wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Cybersecurity MidTerm Exam

Total questions: 25

Worksheet time: 13mins

Name
Class
Date
1.

Who has the greastest influence over access security in a password authentication environment?

a)

Wrong

b)

Users

c)

Wrong

d)

Wrong

2.

Which of the following interpret requirements and apply them to specific situations?

a)

Wrong

b)

Wrong

c)

Standard

d)

Wrong

3.

Business continuity plans (BCPs) associated with organizational information systems should be developed primarily on the basis of:

a)

Business needs

b)

Wrong

c)

Wrong

d)

Wrong

4.

A segmented network:

a)

Wrong

b)

Consists of two or more security zones

c)

Wrong

d)

Wrong

5.

Which cybersecurity principle is most important when attempting to trace the source of malicious activity?

a)

Wrong

b)

Wrong

c)

Wrong

d)

Nonrepudiation

6.

Which of the following offers the strongest protection for wireless network traffic?

a)

Wireless Protected Access 2 (WPA2)

b)

Wrong

c)

Wrong

d)

Wrong

7.

Outsourcing poses the greatest risk to an organization when it involves:

a)

Wrong

b)

Wrong

c)

Core business functions

d)

Wrong

8.

Risk assessments should be performed:

a)

On a regular basis

b)

Wrong

c)

Wrong

d)

Wrong

9.

Maintaining a high degree of confidence regarding the integrity of evidence requires a(n):

a)

Wrong

b)

Chain of custody

c)

Wrong

d)

Wrong

10.

A firewall that tracks open connection-oriented protocol sessions is said to be:

a)

Wrong

b)

Stateless

c)

Wrong

d)

Stateful

11.

During which phase of the system development lifecycle (SDLC) should security first be considered?

a)

Wrong

b)

Design

c)

Planning

d)

Implement

12.

A cybersecurity architecture designed around the concept of a perimeter is said to be:

a)

Data-centric

b)

Wrong

c)

System-centric

d)

Wrong

13.

A passive network hub operates at which layer of the OSI model?

a)

Data Link

b)

Application

c)

Physical

d)

Network

14.

Updates in cloud-computing environments can be rolled out quickly because the environment is:

a)

Wrong

b)

Wrong

c)

Wrong

d)

Homogeneous

15.

During which phase of the six-phase incident response model is the root cause determined?

a)

Wrong

b)

Eradication

c)

Containment

d)

Wrong

16.

The attack mechanism directed against a system is commonly called a(n):

a)

Payload

b)

Wrong

c)

Wrong

d)

Wrong

17.

Where should an organization's network terminate virtual private network (VPN) tunnels?

a)

Wrong

b)

At the destination system, to prevent loss of confidentiality

c)

Wrong

d)

At the perimeter, to allow for effective ininternal monitoring

18.

In practical applications:

a)

Asymmetric key encryption is used to securely obtain symmetric keys

b)

Wrong

c)

Asymmetric key encryption is used in cases where speed is important

d)

Wrong

19.

Which two factors are used to calculate the likelihood of an event?

a)

Wrong

b)

Wrong

c)

Threat and vulnerability

d)

Wrong

20.

What kind of anti-malware program evaluates system processes based on their observed behaviors?

a)

Wrong

b)

Signature-based

c)

Wrong

d)

Heuristic

21.

A business continuity plan (BCP) is not complete unless it includes:

a)

Detailed procedures

b)

Wrong

c)

Wrong

d)

Wrong

22.

Under the US-CERT model for incident categorization, a CAT-3 incident refers to which of the following?

a)

Wrong

b)

Denial of Service (DoS)

c)

Wrong

d)

Malicious code

23.

An interoperability error is what type of vulnerability?

a)

Wrong

b)

Emergent

c)

Wrong

d)

Process

24.

Securing Supervisory Control and Data Acquisition (SCADA) systems can be challenging because they:

a)

Wrong

b)

Support critical infrastructure processes for which any risk of compromise is unacceptable

c)

Operate in specialized environments and often have non-standard design elements

d)

Wrong

25.

Virtual systems should be managed using a dedicated virtual local area network (VLAN) because:

a)

Wrong

b)

Segregation of management traffic and use triffic dramatically improves performance

c)

Insecure protocols could result in a compromise of privileged user credentials

d)

Wrong