Font size
WorksheetsDay#3B: Quiz 17-18-19-20
Total questions: 24
Worksheet time: 15mins
Which of the options below is NOT part of the three V’s of big data?
Volume
Velocity
Variance
Structured data are based on binary data and do not have a predefined data model.
True
False
Which of the following is an example of unstructured data?
MongoDB
SQL databases
Microsoft Excel files
Which of the following is a benefit of weak artificial intelligence?
Automated tasks
Problem-solving
Use of critical thinking
Linear regression, decision tree, and logistic regression are some of the essential algorithms utilized by:
Machine learning
Artificial intelligence
Cloud computing
In which of the following cloud deployment models are the same computing resources shared among multiple customers?
Private cloud
Public cloud
Hybrid cloud
What services are delivered by the cloud provider, among others, when using infrastructure as a service (IaaS)?
Virtualization and network
Runtime and application
Middleware and data
Among the greatest impacts of new technology in information security is the fact that passwords will not be used any longer, as the new technology requires the use of more secure authentication methods, such as the use of biometrics, Identity as a Service (IDaS), and Fast Identity Online (FIDO).
True
False
Which of the following statements regarding machine learning is correct?
Machine learning is synonymous to artificial intelligence and the terms can be used interchangeably
Machine learning delivers hosted services over the internet
There are three types of machine learning: supervised machine learning, unsupervised machine learning and reinforcement learning
Which information security principle can transparency compromise during a communication if not addressed properly?
Integrity
Confidentiality
Availability
Which of the following is an example of a communication objectives?
Establish transparent communication with interested parties to improve credibility and reputation
Communicate the performance of the ISMS
Both A and B
The approaches or tools to use to conduct communication activities largely depend on whether organizations aim to consult, understand, inform, or involve target groups.
True
False
What should organizations consider regarding communications relevant to the ISMS?
The type of encryption used for communication, the frequency of communication, and the communication channels
The physical location of communication servers, the security protocols in place, and the bandwidth capacity for communication
The content of communication, the timing of communication, the intended recipients of communication, the responsible individuals for communication, and the processes used for communication
Which principle of successful communication requires to provide relevant information to interested parties using styles, language, and media that align with their preferences and needs, enabling them to fully participate?
Transparency
Appropriateness
Credibility
How can organizations ensure employee competence for the proper functioning of the ISMS?
On the basis of appropriate education, training, or experience
On the basis of a thorough understanding of the information security policy
On the basis of tenure and seniority within the organization
People __________________ is the encouragement of employees to acquire new or advanced __________________ by creating learning and training opportunities with circumstances to deploy the outcomes that have been acquired.
How can the competence gap be determined?
By comparing the previous and current competence levels
By comparing current and required competence levels
Based on the training and awareness programs output
An employee has received an email with a link that, when clicked, redirects them to a malicious website. The IT manager identifies the issue and immediately blocks the email forward system. What action should the organization take to prevent similar situations from recurring?
Conduct an awareness program to address social engineering and risks associated with emails
Conduct a training program to inform the employees about the risks associated with phishing and spams
Conduct an awareness program to address problems related to access control
Which of the following topics is a main area that should be addressed during an awareness program?
The implementation of antivirus software
Documented information required by the ISMS
The use of passwords
What does the measurement of change results include?
Generating the change metrics
Verifying the change success
Allocating the required time needed for the change
Which of the following statements is correct?
Organizations cannot get certified against ISO/IEC 27032
Organizations can get certified against ISO/IEC 27035-1
Organizations can get certified against ISO/IEC 27035-2
Which standard provides guidelines for security practices for stakeholders in the cyberspace?
ISO/IEC 27032
ISO/IEC 27035-1
ISO/IEC 27035-2
What is a Security Operations Center (SOC) team?
A group of information security program coordinators
A group of expert individuals, security analysts, engineers, and managers who supervise security operations
A group of internal auditors who manage operational activities of the organization
The top management must ensure that all members within the ISMS scope understand the value and importance of an effective information security incident management policy.
True
False
