wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

IAS 2 FINAL EXAMINATION

Total questions: 85

Worksheet time: 45mins

Name
Class
Date
1.

What does the principle of "least privilege" imply?

a)

A. Users should have access to all resources  

b)

B. Users should have the minimum access necessary to perform their job functions

c)

C. Security should be implemented through hidden mechanisms

d)

D. Security should be based on the user's rank

2.

What is a security policy?

a)

A. A set of guidelines for aesthetic design         

b)

B. A document outlining the rules and procedures for protecting assets

c)

C. A software tool for managing security

d)

D. A list of all users and their permissions

3.

In the context of security design, what does CIA stand for?

a)

A. Confidentiality, Integrity, Availability                             

b)

B. Central Intelligence Agency

c)

C. Confidentiality, Information, Authentication              

d)

D. Control, Integrity, Access

4.

What is the purpose of a demilitarized zone (DMZ) in network security?

a)

A. To store backup data                                                        

b)

   B. To host internal company resources

c)

C. To provide an additional layer of security for external-facing services

d)

D. To monitor employee activities

5.

What is a firewall?

a)

A. A physical barrier to prevent unauthorized entry

b)

B. A system designed to prevent unauthorized access to or from a private network

c)

C. A software for managing user credentials

d)

D. An encryption technique

6.

Which of the following best describes a "honeypot"?

a)

A. A security mechanism that records all network traffic

b)

B. A system designed to attract and trap potential attackers

c)

C. A database of known security threats

d)

D. A method for securing wireless networks

7.

What does the term "asymmetric cryptography" refer to?

a)

A. Cryptography using the same key for encryption and decryption

 

b)

B. Cryptography using different keys for encryption and decryption

c)

C. Cryptography without any keys

d)

D. Cryptography using hash functions

8.

What is the purpose of a hash function in cryptography?

a)

A. To encrypt data                        

b)

B. To compress data

c)

C. To generate a unique fixed-size output from variable-size input data

d)

D. To create encryption keys

9.

What does the term "public key" refer to in asymmetric cryptography?

a)

A. A key used only for decryption                          

b)

B. A key that is kept secret and never shared

c)

C. A key that is shared publicly and used for encryption

d)

D. A key used for both encryption and decryption

10.

What is the primary goal of physical security?

a)

A. To prevent unauthorized access to physical resources

b)

B. To encrypt sensitive data      

c)

C. To monitor network traffic

d)

D. To backup data regularly

11.

What does a CCTV system primarily help with?

a)

A. Data encryption        

b)

B. Physical surveillance

c)

C. Network security     

d)

D. Software updates

12.

Which type of physical security measure involves controlling access to the premises using key cards or biometric scanners?

a)

A. Surveillance

b)

B. Perimeter security   

c)

C. Access control          

d)

D. Environmental design

13.

What is a mantrap used for in physical security?

4 lines
14.

What is the primary purpose of having security lighting around a facility?

a)

A. To enhance aesthetic appeal            

b)

  B. To prevent unauthorized physical access

c)

C. To reduce energy costs         

d)

D. To facilitate data recovery

15.

Which type of attack does encryption primarily protect against?

a)

Denial of Service (DoS) attacks

b)

Man-in-the-Middle (MitM) attacks

c)

Phishing attacks

d)

Unauthorized access to data

16.

Which cryptographic algorithm is commonly used for digital signatures?

a)

AES

b)

Blowfish

c)

RSA

d)

MD5

17.

A digital certificate binds a public key with the identity of the certificate holder.

a)

True

b)

False

18.

A Virtual Private Network (VPN) provides a secure connection over a public network.

a)

True

b)

False

19.

Multi-factor authentication (MFA) enhances security by requiring multiple forms of verification.

a)

True

b)

False

20.

Physical security is less important than cyber security in protecting information assets.

a)

True

b)

False

21.

Security by design involves incorporating security measures at the earliest stages of system development.

a)

True

b)

False

22.

