NEW
Font size
S
M
L
XL
WorksheetsISC2 - CC - Chapter 1 - Module 1
Total questions: 26
Worksheet time: 13mins
Name
Class
Date
1.
Which of the following concepts represents the three fundamental principles of information security?
a)
CAA Framework
b)
CIA Triad
c)
BIA Triangle
d)
RSA Model
2.
The CIA Triad helps organizations to achieve a balance between:
a)
Risk assessment and risk management
b)
Security, privacy, and compliance
c)
Technology, people, and processes
d)
Confidentiality, integrity, and availability
3.
Which principle of the CIA Triad refers to the protection of sensitive information from unauthorized disclosure?
a)
Confidentiality
b)
Integrity
c)
Availability
d)
Authorization
4.
Which principle of the CIA Triad ensures that data is reliable, accurate, and consistent?
a)
Confidentiality
b)
Integrity
c)
Availability
d)
Authentication
5.
The principle of "Integrity" in the CIA Triad ensures that data is:
a)
Secret and hidden
b)
Accessible to authorized users
c)
Free from unauthorized changes or modifications
d)
Regularly backed up
6.
Which principle of the CIA Triad ensures that data is accessible and usable by authorized individuals?
a)
Confidentiality
b)
Integrity
c)
Availability
d)
Authentication
7.
Which principle of the CIA Triad ensures that authorized users can access data and systems when needed?
a)
Confidentiality
b)
Integrity
c)
Availability
d)
Authorization
8.
What is the process of claiming an identity called?
a)
Authorization
b)
Authentication
c)
Identification
d)
Non-repudiation
9.
What does an identification process establish?
a)
The authenticity of the user
b)
The privileges and access levels of the user
c)
The unique identity of the user
d)
The integrity of the user's data
10.
What does the process of authentication verify?
a)
The unique identity of the user
b)
The privileges and access levels of the user
c)
The authenticity of the user
d)
The integrity of the user's data
11.
Which of the following belong to single-factor authentication category?
a)
Password and badge
b)
Password and OTP
c)
Password and PIN code
d)
Security token and retinal scan
12.
What does multi-factor authentication require for authentication?
a)
Two different biometric factors
b)
Two different knowledge-based factors
c)
Two different factors from different categories
d)
Two different factors from the same category
13.
Which of the following is an example of a knowledge-based authentication factor?
a)
Fingerprint scan
b)
Smart card
c)
PIN code
d)
Retinal scan
14.
Which of the following is a common factor used in knowledge-based authentication?
a)
Retinal scan
b)
Smart card
c)
Security question
d)
Voice recognition
15.
Which of the following is an example of a possession-based authentication factor?
a)
Password
b)
Fingerprint scan
c)
Security token
d)
Security question
16.
Which of the following is an example of a something you have authentication factor?
a)
PIN
b)
Face recognition
c)
Security question
d)
Badge
17.
Which of the following is an example of an inherence-based authentication factor?
a)
Password
b)
Smart card
c)
Retinal scan
d)
Security question
18.
What is the purpose of biometric authentication?
a)
Verify the user's ownership of a specific object
b)
Validate the user's knowledge of specific information
c)
Authenticate the user based on unique physical or behavioral traits
d)
Confirm the user's authorization for specific actions
19.
Which principle that involves granting or restricting access to resources based on user privileges?
a)
Confidentiality
b)
Integrity
c)
Availability
d)
Authorization
20.
Which of the following is true about authorization?
a)
It is the same as authentication
b)
It ensures the confidentiality of data
c)
It verifies the user's identity
d)
It grants or restricts access to resources
21.
What is non-repudiation in the context of information security?
a)
The process of identifying an individual or entity
b)
The process of granting or restricting access to resources
c)
The process of ensuring the integrity of data
d)
The process of preventing denial or dispute of actions or transactions
22.
How does non-repudiation help in legal and contractual matters?
a)
It guarantees confidentiality of sensitive information
b)
It ensures the availability of critical systems
c)
It provides evidence to prove the integrity of data
d)
It prevents parties from denying their involvement in actions or transactions
23.
Which regulation provides a framework for data protection and privacy in the European Union?
a)
HIPAA
b)
CCPA
c)
GDPR
d)
NIST
24.
What is the purpose of the General Data Protection Regulation (GDPR)?
a)
To protect the privacy and personal data of individuals in the European Union
b)
To govern data protection in the United States
c)
To regulate data sharing among international organizations
d)
To promote data monetization practices
25.
What does HIPAA stand for?
a)
Health Insurance Portability and Accountability Act
b)
Health Information Privacy and Accountability Act
c)
Health Information Protection and Administration Act
d)
Health Insurance Privacy and Administration Act
26.
Which sector is primarily governed by HIPAA regulations?
a)
Financial services
b)
Education
c)
Healthcare
d)
Telecommunications
Reset
