Worksheets005_AAA Cyber
Total questions: 27
Worksheet time: 16mins
What does the AAA Cyber Framework stand for?
Authentication, Authorization, and Accounting
Access, Authorization, and Accounting
Authentication, Access, and Accounting
Access, Authentication, and Authorization
Which of the following is an example of an authentication method?
Passwords
Access Control Lists
Role-Based Access Control
Data Encryption
What is the role of Access Control Lists (ACLs) in authorization?
Define what users or systems can access
Verify user identity
Encrypt sensitive data
Log user activities
What is multi-factor authentication (MFA)?
Combining two or more authentication methods
Assigning user roles
Encrypting data
Logging user activities
What is the main function of authentication in the AAA Cyber Framework?
Verifying identity
Assigning permissions
Logging activities
Encrypting data
Which concept ensures users have only the access they need for their tasks?
Principle of Least Privilege
Multi-factor Authentication
Access Control Lists
Biometric Scanning
What is the primary purpose of accounting in network systems?
To enhance user interface design
To track and record user activities
To increase data storage capacity
To improve network speed
Which of the following is a key concept of accounting related to user actions?
Data Encryption
Logs and Audits
User Interface Design
Network Speed
What does compliance and reporting help organizations achieve?
Meet regulatory requirements
Increase bandwidth
Enhance user experience
Improve data storage
Which of the following assists in identifying malicious activities after they occur?
Data Encryption
Forensics
User Interface Design
Network Speed
Which protocol is associated with network security in the AAA framework?
HTTP
RADIUS
FTP
SMTP
Which protocol is associated with network security in the AAA framework?
(a)
What does IoT and Smart Devices ensure in the AAA framework?
Secure communication and usage
Increased data storage
Enhanced user interface design
Improved network speed
What does the system check during the authorization step of the AAA framework?
User interface design
Resources or actions permitted
Data storage capacity
Network speed
What is the purpose of recording which files or systems were accessed?
To enhance user interface design
To monitor usage and detect anomalies
To increase data storage
To improve network speed
Which of the following is an application of the AAA framework in network security?
HTTP
TACACS+
FTP
SMTP
Which of the following is the MOST common form of authentication?
Password
Digital certificate on a smart card
Photo ID
Fingerprint
Which of the following is the MOST common form of authentication?
(a)
If you think your computer has a virus, a good first step in solving the problem would be to:
Run a virus scan
Reformat the hard drive
Destroy the computer
Do nothing
Antivirus software is designed to protect computers from an assortment of viruses and unauthorized intrusions
True
False
What is a virus? Best answer)
Software that attaches itself to another file and when the file is opened it runs and causes damage.
Software that runs independently doing damage to your computer
Software that masquerades as something it isn’t in an effort to trick the user
Software that sends information about you to someone else
A hacker who violates computer security for personal gain.
Certified Ethical Hacker
Cybercriminal
Nation-State Hacker
Hactivist
A hacker who violates computer security for personal gain.
(a)
Match the following
is a way to understand security issues surrounding the accessibility of individuals within an organization.
AAA framework
are physical or behavioral human characteristics that can be used to digitally identify a person to grant access to a system.
biometric readings
a way to record a log of who logs in, when the login occurs, and when the person logs out.
accounting
If both domains trust each other,
two-way trust
most organizations use a single sign-on
SSO
A hacker successfully exfiltrates a database of user passwords and attempts to gain access to it as the hacker can now go around the authentication system.
What type of attack has the hacker achieved?
Offline
Brute Force
Dictionary
Password Spraying
A process for securing access to a given system that identifies the party requesting access through only one category of credentials.
Single Factor Authentication
Two Factor Authentication
Multifactor Authentication
Enryption