What is the primary goal of security architecture and design?

a)

To create aesthetically pleasing systems

b)

To ensure systems are scalable

c)

To protect information assets

d)

To reduce costs

23.

AES (Advanced Encryption Standard) is an example of an asymmetric encryption algorithm.

a)

True

b)

False

24.

Security architecture should be considered only after the system is fully developed.

a)

True

b)

False

25.

What is the primary purpose of cryptography?

a)

To speed up data transmission

b)

To protect information by transforming it into an unreadable format

c)

To reduce the size of data files

d)

To increase the storage capacity of databases

26.

Role-Based Access Control (RBAC) assigns permissions to users based on their roles within an organization.

a)

True

b)

False

27.

Biometrics, such as fingerprint and retina scans, are considered reliable methods for physical access control.

a)

True

b)

False

28.

Which of the following is an example of a cryptographic hash function?

a)

SHA-256

b)

Triple DES

c)

AES

d)

RSA

29.

Environmental hazards, such as fire and floods, should be considered in a physical security plan.

a)

True

b)

False

30.

In symmetric key cryptography, the same key is used for both encryption and decryption.

a)

True

b)

False

31.

Which of the following algorithms is an example of symmetric key cryptography?

a)

RSA

b)

DES

c)

ECC

d)

DSA

32.

Which model is commonly used for mandatory access control?

a)

Bell-LaPadula model

b)

Clark-Wilson model

c)

Biba model

d)

Brewer-Nash model

33.

A physical security policy should include procedures for both normal operations and emergency situations.

a)

True

b)

False

34.

Which of the following is an example of a physical security control?

a)

Firewall

b)

Antivirus software

c)

Security guard

d)

Encryption

35.

Which of the following is a principle of security architecture?

a)

Security through obscurity

b)

Defense in depth

c)

Single layer of defense

d)

Unlimited access

36.

Which of the following is NOT a type of network topology?

a)

A. Star

b)

B. Ring

c)

C. Square

d)

D. Mesh

37.

What does the term 'port scanning' refer to?

a)

A. Scanning physical ports on a device

b)

B. Scanning network ports to find open services

c)

C. Scanning data packets for malware

d)

D. Scanning user accounts

38.

Which protocol is used to resolve IP addresses to MAC addresses?

a)

A. ARP

b)

B. DNS

c)

C. DHCP

d)

D. HTTP

39.

Which of the following protocols is used for secure file transfer?

a)

A. FTP

b)

B. TFTP

c)

C. SFTP

d)

D. SNMP

40.

Which protocol is commonly used for secure web communication?

a)

A. HTTP

b)

B. FTP

c)

C. SSH

d)

D. HTTPS

41.

What does the term 'DDoS' stand for?

a)

A. Distributed Denial of Service

b)

B. Data Distribution over System

c)

C. Direct Data Over System

d)

D. Digital Data Over Security

42.

What is a man-in-the-middle attack?

a)

A. An attack where an unauthorized person intercepts and possibly alters the communication between two parties

b)

B. An attack that targets database vulnerabilities

c)

C. An attack that uses brute force to guess passwords

d)

D. An attack that installs malware on a system

43.

Which of the following describes a VPN concentrator?

a)

A. A device that provides network access

b)

B. A device that allows multiple VPN connections from remote users

c)

C. A type of firewall

d)

D. A device for managing databases

44.

Which of the following protocols is used for sending email?

a)

A. HTTP

b)

B. SMTP

c)

C. FTP

d)

D. SNMP

45.

Which network device is used to forward data packets between computer networks?

a)

A. Router

b)

B. Switch

c)

C. Hub

d)

D. Modem

46.

Which of the following best describes a Virtual Private Network (VPN)?

a)

A. A private network that uses public networks to connect remote sites and users

b)

B. A tool for managing databases

c)

C. A method of encrypting data

d)

D. A type of firewall

47.

What is the function of an Intrusion Detection System (IDS)?

a)

A. To encrypt data

b)

B. To detect unauthorized access or attacks on a network

c)

C. To backup data

d)

D. To manage user accounts

48.

