wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

CISSP Asset Quiz

Total questions: 22

Worksheet time: 11mins

Name
Class
Date
1.

Complete this sentence: "The longer you keep data, …"

a)
the more likely it is to become outdated or irrelevant
b)
the more accurate it becomes
c)
the less likely it is to be compromised
d)

the more liable you are

2.

True or false: all data should be handled in the same manner.

a)

True

b)

False

3.

True or false: data is the only asset that needs to be classified.

a)

True

b)

False

4.

What are the four basic steps of the Information Life Cycle?

a)
Development, Application, Retention, Removal
b)

Acquisition, Classification and Marking, Use and Archival, Destruction

c)
Creation, Use, Maintenance, Disposal
d)
Generation, Utilization, Preservation, Elimination
5.

Who should identify the classification of an information asset?

a)
IT department
b)

CISO

c)

Information owner

d)

CISM

6.

After information is acquired by an organization what three steps should be taken?

a)
Research, Test, Conclude
b)
Collect, Organize, Present
c)

Attach system metadata, process metadata, and index the data

d)
Evaluate, Plan, Execute
7.

What is degaussing?

a)
Degaussing is the process of decreasing or eliminating a remnant magnetic field.
b)
Degaussing is the process of converting sound waves into magnetic fields.
c)
Degaussing is the process of increasing a remnant magnetic field.
d)

Degaussing is the process of magnetic scrambling of the data on a tape or disk.

8.

What is Data Leakage?

a)

Data leakage is the the unauthorized transmission of information to an external destination.

b)
Data leakage is the process of securing data to prevent unauthorized access.
c)
Data leakage is the practice of backing up data regularly to prevent loss.
d)

Data leakage is the unauthorized transaction of data from one location to another.

9.

What is Data Remanence?

a)
Data remanence refers to the speed at which data is accessed
b)
Data remanence is the process of creating new data from scratch
c)
Data remanence is the encryption of data during transmission
d)
Data remanence is the residual representation of data that remains even after attempts have been made to remove or erase the data.
10.

Who is responsible for checking to see if controls are being implemented properly?

a)

Auditor

b)

Supervisor

c)
Risk management team
d)

CISO

11.

Where should Data Marking be located on documents?

a)
Center of the page
b)
First paragraph
c)
Footer or Header
d)

The cover and inside

12.

What is Asset Security?

a)
Asset Security is not important in cybersecurity.
b)
Asset Security focuses on maximizing profits.
c)

Asset Security is the concept of identifying what assets you have and determine what types of controls are appropriate for each.

d)
Asset Security is related to physical security only.
13.

What is a Data Backup?

a)
A data backup is a copy of data stored separately from the original data to protect against data loss.
b)
A data backup is a process of compressing data to save storage space.
c)
A data backup is a software used to delete data permanently.
d)
A data backup is a physical device used to access data remotely.
14.

Erasing, purging, and degaussing are examples of what?

a)
Backup strategies
b)
Encryption techniques
c)

Data destruction

d)
Formatting methods
15.

What is the best way to ensure data privacy?

a)
Leaving data unencrypted
b)
Never updating security measures
c)
Sharing sensitive information with everyone
d)

Limit the amount of data collected

16.

In order to determine what information protection to apply to given information, what must you know first?

a)
Color of the information
b)

The classification level of the data

c)
Weight of the information
d)
Size of the information
17.

What is "single pass" data overwriting?

a)
A method of encrypting data without overwriting it
b)
A method of compressing data to save storage space
c)

A method of data being overwritten once with a "1" or a "0"

d)
A method of duplicating data instead of erasing it
18.

Roles and responsibilities for data classification should be contained in what document?

a)
Data Classification Policy
b)
Data Classification Guidelines
c)
Data Classification Procedure
d)
Data Classification Manual
19.

What is Data Archival?

a)
Data archival is the process of deleting all data from a system.
b)
Data archival is the process of encrypting data for immediate use.
c)
Data archival is the process of sharing data with unauthorized parties.
d)

Data archival is a copy of data that is no longer in use, used in case the data is needed sometime in the future.

20.

You need to declassify a data asset. Where should you look for guidance?

a)
Ask a random stranger on the street
b)

Your supervisor

c)
Check the weather forecast
d)

Your organization's policies and procedures

21.

Labeling data with the classification level is an example of what?

a)

E-Discovery

b)

Data Maintenance

c)

Data Sharing

d)

Data Marking

22.

Who is responsible for maintaining data and implementing data controls?

a)
Customer service representatives
b)

CISO

c)

Data Custodian

d)
IT department