wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

FBLA Cybersecurity Quiz

Total questions: 100

Worksheet time: 1hrs 5mins

Name
Class
Date
1.

Which of the following is a basic security risk associated with computer hardware?

a)

Power surges

b)

Software bugs

c)

User negligence

d)

Phishing attacks

2.

A virus that replicates itself by attaching to other programs or files is known as a:

a)

Worm

b)

Trojan horse

c)

Macro virus

d)

File infector virus

3.

Which of the following is a symptom of a computer virus?

a)

Slow system performance

b)

Sudden system crashes

c)

Unexplained files appearing on the system

d)

All of the above

4.

Phishing is:

a)

A technique for encrypting data

b)

The act of fraudulently obtaining sensitive information by pretending to be someone else

c)

A type of malware

d)

A tool for protecting passwords

5.

What is the primary purpose of incidence reporting in cybersecurity?

a)

To increase awareness among users

b)

To document and address security breaches

c)

To encrypt sensitive data

d)

To install software patches

6.

Installing service packs and patches is important because they:

a)

Make the system faster

b)

Fix known vulnerabilities and enhance security

c)

Provide new features

d)

Clean the system from malware

7.

Which of the following is a virus protection and removal procedure?

4 lines
8.

The primary function of antivirus software is to:

a)

Monitor network traffic

b)

Block malicious email attachments

c)

Detect, prevent, and remove malware

d)

Provide secure authentication

9.

Which of the following should be scanned for viruses and spyware regularly?

a)

CPU and memory

b)

Storage devices and equipment

c)

Network cables

d)

Printers and scanners

10.

Anti-virus software should be:

a)

Installed only once and left untouched

b)

Configured to automatically update to detect new threats

c)

Used only for detecting spyware

d)

Used exclusively on personal devices

11.

A computer virus is most likely to spread through:

a)

USB drives

b)

Text messages

c)

Email attachments

d)

All of the above

12.

The best way to protect your privacy and personal security online is:

a)

Only use free Wi-Fi

b)

Use strong, unique passwords and enable two-factor authentication

c)

Share personal information freely online

d)

Avoid using antivirus software

13.

Which of the following is a privacy protection utility?

a)

VPN software

b)

Proxy server

c)

Ad-blocking tool

14.

The importance of network security includes:

a)

Preventing unauthorized access

b)

Protecting sensitive data

c)

Maintaining the integrity and availability of the network

d)

All of the above

15.

IP spoofing is a form of:

a)

Data encryption

b)

Network monitoring

c)

Network attack

d)

Data backup

16.

What is the primary function of encryption in network security?

a)

To prevent unauthorized access to data during transmission

b)

To improve network speed

c)

To monitor user activity

d)

To block malicious websites

17.

One of the most common methods to protect a network’s perimeter is through:

a)

Encryption

b)

Firewalls

c)

User authentication

d)

Backup and recovery

18.

SSL is used to:

a)

Secure email communication

b)

Encrypt web traffic between a browser and server

c)

Prevent malware from being downloaded

d)

Backup data securely

19.

Which of the following best describes a VPN (Virtual Private Network)?

a)

It encrypts web traffic to prevent unauthorized access

b)

It protects against email phishing attacks

c)

It blocks spam emails

d)

It monitors network traffic for suspicious behavior

20.

Access control is used to:

a)

Grant or deny access to resources based on user permissions

b)

Monitor user behavior on the network

c)

Encrypt network traffic

d)

Backup network data

21.

Which security protocol is used for securing wireless networks?

a)

SSL

b)

WPA

c)

IPSEC

d)

L2TP

22.

The role of a firewall is to:

a)

Monitor incoming and outgoing network traffic

b)

Provide malware detection

c)

Encrypt sensitive information

d)

Backup data securely

23.

Which of the following is NOT a characteristic of a software firewall?

a)

It is installed on a single device

b)

It monitors and controls network traffic

c)

It requires physical installation of hardware

d)

It can be configured to block specific applications

24.

A proxy server is typically used for:

a)

Blocking viruses

b)

Encrypting data

c)

Hiding the user’s IP address

d)

Backing up data

25.

WEP is considered less secure than WPA because:

a)

It uses a longer encryption key

b)

It has known vulnerabilities and weaknesses

c)

It is easier to configure

d)

It is a newer standard

26.

Which of the following is a key difference between a circuit-level gateway and an application gateway firewall?

4 lines
27.

What does DMZ stand for in network security?

a)

Demilitarized Zone

b)

Digital Managed Zone

c)

Direct Mobile Zone

d)

Digital Monitoring Zone

28.

