)

Account Review

c)

Privilege Creep

d)

Account Revocation

13.

Which one of the following cryptographic goals protects against the risks posed when a device is lost or stolen?

a)

Non-repudiation

b)

Authentication

c)

Integrity

d)

Confidentiality

14.

All of the following are ways of addressing risk, except:

a)

Acceptance

b)

Reversal

c)

Mitigation

d)

Transfer

15.

Which of the following should include the process of hardening a device?

a)

Encryption the OS

b)

Updating and Patching the System

c)

Using Video Cameras

d)

Performing through Personal Background Checks

16.

The cloud deployment model that features ownership by a cloud provider, with services offered to anyone who wants to subscribe, is known as:

a)

Private

b)

Public

c)

Hybrid

d)

Latent

17.

It is important to classify and determine the relative sensitivity of assets to ensure that:

a)

The cost of protection is in proportion to the sensitivity

b)

Highly sensitive assets are protected

c)

The cost of controls is minimized

d)

Countermeasures are proportional to the risk

18.

What is the most important factor in the successful implementation of an enterprisewide information security program?

a)

Realistic Budgets Estimates

b)

Security Awareness

c)

Support of Senior Management

d)

Recalculation of the work factor

19.

Which of the following is the best approach to obtain senior management commitment to the information security program?

a)

Describe the reduction of the risk

b)

Present the emerging threat environment

c)

Benchmark against other enterprises

d)

Demonstrate the alignment of the program to business objectives

20.

The primary focus of the change control process is to ensure that the changes are:

a)

Authorized

b)

Applied

c)

Documented

d)

Tested