Font size
WorksheetsCYBER SECURITY
Total questions: 18
Worksheet time: 7mins
Is Importance of Risk Management in Information Security typically defined as the process of identifying, analyzing, and responding to risks.
This process is not meant to end; as long as information exists, it will need protecting.
TRUE
FALSE
1. What are the most popular targets in the current threat landscape?
i. Computing and power resources
ii. Financial information
iii. Account information
iv. National security data
SELECT THE BEST ANSWER FOR THE QUESTION ABOVE
A. i, ii & iii
B. i & iii
C. ii & iv
D. i, ii, iii & iv
1. The Latest Threats and Exploits goes through a rigorous testing process as they grow and are developed?
TRUE
FALSE
PILIH CIRI - CIRI THREAT ACTOR.
A. Hired Hacker
B. Insider
C. Outsider
D. CyberSecurity
Analysis Method exist because it's impossible for a purely quantitative risk assessment to exist given that some issues defy number.
STATMENT YANG DI ATAS ADALAH? B. Quantitative (C)
A. Qualitative
B. Quantitative
C. Quantitative
3. Pick 1 security control categories
A. Technical
B. System
C. Security base
What would you do if you faced a problem that is beyond your expertise?
A. Transfer it to someone who knows more about it.
B. Ignore the difficulty and accept it knowing there will be a consequences
C. Avoid the problem and pretend something didn't happen
Even without risk management, your information will still be safe.
TRUE
FALSE
Do Scipt kiddies make their own tools and scripts?
YES
NO
T (a) also called logical controls , are hardware or software
installations that are implemented to monitor and prevent threats and attacks
to computer systems and services.
What will Attackers always search for within your systems and networks?
A. Exploits
B. Vulnerabilities
Without a plan for issuing security fixes to affected systems, those systems will remain vulnerable to a variety of potential threats.
What does this statement refers to?
A. Unpatched systems
B. Lack of effective anti-malware tools
1)Reasons to implement ERM/ sebab-sebab untuk melaksanakan ERM;
A. Avoiding legal trouble/ mengelakkan masalah undang-undang.
B. preventing marketing abroad/ menghalang pemasaran ke luar negara.
c. Reduce job opportunities/mengurangkan peluang pekerjaan.
The latest security technologies of machine learning threast/ teknologi terkini.
A. cloud access security/ keselamatan akses
B. Face scan/ pengimbas muka
c. Thumb print/ cetakan ibu jari
Bulatkan jawapan yang betul mengikut TERM & Description berkaitan.
A. Asset/ the intentional act of attemping to bypass one or more security services or controls of an information system.
B. Threat/ Any event or action that could pontentially cause damage to an asset or an interruption of services.
c. control/ Anything of value that could be compromised stolen or hamed including information physikal resources and reputation.
1. Anything of value that could be compromised, stolen, or harmed, including information, physical resources, and reputation.
A.Threat
B. Control
C. Asset
D. Exploit
2. Examples of ESA frameworks include:
A. National Institute of Standards and Technology Special Publication (NIST SP) 800-37
B. Develop a baseline assessment using internal resources and professional assessment software.
C. Information security supports the mission of the organization.
D. Program management.
An attacker is also known as a threat actor. It's important not to think of threat actors as some faceless, monolithic entity; on the contrary, they are as diverse as their targets.
Choose the answer best describe the above statement.
A. Motives
B. Threat Actors
C. Human Error
D. Threat Intentions