Which of the following best describes a VLAN (Virtual Local Area Network)?

a)

A network within a specific geographic area

b)

A secure connection between two remote networks

c)

A logical partition of a physical network, improving security and traffic management

d)

A protocol for encrypting network traffic

29.

Which type of email security attack involves deceptive emails designed to steal sensitive information?

a)

Phishing

b)

Spamming

c)

Spoofing

d)

Spoofing

30.

The practice of sending unsolicited emails to a large group of recipients is known as:

a)

Phishing

b)

Spam

c)

Social engineering

d)

Encryption

31.

Which protocol is primarily used to send secure emails?

a)

SMTP

b)

SSL

c)

IMAP

d)

HTTPS

32.

Social engineering can be used to:

4 lines
33.

Netiquette refers to:

a)

The ethical use of the internet and digital communication

b)

The technical protocols that secure online transactions

c)

The hardware needed to access the internet

d)

The policy of data encryption

34.

Which of the following can be used to filter spam emails?

a)

Email filtering software

b)

Firewalls

c)

Antivirus software

d)

Network monitoring tools

35.

Which of the following is a technique to prevent email viruses from infecting your system?

a)

Use strong passwords

b)

Open attachments from trusted sources only

c)

Regularly back up your emails

d)

Use two-factor authentication

36.

Denial of Service (DoS) attacks aim to:

a)

Encrypt data on a victim’s system

b)

Block access to network resources by overwhelming the system with traffic

c)

Steal sensitive information from a victim

d)

Install malware on the victim’s system

37.

Which of the following is NOT a characteristic of a brute-force attack?

a)

It systematically tries every possible password combination

b)

It targets encrypted files

c)

It uses social engineering to guess passwords

d)

It can be automated using specialized software

38.

The purpose of an intrusion detection system (IDS) is to:

a)

Prevent unauthorized access by filtering network traffic

b)

Monitor network and system activities for suspicious behavior

c)

Encrypt sensitive data

39.

Which of the following can be used to detect network intrusions?

a)

Firewall logs

b)

Intrusion Detection System (IDS)

c)

VPN logs

d)

Antivirus logs

40.

A public key infrastructure (PKI) uses:

a)

A central server to manage private keys

b)

Symmetric key encryption

c)

Certificates issued by a certificate authority to establish trust

d)

No encryption but relies on user authentication

41.

In the context of public key infrastructure, what is a certificate authority (CA)?

a)

A trusted organization that issues digital certificates

b)

A firewall that protects sensitive data

c)

A private key that decrypts encrypted data

d)

A type of encryption algorithm

42.

Which of the following is an example of two-factor authentication?

a)

Using a password and fingerprint scan

b)

Using a password and security question

c)

Using a PIN and user ID

d)

Using a password and backup email address

43.

Which type of authentication protocol uses challenge-response mechanisms?

a)

PAP

b)

RADIUS

c)

CHAP

d)

Kerberos

44.

In disaster recovery, the term “cold site” refers to:

a)

A fully equipped data center ready for immediate use after a disaster

b)

A location with basic infrastructure, requiring setup before it can be used

c)

A cloud-based disaster recovery solution

d)

A backup system stored in a secure offsite location

45.

RAID is primarily used to:

a)

Back up network traffic

b)

Encrypt sensitive data

c)

Provide redundancy and prevent data loss

d)

Monitor network access logs

46.

The process of recovering data from a system failure is called:

a)

Encryption

b)

Disaster recovery

c)

Data recovery

d)

Data analysis

47.

Which of the following is the most important component of a disaster recovery plan?

a)

A list of hardware required for recovery

b)

Backup and restoration procedures

c)

A detailed security policy

d)

Security incident response training

48.

To protect a computer from natural disasters like flooding, the most common protection would be:

a)

Using antivirus software

b)

Installing a surge protector

c)

Using RAID storage

d)

Storing data offsite

49.

UPS (Uninterruptible Power Supply) devices are used to:

a)

Ensure continuous power to critical systems during outages

b)

Protect against malware infections

c)

Encrypt sensitive data

d)

Backup network traffic

50.

Which of the following is a common environmental hazard that can affect computer hardware?

a)

Moisture

b)

Power surges

c)

Physical damage

d)

All of the above

51.

The purpose of physical security in cybersecurity is to:

4 lines
52.

What is the primary function of a disaster recovery plan (DRP)?

a)

To recover lost network connections

b)

To ensure business continuity in case of an emergency

c)

To install security updates on all devices

d)

To back up sensitive data

53.

