Font size
WorksheetsASM655 Chapter 1 Quiz
Total questions: 20
Worksheet time: 20mins
Organizations should be aware that information security planning and budgetary choices encompass three different groups of;
Professionals in the realm of information technology
Individuals within the realm of cybersecurity
Individuals from other departments within the organization
Freelance or external contractor hired in the organization
"Shields the organization's information assets against the numerous threats they encounter."
This statement refer to:
The information security community
The IT community
The general business community
The clients community
Which of the following are the areas of security?
Network security
Security Guard
Communications security
Operations security
Cyber security
Information security, often abbreviated as InfoSec, is centered on safeguarding information and its inherent value-adding attributes, which encompass confidentiality, (a) , and availability. This entails the utilization of technology to store and transmit information, alongside a range of protective measures including policies, training and awareness initiatives, and technology itself.
In the figure components of information security what was missing?
Computer Security
Data Security
Network Security
Cyber Security
"An attribute of information that characterizes its state as undivided, intact, and free from corruption."
This statement refer to;
Confidentiality
Integrity
Security
Availability
"An inherent flaw in an asset or the systems responsible for its protection." This statement refer to;
Attack
Exploit
Phishing
Vulnerability
"After an intruder gains entry to a system, the subsequent objective is to elevate privileges (privilege escalation) in order to obtain administrator- or root-level control."
This statement refer to;
Sabotage or Vandalism
Deviations in Quality of Service
Espionage or Trespass
Information Extortion
"Packet sniffers, Spoofing,
Pharming, and man-in-the-middle attacks"
What kind of attacks above?
Malware
Cyberterrorism
Denial-of-Service (DoS)
Communication interception
Which categories of the following falls under Deadly Sins of Software Security?
Web Application
Implementation
Cryptographic
Networking
"The collection of duties and procedures carried out by the board and executive management to provide strategic guidance, confirm the attainment of objectives, ensure effective risk management, and oversee the responsible utilization of the enterprise's resources." This statement refer to;
(a)
"A (a) is an organizational member tasked with organizing and overseeing resources, coordinating task completion, and fulfilling multiple roles essential for achieving specific objectives."
"Promotes the execution of planning and organizing tasks, encompassing the supervision of employee conduct, performance, punctuality, and attitude, all the while guaranteeing the fulfillment of assigned tasks, goals, and objectives." is refer to;
Planning
Organizing
Leading
Controlling
What is missing here for six Ps the Principles of Information Security Management.
Policy
Planning
Project management
Protection
Programs
(a)
"achieved through a series of risk management procedures, encompassing risk evaluation and control, in addition to protective measures, technologies, and tools." This statement refer to which six Ps?
(a)
Which agency with the objectives of securing and strengthening Malaysia's resilience in facing the threats of cyber attacks, by co-ordinating and consolidating the nation's best experts and resources in the field of cyber security.
CyberSecurity Malaysia
NACSA
Majlis Keselamatan Negara
MCMC
Performs 24x7 computer security incident response services to any user, company, government agency or organisation. What services is mentioned above?
Cyber999
MyCERT
CyberGuru
MyCSC
Increases awareness of online safety and security issues among Malaysians while harnessing the benefits of cyberspace. What services offered the above things?
Cyber999
MyCERT
CyberGuru
CyberSAFE
The agency on the picture is in what ministry?
(a)
(a) operates like all other management units,
but the goals and objectives of the InfoSec management team are
different in that they focus on the secure operation of the
organization
