Font size
WorksheetsCybersecurity Fundamentals Theory Test 2
Total questions: 19
Worksheet time: 20mins
Identify the following classification of security infrastructure that refers to a structured layout of network security measures that define how different network segments and devices interact to ensure overall protection.
Devices
Media
Security topologies
Intrusion detection
Determine the CORRECT classification of security infrastructure as described in Figure 1.
Security topologies
Intrusion detection
Security baseline
Application hardening
Clarify the following classification of security infrastructure that refers to a minimum set of security standards or configurations that must be implemented across devices, systems, and applications to ensure a consistent security level?
Devices
Security topologies
Security baseline
Application hardening
Referring to the statement in Figure 2, match the following infrastructure security.
A. VPN (Virtual Private Network)
B. IDS (Intrusion Detection System)
C. Honeypots
D. DMZ (Demilitarized Zone)
Clarify the following that is designed to monitor and detect suspicious activities or breaches within a network or system.
Security topologies
Intrusion detection
Security baseline
Application hardening
Match the following security tools that are designed to deceive attackers by simulating vulnerable systems or services to detect and analyze unauthorized access attempts.
A. Firewalls
B. VPN (Virtual Private Network)
C. IDS (Intrusion Detection System)
D. Honeypots
Referring to the statement in Figure 3, match the following security tools
A. VPN (Virtual Private Network)
B. IDS (Intrusion Detection System)
C. Honeypots
D. DMZ (Demilitarized Zone)
Select the security component that is used to prevent unauthorized access to a network by creating a controlled environment where only allowed traffic is permitted and all other traffic is blocked.
Firewalls
VPN (Virtual Private Network)
IDS (Intrusion Detection System)
Honeypots
Determine the following statement that is the primary objective of asset identification in risk management.
To determine potential threats to an organization
To catalog and evaluate the importance of assets that need protection
To identify vulnerabilities in the system
To develop incident response plans
Give the main purpose of risk identification in the risk management process.
To ensure all assets are protected
To identify potential risks that could impact assets
To create security awareness programs
To evaluate the performance of security controls
Define an example of vulnerability.
An outdated software version with known security flaws
A security breach that has already occurred
An attacker attempting to breach the system
A well-defined data protection policy
Clarify the primary purpose of Information Assurance.
Build firewalls around networks
Protect and manage risks related to information systems
Monitor employee activities online
Ensure compliance with software licenses
Select the following answer that is NOT one of the five pillars of Information Assurance.
Confidentiality
Availability
Encryption
Integrity
Identify the following statement that ensures the availability of information systems.
Using strong passwords
Implementing data backups and redundancy
Hashing critical files
Encrypting sensitive emails
Determine the following that best ensures non-repudiation in an online transaction.
Two-factor authentication
Digital signatures
Data encryption
Regular backups
Give THREE (3) examples of Malicious software protections programs that are commonly used.
Application security hardening involves taking measures to improve the security of software applications, making them less susceptible to attacks and vulnerabilities. Explain THREE (3) example of application security hardening.
Identify TWO (2) examples of laws and regulations.
PDCA model is a continuous improvement process used in business and quality management. Explain FOUR (4) four iterative steps of PDCA model.
