WorksheetsPrinciple of Information Security - Mid Term Test (2023)
Total questions: 27
Worksheet time: 14mins
________ is the process of retaining or keeping of data at a secure place for long-term storage
Data archiving
Archival Storage
Disposal of Data
Backup
Which of the following is not a form of data archiving?
Online
Offline
Storage archiving
Cloud-storage
Which of the following is a programs that copy themselves throughout a computer or network?
Worms
Trojans
Viruses
Which of the following are objectives of Malware?
Provide remote control for an attacker to use an infected machine.
Investigate the infected user’s local network.
Steal sensitive data
All of the above
Which is true about Worms ?
Self-replicating viruses that exploit security vulnerabilities to automatically spread themselves across computers and networks.
Worms on existing programs and can only be activated when a user opens the program
Worms vary and hide themselves in the operating system
All of the above
What is true about data security?
Data security is the protection of programs and data in computers and communication systems against unauthorized access
It refers to the right of individuals or organizations to deny or restrict the collection and use of information
Data security requires system managers to reduce unauthorized access to the systems by building physical arrangements and software checks.
All of the above
Compromising confidential information comes under _________
Bug
Threat
Vulnerability
Attack
Which of the following is not a type of cyber crime?
Data theft
Forgery
Damage to physical data and systems
What is true about data security?
Data security is the protection of programs and data in computers and communication systems against unauthorized acces
It refers to the right of individuals or organizations to deny or restrict the collection and use of information
It refers to the right of individuals or organizations to deny or restrict the collection and use of information
All of the above
In general how many key elements constitute the entire security structure?
1
2
3
4
The full form of EDR is _______
Endpoint Detection and recovery
Early detection and response
Endpoint Detection and response
Endless Detection and Recovery
Lack of access control policy is a _____________
Bug
Threat
Vulnerability
Attack
Which of the following will not help us for the secure disposal of data?
Destroy the data
Destroy the device
Keep careful records
Destroy access
Which of the following is most used rule for backup?
4-2-1 Rule
3-2-1 Rule
4-3-2 Rule
4-3-1 Rule
From the options below, which of them is not a vulnerability to information security?
Flood
Without deleting data, disposal of storage media
Unchanged default password
Latest patches and updates not done
Malware is short form of ?
Malicious hardware
Malicious software
Both A and B
All of the above
Which of the following malware do not replicate or reproduce through infection?
Worms
Trojans
Viruses
Rootkits
One common way to maintain data availability is __________
Data clustering
Data backup
Data recovery
Data Altering
Cyber-laws are incorporated for punishing all criminals only.
True
False
Which of the following are data security consideration?
Backups
Archival Storage
Disposal of Data
All of the above
What is a backup?
Restoring the information backup
An exact copy of a system’s information
The ability to get a system up and running in the event of a system crash or failure
All of the above
Data ___________ is used to ensure confidentiality.
Encryption
Locking
Deleting
Backup
_______ technology is used for analyzing and monitoring traffic in network and information flow
Cloud access security brokers (CASBs)
Managed detection and response (MDR)
Network Security Firewall
Network traffic analysis (NTA)
_______ is the practice and precautions taken to protect valuable information from unauthorized access, recording, disclosure or destruction.
Network Security
Database Security
Information Security
Physical Security
Which of the following information security technology is used for avoiding browser-based hacking?
Anti-malware in browsers
Remote browser access
Adware remover in browsers
Incognito mode in a browser
Which of the following are objectives of Malware?
Provide remote control for an attacker to use an infected machine.
Investigate the infected user’s local network
Steal sensitive data
All of the above
From the options below, which of them is not a threat to information security?
Disaster
Eavesdropping
Information leakage
Unchanged default password