Encryption is primarily used to:

a)

Prevent unauthorized access to sensitive data

b)

Speed up data transmission

c)

Block unwanted network traffic

d)

Recover lost data

54.

Which of the following describes the difference between public and private key encryption?

a)

Public keys are used to encrypt, while private keys decrypt

b)

Public and private keys are interchangeable

c)

Both public and private keys are used to encrypt data

d)

Private keys are used for communication, while public keys are used for storage

55.

Which cryptographic protocol is used for securing web traffic?

a)

HTTPS

b)

SSL/TLS

c)

IPSec

d)

AES

56.

What is the primary purpose of digital signatures?

a)

To encrypt sensitive data

b)

To verify the authenticity of a message or document

c)

To monitor network traffic

d)

To prevent phishing attacks

57.

A forensic investigation typically includes:

a)

Scanning for malware

b)

Analyzing evidence from computers and mobile devices

c)

Recovering lost data

58.

What is the primary concern when handling computer forensic evidence?

a)

Integrity and preservation of the evidence

b)

Reducing the size of the data

c)

Encrypting the evidence

d)

Sharing the evidence with third parties

59.

Which of the following is a tool commonly used in computer forensics?

a)

Wireshark

b)

FTK Imager

c)

Netcat

d)

Putty

60.

When preparing a report of findings in a forensic investigation, it is important to:

a)

Ensure accuracy and documentation of the chain of custody

b)

Encrypt all evidence

c)

Erase any identifying information

d)

Immediately share results with the media

61.

Which of the following is an example of a public key infrastructure (PKI) service?

a)

Digital certificates

b)

Secure passwords

c)

VPN configurations

d)

Network monitoring tools

62.

One of the advantages of PKI is:

a)

It simplifies the process of password recovery

b)

It eliminates the need for encryption

c)

It allows for secure communication through digital certificates

d)

It monitors network traffic in real time

63.

The primary purpose of a Certificate Authority (CA) is to:

a)

Monitor the network for security threats

b)

Issue digital certificates that authenticate the identity of entities

c)

Perform regular data backups

d)

Prevent unauthorized access to network resources

64.

Which of the following is true about symmetric encryption?

a)

It uses one key for both encryption and decryption

b)

It requires different keys for encryption and decryption

c)

It is slower than asymmetric encryption

d)

It is less secure than asymmetric encryption

65.

Two-factor authentication enhances security by:

a)

Allowing multiple users to access the same resource simultaneously

b)

Using two different types of authentication methods

c)

Eliminating the need for passwords

d)

Automatically backing up data

66.

What does the term “non-repudiation” in cybersecurity refer to?

a)

The inability of users to deny their actions or involvement in an event

b)

The encryption of data to prevent unauthorized access

c)

The use of firewalls to prevent external attacks

d)

The prevention of data breaches

67.

Which of the following is NOT a form of biometric authentication?

a)

Fingerprint scanning

b)

Retina scanning

c)

Password entry

d)

Voice recognition

68.

In which situation is SSL authentication typically used?

a)

Email encryption

b)

Securing web traffic between a browser and a server

c)

Virtual private network (VPN) connections

d)

Encrypting data at rest

69.

A disaster recovery site that has minimal infrastructure, which requires setup before use, is called:

a)

Hot site

b)

Warm site

c)

Cold site

d)

Backup site

70.

Which of the following is true about RAID?

4 lines
71.

Which of the following is an important feature of an effective disaster recovery plan?

a)

It focuses only on restoring user data

b)

It includes regular testing of recovery procedures

c)

It excludes cloud storage options

d)

It encrypts backups for security

72.

A hot site in disaster recovery refers to:

a)

A location where recovery procedures are not yet implemented

b)

A fully equipped and operational data center ready for use in case of a disaster

c)

A site used for storing backups only

d)

A cloud-based disaster recovery solution

73.

Which of the following is a benefit of encryption in securing network resources?

a)

It protects data during transmission

b)

It provides backup and recovery options

c)

It ensures user authentication

d)

It monitors network performance

74.

In cybersecurity, what is the role of digital certificates?

a)

They encrypt sensitive data during transmission

b)

They authenticate the identity of users or devices

c)

They store backup copies of system data

d)

They prevent malware from spreading

75.

Which of the following is an example of a cryptographic protocol used to secure web traffic?

a)

DES

b)

SSL/TLS

c)

IPSec

d)

AES

76.

What does the acronym "PKI" stand for?

a)

Public Key Infrastructure

b)

Private Key Index

c)

Public Kernel Internet

77.

