wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Information Assurance and Security - Prelim Quiz

Total questions: 25

Worksheet time: 6hrs 15mins

Name
Class
Date
1.

During this step, the hacker starts gathering and researching information about the target organization.

a)

Reconnaissance

b)

Obfuscation

c)

Expansion

d)

Attack

2.

During this step, the hacker intrudes on all systems on the network using malicious programs.

a)

Obfuscation

b)

Attack

c)

Expansion

d)

Reconnaissance

3.

During this step, hackers hide their tracks to mask the origins of the attack and safely place their exploit in a system to avoid getting detected.

a)

Obfuscation

b)

Reconnaissance

c)

Attack

d)

Expansion

4.

In this step, the hackers use rainbow tables and similar tools, which help them with stealing credentials to upgrade their access to administrator privileges.

a)

Expansion

b)

Reconnaissance

c)

Attack

d)

Obfuscation

5.

This individual is responsible for maintaining the security of a company's computer system.

a)

Security Architect

b)

Security Consultant

c)

Ethical Hacker

d)

Chief Information Security Officer

6.

This individual works as an advisor and supervisor for all security measures necessary to protect a company or client's assets effectively

a)

Security Architect

b)

Chief Information Security Officer

c)

Security Consultant

d)

Ethical Hacker

7.

It is also referred to as a white hat hacker and serves as a security expert who systematically attempts to penetrate a computer system, network, application, or other computing resources.

a)

Ethical Hacker

b)

Security Architect

c)

Security Consultant

d)

Chief Information Security Officer

8.

This person is responsible for an organization's information and data security.

a)

Security Architect

b)

Security Consultant

c)

Ethical Hacker

d)

Chief Information Security Officer

9.

This type of cybersecurity consists of the cyber-physical systems that modern societies rely on.

a)

Cloud Security

b)

Critical Infrastructure Security

c)

Network Security

d)

Application Security

10.

This type of cybersecurity is more accessible over networks, causing the adoption of security measures during the development phase to be an imperative phase of the project.

a)

Application Security

b)

Cloud Security

c)

Critical Infrastructure Security

d)

Network Security

11.

This type of cybersecurity ensures that internal networks are secured by protecting the infrastructure and inhibiting access to it.

a)

Cloud Security

b)

Network Security

c)

Critical Infrastructure Security

d)

Application Security

12.

This type of cybersecurity is a software-based security tool that protects and monitors data in cloud resources.

a)

Network Security

b)

Internet of Things Security

c)

Application Security

d)

Cloud Security

13.

This type of cybersecurity refers to a wide variety of critical and non-critical cyber-physical systems like appliances, sensors, televisions, Wi-Fi routers, printers, and security cameras.

a)

Network Security

b)

Cloud Security

c)

Application Security

d)

Internet of Things security

14.

often. cybercriminals will specifically target __________ as an attack vector based on their lack of knowledge for security practices.

a)

Processes

b)

People

c)

Technology

d)

All of the above

15.

This layer of cybersecurity ensures that IT teams have strategies in place to proactively prevent and to respond quickly and effectively in the event of a cybersecurity incident.

a)

People

b)

Processes

c)

Technology

d)

None of the above

16.

Because majority of data users' passwords and usernames are weak, this makes it easy for hackers to get access to the information systems and compromise sensitive data of a business entity or government agency.

a)

Deep Learning

b)

Cloud Technology

c)

Hardware Authentication

d)

All of the Above

17.

It encompasses some technologies like machine learning and artificial intelligence.

a)

Deep Learning

b)

Cloud Technology

c)

Hardware Authentication

d)

All of the Above

18.

It is a set of rules that applies to activities for the computer and communications resources that belong to an organization.

a)

Resource Protection

b)

Confidentiality

c)

Security Policy

d)

Nonrepudiation

19.

It is an assurance or verification that the resource at the other end of the session really is what it claims to be.

a)

Authorization

b)

Authentication

c)

Integrity

d)

Confidentiality

20.

This is an assurance that a person or computer at the other end of the session has permission to carry out the request.

a)

Authorization

b)

Authentication

c)

Integrity

d)

Confidentiality

21.

It ensures that only authorized users can access objects on the system

a)

Integrity

b)

Confidentiality

c)

Authorization

d)

Resource Protection

22.

This is an assurance that sensitive information remains private and is not visible to an eavesdropper.

a)

Integrity

b)

Confidentiality

c)

Nonrepudiation

d)

Authentication

23.

It provides a set of desired cybersecurity activities and outcomes using a common language that is easy to understand.

a)

Framework Core

b)

Framework Implementation Tiers

c)

Framework Profiles

d)

None of the above

24.

These are primarily used to identify and prioritize opportunities for improving cybersecurity at an organization.

a)

Framework Core

b)

Framework Implementation Tiers

c)

Framework Profiles

d)

None of the above

25.

These assist organizations by providing context on how an organization views cybersecurity risk management.

a)

Framework Core

b)

Framework Implementation Tiers

c)

Framework Profiles

d)

None of the above