NEW
Font size
WorksheetsNetwork + Domain 4: IT Security Concepts Quiz
Total questions: 25
Worksheet time: 13mins
What is "data in transit"?
Data stored on a hard drive
Data encrypted with IPsec
Data transferred across a network
Data monitored by a firewall
What is another term for "data in transit"?
Data at rest
Data in-motion
Data in the cloud
Data encrypted
Which devices are primarily used to move data rather than protect it?
Firewalls
Routers and switches
Intrusion prevention systems
Storage drives
Which devices are designed to monitor and block malicious traffic?
Switches
SSDs
Firewalls and intrusion prevention systems
Wireless access points
What is one way to secure data in transit?
Full disk encryption
Access control lists
Encrypting with TLS or IPsec
Installing antivirus software
What is "data at rest"?
Data moving between networks
Data saved to storage devices
Data within an encrypted VPN
Data that is unencrypted
How is data at rest typically encrypted?
During network transfer
With a proxy server
When written to a storage device
After user login
Which of the following is NOT a method of encrypting data at rest?
Full disk encryption
File or folder encryption
Encrypting during transmission
Database encryption
What does an Access Control List (ACL) do?
Encrypt data
Store data on hard drives
Determine user access to data
Monitor for malware
What does PKI stand for?
Private Key Integration
Public Key Infrastructure
Protected Key Interface
Public Key Integration
What is the function of PKI?
Create firewalls
Encrypt network packets
Manage certificates and encryption keys
Monitor file systems
What is a Certificate Authority (CA)?
A type of data encryption
A centralized trust source for certificates
A storage protocol
A malware prevention system
What is a "web of trust"?
A centralized system for certificate validation
A form of biometric authentication
A distributed trust model
A firewall system
Which operating system includes built-in certificate processes?
Linux
macOS
Windows Domain services
Android
Who is responsible for the trust in certificates created by a CA?
The router
The certificate user
The CA itself
The firewall
What does it mean when a Certificate Authority (CA) is self-signing certificates?
It is using a third-party CA to issue certificates
It signs its own certificates without needing an external CA
It refuses to issue certificates to internal users
It only issues certificates to the public internet
What is required for internal users to trust certificates from an internal CA?
The certificates must be sent via email
The CA must be purchased from a trusted provider
Why is identity and access management (IAM) important?
It ensures data is only stored locally
It controls how fast users can access data
It manages who is allowed to access certain data
It encrypts all data automatically
What is the primary goal of IAM?
Provide full access to all users
Allow anonymous access to sensitive files
Control access so users only access what they need
Block users from accessing the network
What is the principle of least privilege?
Users get admin rights only on weekends
Users have no access to any data
Users receive access only necessary for their job
All users share the same permissions
Why don’t all users get administrator access?
It makes them more productive
Admin access requires special training
It increases the risk of unauthorized actions
Admin access is slower
What access control model assigns permissions based on job roles?
Mandatory Access Control (MAC)
Discretionary Access Control (DAC)
Role-Based Access Control (RBAC)
Time-Based Access Control (TBAC)
How is RBAC implemented in Windows environments?
Using firewall settings
Through Active Directory domains only
By creating groups and assigning users to them
Using antivirus software
Which of the following best describes geographic restrictions?
Users are only allowed to access data at specific times
Access is based on a user's current location
Users can access data only from mobile devices
It blocks all connections from VPNs
What is a limitation of using IP addresses for geographic restrictions?
A. IP addresses are always encrypted
B. IP addresses cannot be blocked
C. They may not accurately reflect the user’s actual location
D. IP addresses cannot be assigned to VPNs