Which of the following best describes a packet sniffer?

a)

A. A tool used to encrypt data

b)

B. A tool used to capture and analyze network traffic

c)

C. A type of firewall

d)

D. A tool for managing databases

49.

What does the acronym 'IP' stand for in networking?

a)

A. Internet Protocol

b)

B. Internal Processing

c)

C. International Protocol

d)

D. Information Processing

50.

What does the term 'phishing' refer to in network security?

a)

A. A method of encrypting data

b)

B. A type of firewall

c)

C. A form of social engineering attack where attackers deceive users into revealing personal information

d)

D. A network protocol

51.

What is the primary purpose of the Secure Shell (SSH) protocol?

a)

A. To provide secure access to a remote computer

b)

B. To send emails

c)

C. To transfer files

d)

D. To manage databases

52.

Which of the following is a key feature of the Transport Layer Security (TLS) protocol?

a)

A. Data encryption

b)

B. Data compression

c)

C. Data backup

d)

D. Data redundancy

53.

What is the purpose of two-factor authentication (2FA) in network security?

a)

A. To encrypt data

b)

B. To require two different forms of identification to access a system

c)

C. To backup data

d)

D. To manage user accounts

54.

What is the primary purpose of a firewall in network security?

a)

A. To store data

b)

B. To enforce security policies by monitoring and controlling incoming and outgoing network traffic

c)

C. To manage user accounts

d)

D. To increase system speed

55.

Which of the following is an example of a Denial of Service (DoS) attack?

a)

A. Encrypting user data

b)

B. Overloading a server with excessive requests to make it unavailable

c)

C. Intercepting communications between two parties

d)

D. Installing malware on a system

56.

Which of the following best describes a VLAN (Virtual Local Area Network)?

a)

A. A physical network device

b)

B. A method of creating logically separate networks within a single physical network

c)

C. A type of firewall

d)

D. A method of encrypting data

57.

What is the purpose of a 'honeypot' in network security?

a)

A. To store honey

b)

B. To detect, deflect, or study attempts to gain unauthorized access to information systems

c)

C. To encrypt data

d)

D. To backup data

58.

What is the primary function of a proxy server?

a)

A. To backup data

b)

B. To act as an intermediary between a client and a server to provide increased security, privacy, and anonymity

c)

C. To manage user accounts

d)

D. To encrypt data

59.

Which of the following is an example of a secure email protocol?

a)

A. HTTP

b)

B. IMAP

c)

C. POP3

d)

D. SMTPS

60.

What is the primary function of the Domain Name System (DNS)?

a)

A. To encrypt data

b)

B. To translate domain names into IP addresses

c)

C. To manage user accounts

d)

D. To provide internet access

61.

What is the purpose of Multi-Factor Authentication (MFA)?

a)
  • A. To use multiple passwords for a single account

b)
  • B. To require multiple forms of verification to increase security

c)
  • C. To allow access from multiple devices

d)
  • D. To manage multiple user accounts

62.

What is the principle of least privilege?

a)
  • A. Users have the maximum level of access

b)
  • B. Users have no access rights

c)
  • C. Users have the minimal level of access necessary to perform their job functions

d)
  • D. Users have temporary access rights

63.

Which of the following best describes Role-Based Access Control (RBAC)?

a)
  • A. Access is based on the user's role within an organization

b)
  • B. Access is determined by the user's location

c)
  • C. Access is based on the user's hardware

d)
  • D. Access is randomly assigned

64.

What is a common use of a directory service in IAM?

a)
  • A. To store and manage user identities and access privileges

b)
  • B. To encrypt user data

c)
  • C. To monitor network traffic

d)
  • D. To backup data

65.

What does the term 'authentication' refer to in IAM?

a)
  • A. The process of monitoring user activities

b)
  • B. The process of verifying the identity of a user

c)
  • C. The process of encrypting data

d)
  • D. The process of backing up data

66.

