wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cyber Security

Total questions: 25

Worksheet time: 13mins

Name
Class
Date
1.

What security implementation principle is used for

granting users only the rights that are necessary for

them to perform their work? (Information Security &

Risk Management Domain) a) Discretionary

a)

Access

b)

Least Privilege

c)

Mandatory Access

d)

Separation of Duties

2.

In mandatory access control, what determines the assignment of data classifications? (Information Security & Risk Management Domain)

a)

The analysis of the users in conjunction with the audit department

b)

The assessment by the information security department

c)

The user’s evaluation of a particular information element

d)

A security classification policy / guideline

3.

Systemic risk the risk of

a)

Failure of a bank, which is not adhering to regulations

b)

Failure of two banks simultaneously due to bankruptcy of one bank

c)

Where a group of banks fail due to contagion effect

d)

Failure of entire banking system

4.

As a security manager, how would you explain the primary goal of a security awareness program to senior management? (Information Security & Risk Management Domain)

a)

Provide a vehicle for communicating security procedures

b)

Provide a clear understanding of potential risk and exposure

c)

Provide a forum for disclosing exposure and risk analysis

d)

Provide a forum to communicate user responsibilities

5.

Which statement below most accurately reflects the goal of risk mitigation? (Information Security & Risk Management Domain)

a)

Defining the acceptable level of risk the organization can tolerate, then reduce risk to that level.

b)

Analyzing and removing all vulnerabilities and threats to security within the organization.

c)

Defining the acceptable level of risk the organization can tolerate, and assigning any costs associated with loss or disruption to a third party such as an insurance carrier.

d)

Analyzing the effects of a business disruption and preparing the company’s response.

6.

Which of the following are the Cyber crimes ?

1). Cyber crimes against persons.

2) . Cyber crimes against property.

3). Cyber crimes against government.

4). Cyber crimes against animal?

a)

1, 2, 3 only

b)

2, 3, 4 only

c)

1, 3, 4 only

d)

2, 3 only

7.

The kind of crime involves altering raw data just before the computer processes it and then changing it back after the processing is completed_____

a)

Data diddling

b)

Data tampering

c)

Salami attacks

d)

None of above

8.

As a security manager, how would you explain the primary goal of a security awareness program to senior management? (Information Security & Risk Management Domain)

a)

Provide a vehicle for communicating security procedures

b)

Provide a clear understanding of potential risk and exposure

c)

Provide a forum for disclosing exposure and risk analysis

d)

Provide a forum to communicate user responsibilities

9.

As an information systems security manager (ISSM), how would you explain the purpose a system security policy? (Information Security & Risk Management Domain)

a)

A definition of the particular settings that have been determined to provide optimum security

b)

A set of brief, high-level statements that defines what is and is not permitted during the operation of the system

c)

A definition of those items that must be excluded on the system

d)

A listing of tools and applications that will be used to protect the system

10.

A transaction where financial securities are issued against the cash flow generated from a pool of assets is called

a)

Securitization

b)

Credit Default Swaps

c)

Credit Linked Notes

d)

Total Return Swaps

11.

What are the two basic types of attacks ?

a)

Active

b)

Passive

c)

DoS

d)

Both 1 & 2

12.

What is the punishment in India for stealing computer documents, assets or any software’s source code from any organization, individual, or from any other means?

a)

6 months of imprisonment and a fine of Rs. 50,000

b)

1 year of imprisonment and a fine of Rs. 100,000

c)

2 years of imprisonment and a fine of Rs. 250,000

d)

3 years of imprisonment and a fine of Rs. 500,000

13.

Download copy, extract data from an open system done fraudulently is treated as _________

a)

cyber-warfare

b)

cyber-security act

c)

data-backup

d)

Cyber-crime

14.

_____________ is a code injecting method used for attacking the database of a system / website.

a)

HTML injection

b)

SQL Injection

c)

Malicious code injection

d)

XML Injection

15.

Which of this is an example of physical hacking?

a)

Remote Unauthorised access

b)

Inserting malware loaded USB to a system

c)

SQL Injection on SQL vulnerable site

d)

DDoS (Distributed Denial of Service) attack

16.

___________ is a violent act done using the Internet, which either threatens any technology user or leads to loss of life or otherwise harms anyone in order to accomplish political gain.

a)

Cyber-warfare

b)

Cyber campaign

c)

Cyber-terrorism

d)

Cyberattack

17.

If anyone publishes sexually explicit type digital content, it will cost that person imprisonment of _________ years.

a)

2

b)

3

c)

4

d)

5

18.

Cyber-laws are incorporated for punishing all criminals only

a)

True

b)

False

19.

Which of the following is not a type of cyber crime?

a)

Data theft

b)

Forgery

c)

Damage to data and systems

d)

Installing antivirus for protection

20.

Which of the following is not done by cyber criminals?

a)

Unauthorized account access

b)

Mass attack using Trojans as botnets

c)

Email spoofing and spamming

d)

Report vulnerability in any system

21.

What is Firewall?

a)

firewalls are network based security measures that control the flow of incoming and outgoing traffic

b)

firewall is a program that encrypts all programs that access the internet

c)

a firewall is a program that keeps other programs from using the internet

d)

firewall are the interrupts that automatically disconnect from the internet when a threat appears.

22.

VPN is abbreviated as __________

a)

Visual Private Network

b)

Virtual Protocol Network

c)

Virtual Private Network

d)

Virtual Protocol Networking

23.

BitLocker is available in the _____ operating system.

a)

Mac

b)

Linux

c)

Windows

d)

Android

24.

______________ is an internet scam done by cybercriminals where the user is convinced digitally to provide confidential information.

a)

Phishing attack

b)

DoS attack

c)

Website attack

d)

MiTM attack

25.

Which type of hacker represents the highest risk to your network?

a)

Black-hat hackers

b)

Grey-hat hackers

c)

Script kiddies

d)

Disgruntled employees