WorksheetsMidterm 1 - Database Security Quiz
Total questions: 50
Worksheet time: 50mins
What is the primary goal of database security in an enterprise?
To increase database performance
To protect sensitive data from unauthorized access
To reduce database storage costs
To simplify database management
Which of the following is NOT a core component of information systems security?
Confidentiality
Integrity
Availability
Scalability
Why is database security critical for organizations?
It ensures compliance with regulations like GDPR
It improves user interface design
It reduces hardware costs
It automates database backups
What is the primary purpose of a security architecture?
To design user-friendly database interfaces
To define a structured approach to protect systems and data
To optimize database query performance
To automate software updates
How many phases are typically involved in creating and maintaining a security architecture?
Two
Three
Four
Five
Which step in a disaster recovery plan reinstates a network after a disaster?
Risk assessment
Backup scheduling
Restoration and recovery
User training
What should a database administrator verify before installing a DBMS?
The color scheme of the user interface
The compatibility of the DBMS with the operating system
The number of database users
The database query language
Which of the following is a critical pre-installation step for database security?
Disabling default accounts
Increasing database storage size
Designing database tables
Optimizing query performance
Why should an administrator review network configurations before DBMS installation?
To ensure fast query execution
To secure database connections against external threats
To reduce database licensing costs
To simplify user access
How many main database models are commonly used in DBMSs?
Two
Three
Four
Five
Which database model is most commonly used in modern DBMSs like Oracle and MySQL?
Hierarchical
Network
Relational
Object-oriented
What is a key component of Oracle's architecture?
The Query Optimizer
The Instance and Database
The Web Server
The File System
Which feature distinguishes MySQL's architecture from Oracle?
Support for stored procedures
Pluggable storage engines
Automatic backups
Role-based access control
What is a primary function of SQL Server's Database Engine?
Managing user interfaces
Processing SQL queries and managing data
Hosting web applications
Encrypting network traffic
What is the recommended version of MySQL for first-time installation?
The latest beta release
The latest General Availability (GA) release
The oldest stable version
The development milestone release
Which step secures MySQL installation immediately after setup?
Running mysql_secure_installation
Creating new tables
Optimizing queries
Backing up the database
How can you verify a MySQL installation package is free from tampering?
Check the file size
Verify the digital signature or checksum
Install it directly
Compare file names
Which MySQL configuration setting enhances network security?
bind-address=127.0.0.1
max_connections=1000
query_cache_size=64M
innodb_buffer_pool_size=1G
Which authentication mode is more secure for SQL Server?
SQL Server Authentication
Windows Authentication
Mixed Mode Authentication
Guest Authentication
What is a best practice during SQL Server installation?
Using the default sa account
Enabling only necessary features
Setting all ports to 1433
Disabling encryption
Why should unique accounts be used for SQL Server services?
To simplify user management
To reduce memory usage
To limit the impact of a compromised account
To improve query performance
Which SQL Server configuration setting enhances security?
Enabling remote desktop access
Disabling the sa account
Increasing max memory usage
Allowing all IP connections
Which Oracle feature enhances security during installation?
Automatic Storage Management
Database Vault
Partitioning
Data Pump
What is a key security practice during Oracle installation?
Using default passwords
Locking unused accounts
Enabling all optional features
Disabling auditing
Which Oracle configuration file controls network security?
init.ora
sqlnet.ora
tnsnames.ora
listener.ora
What is a benefit of Oracle's freely downloadable version for learners?
Full enterprise features
Hands-on learning without cost
Automatic security updates
Unlimited user licenses
What is the principle of least privilege in a database environment?
Granting all users full access
Assigning only necessary permissions to users
Requiring complex passwords
Disabling user accounts
Which Oracle feature enforces password complexity?
Profiles
Roles
Privileges
Triggers
What is a role in SQL Server?
A user account
A collection of privileges assigned to users
A database table
A password policy
Which MySQL command grants a privilege to a user?
CREATE USER
GRANT
REVOKE
ALTER USER
What is the difference between authentication and authorization?
Authentication verifies identity; authorization determines access rights
Authentication assigns roles; authorization creates users
Authentication encrypts data; authorization audits logs
Authentication manages backups; authorization secures connections
Which SQL Server authentication mode uses Windows credentials?
SQL Server Authentication
Windows Authentication
Mixed Mode
Kerberos Authentication
What is a best practice for managing users in Oracle?
Reusing passwords across accounts
Regularly reviewing user privileges
Granting DBA role to all users
Disabling password expiration
Which MySQL privilege allows a user to modify table structures?
SELECT
INSERT
ALTER
EXECUTE
What is a common SQL vulnerability?
Improper indexing
Unvalidated user input
Large table sizes
Slow query performance
Which technique helps identify SQL vulnerabilities?
Source code analysis
Query optimization
Data compression
Table partitioning
What does the SQL injection test ' OR '1'='1' attempt to do?
Optimize query performance
Bypass authentication checks
Delete database tables
Encrypt user passwords
How can an attacker identify the DBMS vendor?
By checking the server's IP address
By analyzing error messages
By reviewing table names
By counting database rows
What is a sign of a SQL vulnerability in a web application?
Fast page loading
Unexpected query results from user input
Secure HTTPS connections
Regular backups
Which practice mitigates SQL vulnerabilities?
Using dynamic SQL statements
Implementing parameterized queries
Storing passwords in plain text
Allowing direct user input in queries
Which DBMS is known for its pluggable storage engines?
Oracle
SQL Server
MySQL
PostgreSQL
What is a benefit of using keys in a relational database?
Faster query execution
Reduced storage space
Improved data integrity
Simplified user access
Which MySQL command removes a user's privilege?
GRANT
REVOKE
DROP USER
ALTER USER
What is a common error users make that compromises database security?
Using strong passwords
Sharing login credentials
Backing up data regularly
Encrypting connections
Which Oracle profile setting enforces password expiration?
PASSWORD_LIFE_TIME
PASSWORD_COMPLEXITY
FAILED_LOGIN_ATTEMPTS
SESSION_TIMEOUT
What is a pre-installation step for SQL Server security?
Enabling all default accounts
Configuring a strong sa password
Opening all network ports
Disabling Windows Authentication
Which network security practice protects database connections?
Using VPNs or SSL/TLS
Increasing bandwidth
Disabling firewalls
Allowing all IP addresses
What is a drawback of Oracle's freely downloadable version?
Lack of documentation
Limited features for enterprise use
High installation costs
No security features
Which SQL Server feature manages user permissions?
Database Engine
Security Roles
Query Optimizer
Backup Scheduler
What is a sign of a SQL vulnerability during testing?
Consistent query results
Error messages exposing database structure
Fast query execution
Encrypted data output
