NEW
Font size
WorksheetsInformation Assurance and Security - Prelim Quiz
Total questions: 25
Worksheet time: 6hrs 15mins
During this step, the hacker starts gathering and researching information about the target organization.
Reconnaissance
Obfuscation
Expansion
Attack
During this step, the hacker intrudes on all systems on the network using malicious programs.
Obfuscation
Attack
Expansion
Reconnaissance
During this step, hackers hide their tracks to mask the origins of the attack and safely place their exploit in a system to avoid getting detected.
Obfuscation
Reconnaissance
Attack
Expansion
In this step, the hackers use rainbow tables and similar tools, which help them with stealing credentials to upgrade their access to administrator privileges.
Expansion
Reconnaissance
Attack
Obfuscation
This individual is responsible for maintaining the security of a company's computer system.
Security Architect
Security Consultant
Ethical Hacker
Chief Information Security Officer
This individual works as an advisor and supervisor for all security measures necessary to protect a company or client's assets effectively
Security Architect
Chief Information Security Officer
Security Consultant
Ethical Hacker
It is also referred to as a white hat hacker and serves as a security expert who systematically attempts to penetrate a computer system, network, application, or other computing resources.
Ethical Hacker
Security Architect
Security Consultant
Chief Information Security Officer
This person is responsible for an organization's information and data security.
Security Architect
Security Consultant
Ethical Hacker
Chief Information Security Officer
This type of cybersecurity consists of the cyber-physical systems that modern societies rely on.
Cloud Security
Critical Infrastructure Security
Network Security
Application Security
This type of cybersecurity is more accessible over networks, causing the adoption of security measures during the development phase to be an imperative phase of the project.
Application Security
Cloud Security
Critical Infrastructure Security
Network Security
This type of cybersecurity ensures that internal networks are secured by protecting the infrastructure and inhibiting access to it.
Cloud Security
Network Security
Critical Infrastructure Security
Application Security
This type of cybersecurity is a software-based security tool that protects and monitors data in cloud resources.
Network Security
Internet of Things Security
Application Security
Cloud Security
This type of cybersecurity refers to a wide variety of critical and non-critical cyber-physical systems like appliances, sensors, televisions, Wi-Fi routers, printers, and security cameras.
Network Security
Cloud Security
Application Security
Internet of Things security
often. cybercriminals will specifically target __________ as an attack vector based on their lack of knowledge for security practices.
Processes
People
Technology
All of the above
This layer of cybersecurity ensures that IT teams have strategies in place to proactively prevent and to respond quickly and effectively in the event of a cybersecurity incident.
People
Processes
Technology
None of the above
Because majority of data users' passwords and usernames are weak, this makes it easy for hackers to get access to the information systems and compromise sensitive data of a business entity or government agency.
Deep Learning
Cloud Technology
Hardware Authentication
All of the Above
It encompasses some technologies like machine learning and artificial intelligence.
Deep Learning
Cloud Technology
Hardware Authentication
All of the Above
It is a set of rules that applies to activities for the computer and communications resources that belong to an organization.
Resource Protection
Confidentiality
Security Policy
Nonrepudiation
It is an assurance or verification that the resource at the other end of the session really is what it claims to be.
Authorization
Authentication
Integrity
Confidentiality
This is an assurance that a person or computer at the other end of the session has permission to carry out the request.
Authorization
Authentication
Integrity
Confidentiality
It ensures that only authorized users can access objects on the system
Integrity
Confidentiality
Authorization
Resource Protection
This is an assurance that sensitive information remains private and is not visible to an eavesdropper.
Integrity
Confidentiality
Nonrepudiation
Authentication
It provides a set of desired cybersecurity activities and outcomes using a common language that is easy to understand.
Framework Core
Framework Implementation Tiers
Framework Profiles
None of the above
These are primarily used to identify and prioritize opportunities for improving cybersecurity at an organization.
Framework Core
Framework Implementation Tiers
Framework Profiles
None of the above
These assist organizations by providing context on how an organization views cybersecurity risk management.
Framework Core
Framework Implementation Tiers
Framework Profiles
None of the above
