WorksheetsUnit 3: System and Device Hardening
Total questions: 20
Worksheet time: 7mins
Name
Class
Date
1.
What is the primary goal of device hardening?
a)
Enhancing system performance
b)
Improving user experience
c)
Reducing attack surface
d)
Increasing software compatibility
2.
Which of the following is NOT a common device hardening technique?
a)
Removing unnecessary software
b)
Disabling default accounts
c)
Patching vulnerabilities
d)
Overclocking the processor
3.
Why is it important to apply strong passwords to administrative accounts?
a)
To prevent unauthorized access
b)
To improve system performance
c)
To protect user data
d)
To enhance system compatibility
4.
How does disabling unused services contribute to device hardening?
a)
Reduces the attack surface
b)
Improves system performance
c)
Enhances user experience
d)
Increases software compatibility
5.
What is the role of network segmentation in device hardening?
a)
Isolates sensitive systems
b)
Improves system performance
c)
Enhances user experience
d)
Increases software compatibility
6.
Which of the following is NOT a core principle of the CIS Controls?
a)
Implement security controls
b)
Prioritize and sequence controls
c)
Continuously monitor and improve
d)
Achieve perfect security
7.
What is the purpose of inventorying and controlling hardware and software assets?
a)
To identify and manage vulnerabilities
b)
To improve system performance
c)
To enhance user experience
d)
To increase software compatibility
8.
How do the CIS Controls address data protection?
a)
By implementing data encryption
b)
By controlling data access
c)
By backing up data regularly
d)
All of the above
9.
Why is it important to continuously monitor and improve security controls?
a)
To detect and respond to threats
b)
To enhance system performance
c)
To improve user experience
d)
To increase software compatibility
10.
Which CIS Control focuses on protecting against malware and ransomware?
a)
Data Protection
b)
Inventory and Control of Hardware and Software Assets
c)
Continuous Vulnerability Management
d)
Controlled Use of Administrative Privileges
11.
What is the primary reason for applying software updates promptly?
a)
To improve system performance
b)
To enhance user experience
c)
To fix vulnerabilities
d)
To increase software compatibility
12.
How often should security updates be applied?
a)
Monthly
b)
Quarterly
c)
Annually
d)
As soon as possible
13.
What is the role of a patch management system in device security?
a)
Automates the update process
b)
Improves system performance
c)
Enhances user experience
d)
Increases software compatibility
14.
Which of the following is NOT a common challenge in applying security updates?
a)
System downtime
b)
Compatibility issues
c)
User resistance
d)
Increased system performance
15.
How can organizations prioritize security updates?
a)
By assessing the risk associated with vulnerabilities
b)
By following vendor recommendations
c)
By testing updates in a controlled environment
d)
All of the above
16.
What is the purpose of creating a security profile?
a)
To identify potential threats
b)
To assess system vulnerabilities
c)
To prioritize security controls
d)
All of the above
17.
Which of the following is NOT a typical component of a security profile?
a)
Asset inventory
b)
Threat assessment
c)
Risk assessment
d)
User preferences
18.
How can a security profile be used to inform security decisions?
a)
By identifying critical assets
b)
By prioritizing security controls
c)
By allocating resources effectively
d)
All of the above
19.
What is the relationship between a security profile and compliance requirements?
a)
Security profiles help organizations meet compliance standards
b)
Compliance requirements can inform security profile development
c)
Both A and B
d)
Neither A nor B
20.
How often should security profiles be reviewed and updated?
a)
Annually
b)
Quarterly
c)
Monthly
d)
Continuously
100 %
