Font size
S
M
L
XL
WorksheetsITBP301_Chapter 08
Total questions: 10
Worksheet time: 9mins
Name
Class
Date
1.
Which type of user in an RBAC system is responsible for managing sensitive or general roles?
a)
Application owner
b)
End user
c)
Administrator
d)
Guest user
2.
Which of the following is an example of an inference channel?
a)
Using metadata to deduce hidden relationships
b)
Directly accessing a restricted column
c)
Modifying a view definition
d)
Backing up sensitive data
3.
Which technique prevents inference attacks by adding noise to query results?
a)
Query restriction
b)
Data perturbation
c)
View merging
d)
Row-level locking
4.
Which level of encryption applies to specific fields within a table?
a)
Record-level encryption
b)
Attribute-level encryption
c)
Table-level encryption
d)
Row-level encryption
5.
Which cloud deployment model is owned and operated by a single organization?
a)
Public cloud
b)
Private cloud
c)
Community cloud
d)
Hybrid cloud
6.
Which of the following are types of administrative policies supported by DBMS access control systems? (Choose all that apply)
a)
Centralized administration
b)
Decentralized administration
c)
Hierarchical administration
d)
Ownership-based administration
7.
Which of the following best describes inference in database security? (Choose all that apply)
a)
Unauthorized modification of data
b)
Deduction of sensitive information from authorized queries
c)
Use of metadata to infer hidden relationships
d)
Direct access to restricted columns
8.
Which of the following statements are true about statistical databases (SDBs)? (Choose all that apply)
a)
They only store raw transactional data.
b)
They provide aggregate statistics like counts and averages.
c)
They support both nonstatistical and statistical users.
d)
They are immune to inference attacks.
9.
Which of the following are reasons for implementing database encryption? (Choose all that apply)
a)
To improve database performance
b)
To protect data confidentiality
c)
To reduce storage requirements
d)
To secure data at rest
10.
Which of the following are deployment models defined by NIST for cloud computing? (Choose all that apply)
a)
Public cloud
b)
Private cloud
c)
Hybrid cloud
d)
Corporate cloud
Reset