The primary function of a digital signature is:

a)

Encrypting communication

b)

Providing verification of the sender’s identity

c)

Creating backups of data

d)

Monitoring internet traffic

78.

In a forensic investigation, preserving evidence means:

a)

Making copies and securing the original data in its current state

b)

Encrypting the evidence before analyzing it

c)

Removing unnecessary files from the evidence

d)

Restoring deleted files for analysis

79.

A secure method to authenticate users remotely via a VPN would most likely use:

a)

PAP

b)

SSL/TLS

c)

RADIUS

d)

WEP

80.

The main purpose of a firewall in network security is to:

a)

Encrypt all network traffic

b)

Filter incoming and outgoing network traffic

c)

Backup critical data

d)

Prevent malware from entering the network

81.

The process of scanning storage devices for malware is called:

a)

Data recovery

b)

Malware analysis

c)

Antivirus scanning

d)

Backup restoration

82.

When configuring a firewall, which of the following is NOT a basic technique used?

a)

Packet filtering

b)

Proxy server

c)

Encryption

d)

Circuit-level gateway

83.

What is the purpose of a proxy server in network security?

a)

To prevent unauthorized access by acting as an intermediary between users and the internet

b)

To encrypt data sent over the network

c)

To monitor network performance

d)

To back up system files automatically

84.

A company’s network security policy should address:

a)

User access levels

b)

Authentication methods

c)

Data encryption requirements

d)

All of the above

85.

What is the difference between symmetric and asymmetric encryption?

a)

Symmetric encryption uses a single key for both encryption and decryption, while asymmetric encryption uses different keys

b)

Asymmetric encryption is faster than symmetric encryption

c)

Symmetric encryption is more secure than asymmetric encryption

d)

Asymmetric encryption is used for hashing

86.

Which of the following best describes social engineering?

a)

Using physical barriers to protect computer systems

b)

Manipulating people to gain unauthorized access to systems or data

c)

Encrypting data for secure transmission

d)

Using software to block access to sensitive data

87.

In network security, what is an Intrusion Detection System (IDS)?

a)

A system that prevents unauthorized access to a network

b)

A system that detects and alerts on potential network intrusions

c)

A system that automatically backs up data to a secure location

d)

A system used to encrypt network traffic

88.

The purpose of a firewall is to:

a)

Scan for malware

b)

Block unauthorized access to a network

c)

Encrypt network traffic

d)

Provide backup protection

89.

Which of the following is NOT a method used to protect against phishing attacks?

4 lines
90.

Which of the following is an example of a security measure to prevent unauthorized network access?

a)

Using a VPN

b)

Using social media accounts for authentication

c)

Disabling firewalls

d)

Allowing unrestricted access to external devices

91.

What is the purpose of network access control (NAC)?

a)

To control access to a network based on security policy enforcement

b)

To encrypt network traffic

c)

To monitor network performance

d)

To manage user authentication

92.

Which protocol is commonly used for securing emails?

a)

SMTP

b)

IMAP

c)

S/MIME

d)

FTP

93.

What does the term "port blocking" refer to in network security?

a)

Blocking physical ports on a device

b)

Blocking communication on specific network ports to reduce attack vectors

c)

Preventing unauthorized access to wireless networks

d)

Blocking specific applications from accessing the internet

94.

A firewall rule that only allows traffic from a trusted IP address is an example of:

a)

Proxy filtering

b)

Packet filtering

c)

Application gateway

d)

Circuit-level gateway

95.

What is an advantage of using a VPN?

a)

It allows secure communication over an insecure network

b)

It provides unlimited bandwidth

96.

What is the main function of IPSec in network security?

a)

To provide secure communication over the internet

b)

To monitor network performance

c)

To filter incoming packets

d)

To block unauthorized access

97.

Which of the following is NOT an example of a physical security measure?

a)

Surveillance cameras

b)

Encryption software

c)

Locking server racks

d)

Biometric access controls

98.

What is the most effective way to handle spam emails?

a)

Delete them immediately

b)

Respond to the sender to request removal

c)

Mark them as spam and use filtering software

d)

Forward them to IT support

99.

What is a botnet?

a)

A system of connected devices that work together to perform malicious activities

b)

A type of firewall used to block malicious traffic

c)

A protocol used to secure web traffic

d)

A method of encrypting sensitive data

100.

What is the first step in the incident response process?

a)

Eradicate the threat

b)

Contain the incident

c)

Detect and identify the incident

d)

Recover from the incident