WorksheetsCYBERSECURITY AWARENESS DIAGNOSTIC
Total questions: 26
Worksheet time: 13mins
Name
Class
Date
1.
Employee training on cybersecurity awareness is crucial because:
a)
Employees are often the weakest link in security
b)
It eliminates the risk of cyberattacks
c)
It simplifies IT management
d)
It reduces the need for technical security measures
2.
Two-factor authentication (2FA) adds an extra layer of security by requiring:
a)
Regular software updates
b)
Biometric identification
c)
Two different passwords
d)
Something you know (password) and something you have (physical token)
3.
What is a risk in cybersecurity?
a)
A security measure
b)
A strong password
c)
A type of cyberattack
d)
The likelihood of a threat exploiting a vulnerability
4.
Phishing is a type of cyberattack that involves:
a)
Exploiting software vulnerabilities
b)
Denying service to users
c)
Infecting systems with malware
d)
Deceiving users into revealing personal information
5.
What is the importance of creating regular backups of data?
a)
To improve system performance
b)
To protect against data loss due to hardware failures, ransomware, or other incidents
c)
To reduce storage space
d)
To enhance data encryption
6.
What is a zero-day exploit?
a)
A type of phishing attack
b)
A security patch
c)
A strong password
d)
A software vulnerability that is unknown to the software vendor
7.
Which of the following is NOT a common cybersecurity regulation?
a)
PCI DSS
b)
ISO 27001
c)
GDPR
d)
HIPAA
8.
Regular software updates are important for:
a)
Fixing vulnerabilities
b)
Improving system performance
c)
Enhancing user interface
d)
Increasing storage capacity
9.
Continuous monitoring and evaluation of cybersecurity measures are essential for:
a)
All of the above
b)
Maintaining compliance with regulations
c)
Identifying and addressing emerging threats
d)
Protecting sensitive data
10.
What is a vulnerability in cybersecurity?
a)
A malicious software program
b)
A security measure implemented to protect systems
c)
A type of cyberattack
d)
A weakness that can be exploited by attackers
11.
Which of the following is an example of a threat in cybersecurity?
a)
A firewall
b)
Data encryption
c)
A malicious hacker
d)
A strong password
12.
Artificial intelligence (AI) can be used for both offensive and defensive purposes in cybersecurity. Which of the following is an example of AI used defensively?
a)
Detecting and responding to cyberattacks
b)
Launching DDoS attacks
c)
Developing new malware
d)
Stealing personal information
13.
What is the role of a chief information security officer (CISO)?
a)
Developing malware
b)
Hacking into systems
c)
Overseeing an organization's cybersecurity strategy and operations
d)
Managing network infrastructure
14.
Blockchain technology offers potential benefits for cybersecurity, including:
a)
Improved data integrity and security
b)
Reduced transaction speed
c)
Increased vulnerability to hacking
d)
Centralized control over data
15.
Risk assessment is a crucial step in cybersecurity compliance because:
a)
It improves system performance
b)
It identifies potential vulnerabilities and threats
c)
It reduces operating costs
d)
It ensures legal compliance
16.
Internet of Things (IoT) devices pose cybersecurity risks because:
a)
They are not used by many people
b)
They are not connected to the internet
c)
They are too expensive to protect
d)
They often have limited processing power and security features
17.
A firewall is a security system that:
a)
Encrypts data
b)
Backs up data
c)
Prevents unauthorized access to a network
d)
Detects malware
18.
What is the primary goal of cybersecurity?
a)
Maximize network speed
b)
Protect hardware components
c)
Prevent system failures
d)
Ensure data confidentiality, integrity, and availability
19.
Which of the following is a strong password practice?
a)
Creating short, easy-to-remember passwords
b)
Writing down passwords for easy access
c)
Using a combination of uppercase and lowercase letters, numbers, and symbols
d)
Using the same password for all accounts
20.
SQL injection is a type of attack that targets:
a)
Web applications
b)
Network infrastructure
c)
Mobile devices
d)
Operating systems
21.
Cloud computing introduces new cybersecurity challenges due to:
a)
The increased complexity of managing data in the cloud
b)
The high cost of cloud storage
c)
The slow speed of cloud services
d)
The lack of data privacy in the cloud
22.
Which of the following is NOT a good practice for protecting against phishing attacks?
a)
Hovering over links before clicking
b)
Being cautious of unexpected attachments
c)
Using strong, unique passwords
d)
Providing personal information in unsolicited emails
23.
What is the role of an intrusion detection system (IDS)?
a)
To encrypt data
b)
To detect and alert on suspicious network activity
c)
To prevent unauthorized access to a network
d)
To back up data
24.
What is ransomware?
a)
A type of phishing attack
b)
A denial-of-service attack
c)
A type of malware that encrypts files and demands a ransom for decryption
d)
A social engineering tactic
25.
A distributed denial-of-service (DDoS) attack differs from a DoS attack by:
a)
Encrypting files
b)
Targeting specific individuals
c)
Stealing personal information
d)
Using multiple systems to overwhelm a target
26.
Which type of attack aims to overload a system with traffic, making it inaccessible?
a)
Phishing
b)
Social engineering
c)
Denial-of-service (DoS)
d)
Malware
100 %