Which of the following best describes 'authorization'?

a)
  • A. The process of verifying user identity

b)
  • B. The process of granting or denying access to resources

c)
  • C. The process of encrypting user data

d)
  • D. The process of monitoring network traffic

67.

What is an Identity Provider (IdP) in federated identity management?

a)
  • A. A service that authenticates and verifies user identities

b)
  • B. A service that stores encrypted data

c)
  • C. A service that monitors network traffic

d)
  • D. A service that performs backups

68.

What is a common risk associated with poor IAM practices?

a)
  • A. Increased system performance

b)
  • B. Unauthorized access to sensitive information

c)
  • C. Reduced need for backups

d)
  • D. Improved user experience

69.

What is the purpose of provisioning in IAM?

a)
  • A. To encrypt data

b)
  • B. To create and manage user accounts and access rights

c)
  • C. To monitor network traffic

d)
  • D. To perform backups

70.

What is the primary benefit of using Role-Based Access Control (RBAC)?

a)
  • A. Simplifies the management of user permissions by assigning permissions to roles instead of individual users

b)
  • B. Increases the number of required passwords

c)
  • C. Reduces the need for encryption

d)
  • D. Enhances data backup processes

71.

What is the main function of an Identity Governance and Administration (IGA) system?

a)
  • A. To encrypt data

b)
  • B. To ensure compliance with policies and regulations regarding identity and access management

c)
  • C. To manage network traffic

d)
  • D. To perform system backups

72.

Which protocol is commonly used for federated identity management?

a)

FTP

b)

SAML

c)

SMTP

d)

HTTP

73.

Which of the following is NOT a component of IAM?

a)

Authentication

b)

Authorization

c)

Accounting

d)

Encryption

74.

Which of the following is NOT a common authentication method?

a)

Password

b)

Biometric scan

c)

CAPTCHA

d)

Data compression

75.

What does Single Sign-On (SSO) enable users to do?

a)

Access multiple applications with one set of login credentials

b)

Encrypt data with a single key

c)

Backup data to a single location

d)

Access one application with multiple sets of login credentials

76.

Which of the following is an example of a directory service protocol?

a)

LDAP

b)

HTTP

c)

FTP

d)

SMTP

77.

What is the purpose of an Access Control List (ACL)?

a)

To list all users in a system

b)

To specify which users or system processes are granted access to objects

c)

To encrypt data

d)

To monitor network traffic

78.

Which type of access control is based on predefined rules and policies set by an organization?

a)

Discretionary Access Control (DAC)

b)

Mandatory Access Control (MAC)

c)

Role-Based Access Control (RBAC)

d)

Attribute-Based Access Control (ABAC)

79.

Which of the following best describes 'Identity as a Service' (IDaaS)?

a)

A cloud-based service for managing digital identities

b)

A service for backing up data

c)

A service for encrypting data

d)

A network monitoring service

80.

Which of the following is an example of a 'something you have' factor in MFA?

a)

Password

b)

Security token

c)

Fingerprint

d)

PIN

81.

Which IAM framework includes standards such as OAuth, OpenID Connect, and SAML?

a)

COBIT

b)

ITIL

c)

NIST

d)

Federated Identity Management

82.

Which of the following is an example of a 'something you know' factor in MFA?

a)

Fingerprint

b)

Password

c)

Security token

d)

Mobile phone

83.

What is the primary goal of Identity and Access Management (IAM)?

a)

To enhance user experience

b)

To ensure that the right individuals have access to the right resources at the right times for the right reasons

c)

To manage network traffic

d)

To back up data

84.

What is the main advantage of using Single Sign-On (SSO)?

a)

Reduced administrative costs and improved user experience by requiring users to remember only one set of credentials

b)

Increased complexity of user management

c)

Enhanced data encryption

d)

Increased network traffic

85.

What does the term 'biometric authentication' refer to?

a)

Using biological traits, such as fingerprints or facial recognition, to verify identity

b)

Using passwords to verify identity

c)

Using security questions to verify identity

d)

Using hardware tokens to verify identity