wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Teach Cyber Mod 1.1 What is Cybersecurity?

Total questions: 16

Worksheet time: 8mins

Name
Class
Date
1.

Which two factors contributed to the lack of security controls built into the predecessor to the Internet, Arpanet? Select two answers.

a)

Arpanet was a research project with the goal of sharing information among a relatively small number of computers.

b)

Arpanet was only accessible to military personnel on a few military installations.

c)

Arpanet had a technological limit of 300 miles between terminals.

d)

Arpanet used a circuit switching technology, which did not require security controls.

e)

Arpanet’s scientists and researchers were motivated by simply making the system work.

2.

Which statement describes the relationship between the Internet, the Web, and Cyberspace?

a)

The Internet is a national network, the Web is a global network, and Cyberspace is a virtual network.

b)

The Internet was preceded by development of the Web. Cyberspace refers to the international boundaries of the Internet.

c)

The Internet refers to the network of networks, the Web refers to content accessed by a browser, and Cyberspace encompasses the information environment.

d)

The Internet refers to the global network, the Web refers to the visual aspect of information, and Cyberspace includes satellites and submarine cables.

3.

How does the actual location of a data center impact access and control of the information stored in it? Select two answers.

a)

Government policies on cyber sovereignty affect the rules governing the free flow of information and access to content.

b)

There are no laws governing the location of data centers and their operation.

c)

The United Nations determines the access to and control of information in data centers.

d)

The country in which the data center is located has complete control of the data.

e)

Data protection laws can extend beyond national borders.

4.

Select two true statements about the Stuxnet attack.

a)

Stuxnet was able to attack a system that was not connected to the Internet.

b)

Stuxnet was the first cyberattack known to cause physical damage to a system.

c)

Stuxnet was malware that created a botnet of infected IoT devices.

d)

Stuxnet was the largest data breach in history.

5.

Which statement explains one of the challenges of cyberwarfare?

a)

Attribution is difficult due to the ability to hide and change locations, and mask identities.

b)

Cyber sovereignty creates borders in cyberspace.

c)

Physical borders provide protection in cyberwarfare.

d)

Increased connectivity has resulted in international arrangements for global cyber practices.

6.

What security controls ensure confidentiality?

a)

Identification, authentication, and authorization

b)

Identification and file hashing

c)

Authorization and redundancy

d)

Authentication and fault tolerance

7.

A bank ATM requires the use of a bank card and a PIN to conduct a transaction. If a bank card is lost or stolen, what two additional security measures ensure prevention and detection?

a)

Multiple failed PIN attempts can block the card.

b)

The ATM security camera provides authorization.

c)

PIN changes require identification and authentication.

d)

Place a freeze on the credit report.

e)

Contact the police.

8.

Victims of WannaCry ransomware were either locked out of their computers or unable to access their files. Which principle(s) of information security were violated in this attack?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Confidentiality and Integrity

9.

A business traveler uses a computer in a hotel business center to access a personal email account. A hidden keylogger (malware) is installed on the computer. Later in the evening the business traveler attempts to again access the personal email account and realizes she is locked out of her account. Which principle(s) of the CIA Triad have been violated?

a)

Loss of confidentiality and availability

b)

Loss of integrity and availability

c)

Loss of availability

d)

Loss of confidentiality

10.

A student is unsure of whether a game executable file is safe to download from a website. Which security measure, if available on the website, would verify that the downloaded file is legitimate?

a)

Hash-based verification

b)

Identification and authentication

c)

Authorization

d)

Access control

11.

Due to a hacking attempt of the school’s data management system, the IT Director disables access to the gradebook from outside of the school building. Which principle(s) of information security have been impacted by this decision?

a)

Loss of Availability

b)

Loss of Integrity

c)

Loss of Confidentiality

d)

Loss of Integrity and Availability

12.

What two factors have influenced the rapid adoption of IoT devices and thus increased the attack surface? Select two answers.

a)

The open architecture of the Internet

b)

The management of the built-in security features

c)

The convenience of IoT devices

d)

The complicated security controls required

e)

The lack of international borders

13.

Which statement describes one of the lessons learned from the Mirai Botnet?

a)

Convenience and usability of many IoT devices is a tradeoff for privacy and security.

b)

Securing IoT devices is the sole responsibility of the manufacturer of the device.

c)

IoT devices should not communicate with other networked devices.

d)

Privacy and security are mutually exclusive goals in cybersecurity.

14.

Which two items are benefits of IoT devices?

a)

Connectivity provides easier access to information

b)

Increased connectivity and fewer security vulnerabilities

c)

Convenience and saving time through automation

d)

Standard security features provided by manufacturers

15.

A programmer discovers that Personally Identifiable Information (PII) is collected from his application and is being shared with a third-party vendor in violation of the terms of use of the software. What ethical obligation does the programmer have in this case?

a)

The programmer has an obligation to do no harm. He should change the terms of use to acknowledge the sharing of data before anyone notices.

b)

The programmer has an obligation to respect privacy. Personal information gathered for a specific purpose should not be used for other purposes without the person’s consent.

c)

The programmer has an obligation to honesty. He should report what is happening on social media to warn users of this privacy violation.

d)

The programmer has an obligation to confidentiality. He should not tell anyone about the incident.

16.

Within a complex system, an agent that learns and adapts over time is also called:

a)

An adversary

b)

An assumption

c)

Emergent Behavior

d)

System analysis