Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

CO2521 Recap Week 09

Total questions: 22

Worksheet time: 24mins

Name
Class
Date
1.

Information Security often refers to the CIA Triad, what does the 'C' stand for?

a)

Conservation

b)

Complexity

c)

Confidentiality

d)

Checkguard

2.

Information Security often refers to the CIA Triad, what does the 'A' stand for?

a)

Authentication

b)

Authority

c)

Availability

d)

Access

3.

Which part of the CIA Triad ensures that information is present at the time when authorized parties require it.

a)

Authorisation

b)

Authentication

c)

Confidentiality

d)

Availalibility

4.

​ ​ (a)   is an example of physical asset

Choose from the below words
The web server
The web pages
network traffic
the user data
5.

​ ​ (a)   is the Intentional or unintentional act that causes damage/compromise information or systems

Choose from the below words
Attack
Exploit
Loss
Threat
6.

​ ​ (a)   action that has the potential to adversely affect operations and assets.

Choose from the below words
Threat
Attack
Exploit
Loss
7.

​ (a)   is the probability that a ​ (b)   will be exploited

Choose from the below words
Risk
Vulnerability
Threat
Malware
Report
Loss
8.

Match the following

a)

Authenication

1.

The process by which a control establishes whether a user is the entity it claims to be.

b)

Accountability

2.

The mechanism that records all actions

c)

Authorisation

3.

the mechnanism that represents the matching of authenicated users to assets and access levels.

9.

Which of these is NOT a direct threat to Integrity?

a)

Unauthorised access.

b)

Malicious modification

c)

ntentional replacement

d)

System back doors

e)

Sniffing

10.

Events that lead to availability violation include; (select two)

a)

Failing to fully authenticate a remote system before transferring data.

b)

Under-allocating resources

c)

Mislabelling or incorrectly classifying objects

d)

None of these

11.

Process of verifying a claimed identity is ​ ​ (a)   ​

Choose from the below words
authenication
authorisation
accounting
auditing
biometrics
12.

Authenication +​ (a)   + ​ Accounting = AAA

Choose from the below words
Authorisation
Auditing
Access
ACLs
Admissions
All of these
13.

Which of these is not a protective mechanism for AAA?

a)

Layering

b)

Encryption

c)

Abstraction

d)

Backups

14.

With Cryptography ​ (a)   can be ensured since it ​ (b)   information can only be viewed by those who have been provided the key

Choose from the below words
Confidentiality
encrypts
hides
Hashes
make unique
Accessibility
plaintexts
backs up
15.

​ (a)   – actions that illustrate compliance with policies

Choose from the below words
Practice
Procedure
Standard
Baseline
16.

Once risks have been mitigated and security put in place, a ​ (a)   is formally reviewed and agreed upon, after which all further comparisons and development are measured against it

Choose from the below words
baseline
standard policy
incident response plan
disaster recovery
17.

​ (a)   –main responsibility is to guarantee the physical and technical security

Choose from the below words
Chief Security Officer (CSO)
Chief Information Officer (CIO)
Chief Executive Officer (CEO)
18.

Which of these is not a principle of ISM?

a)

Planning

b)

Protection

c)

Projects

d)

Policy

e)

Pricing

19.

​ (a)   in InfoSec are operations that are specifically managed as ​ (b)   entities.

Choose from the below words
Programs
separate
combined
complexe
Policies
Projects
People
20.

Which of the following is not part of the Information Life Cycle ?

a)

Acquisition

b)

Use

c)

Archival

d)

Disposal

e)

Contact Details

21.

Please these in the correct order for classifing information ;

a)

Define classification levels

b)

Specify the criteria that will determine how data is classified

c)

Identify data owners who will be responsible for classifying data

d)

Identify the data custodian who will be responsible for maintaining data and

its security level

e)

Indicate the security controls, or protection mechanisms, required for each

classification level

1)
2)
3)
4)
5)
22.

Which of these could be considered compromises to Intellectual Property ?

a)

Software Piracy

b)

Advanced Persistent Attack

c)

Mudslide