wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity Quiz

Total questions: 121

Worksheet time: 1hrs 1mins

Name
Class
Date
1.

What does Integrity guarantee in the context of data?

a)

Data is always available.

b)

Data has not been changed by anyone during its entire lifecycle.

c)

Data is confidential.

d)

Data is encrypted.

2.

Which of the following are main features of hashing?

a)

The input can be of arbitrary size.

b)

The output is always a fixed size.

c)

The hash function is one-way and has no inverse.

d)

Two different input data almost never give the same output.

3.

What are the three principles of information security according to the McCumber Cube?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Processing

4.

What are the three states of information or data that should be protected?

a)

Data in transit

b)

Data at rest or in storage

c)

Data in processing

d)

Data in use

5.

What is Cryptology defined as?

a)

The development and use of codes.

b)

The study and breaking of codes.

c)

The science of making and breaking secret codes.

d)

A method of storing and transmitting data.

6.

Which of the following are types of malware?

a)

Virus

b)

Spam

c)

Spyware

d)

Adware

e)

Ransomware

7.

What is the primary goal of cybersecurity?

a)

To exploit vulnerabilities in networks.

b)

Continuous actions to protect network systems and all data from unauthorized use or destruction.

c)

To steal money and information.

d)

To track users online.

8.

What is encryption?

a)

The conversion of ciphertext into plaintext.

b)

The process of scrambling data to make it more difficult for unauthorized access.

c)

The conversion of plaintext into ciphertext.

d)

A method of controlling access to a building.

9.

Which of the following are examples of personal sensitive information?

a)

EMBG

b)

Medical data

c)

Credit card number

d)

Financial records

10.

What are the four steps in the access control process?

a)

Identification

b)

Authentication

c)

Authorization

d)

Tracking

11.

What is the main characteristic of a hash function?

a)

It is a two-way function.

b)

It has an inverse.

c)

It is a one-way function.

d)

It produces variable-size output.

12.

What is the purpose of ethical frameworks in cybersecurity?

a)

To allow cyberattackers to operate freely.

b)

To ensure that defense professionals work within legal provisions and boundaries.

c)

To enable the misuse of confidential data.

d)

To make all unethical actions punishable by law.

13.

Which of these defines integrity in the context of information?

a)

Data confidentiality

b)

Data availability

c)

Data and information are complete and unaltered at the time we retrieve them.

d)

Data encryption

14.

What are the two main approaches to breaking through hashes?

a)

Brute force

b)

Dictionary attack

c)

Social engineering

d)

Phishing

15.

What is the role of a key in encryption and decryption?

a)

It makes the data readable.

b)

It plays a major role in encryption and decryption.

c)

It converts ciphertext to plaintext.

d)

It is only used for encryption.

16.

What is the difference between symmetric and asymmetric encryption algorithms?

a)

Symmetric algorithms use two different keys, while asymmetric use the same key.

b)

Symmetric algorithms use the same pre-shared key for encryption and decryption, while asymmetric algorithms use one key for encryption and another for decryption.

c)

Asymmetric algorithms are simpler and require less processing power.

d)

Symmetric algorithms are more complex and require more processing power.

17.

What are the types of cryptography mentioned?

a)

Block Ciphers

b)

Stream Ciphers

c)

Hash Ciphers

d)

Symmetric Ciphers

18.

What are common signs of spam messages?

a)

The message has no title.

b)

The message requests user account information be updated.

c)

The message text has misspelled words or strange punctuation.

d)

The links in the message are long and/or strange.

e)

The message asks the user to open an attached file.

19.

What is a "blended attack" in cyber threats?

a)

An attack that only uses software vulnerabilities.

b)

A combined attack.

c)

An attack that only targets hardware.

d)

An attack that only uses social engineering.

20.

What is "Obfuscation" in the context of keeping secrets?

a)

The art of making confusing, ambiguous, difficult-to-understand messages.

b)

Deliberately scrambling messages to prevent unauthorized access.

c)

Directly making messages readable.

d)

Only used for data masking.

21.

What is the primary purpose of the McCumber Cube?

a)

To define new types of cyberattacks.

b)

To categorize malware.

c)

To be used as a tool for managing the protection of networks, domains, and the Internet.

d)

To identify cybercriminals.

22.

What does "Confidentiality" in cybersecurity aim to prevent?

a)

Data alteration.

b)

Disclosure of sensitive information to unauthorized people, resources, or processes.

c)

System downtime.

d)

Unauthorized access to physical equipment.

23.

What types of sensitive information are mentioned?

a)

Personal data

b)

Business data

c)

Classified data

d)

Public data

24.

What are some methods used to ensure confidentiality?

a)

Encryption

b)

Authentication

c)

Identity verification

d)

Physical security

25.

What is the core idea behind the "Ethical Approach for the Common Good"?

a)

Actions that bring the most good over bad are the best ethical choices.

b)

Everyone should make their own decisions, not at the expense of others.

c)

The actions of people in charge of cybersecurity should take into account the whole picture of social good.

d)

Prioritizing personal gain over societal benefit.

26.

What does "Cryptanalysis" involve?

a)

The development of codes.

b)

The use of codes.

c)

The study and breaking of codes.

d)

The creation of new encryption algorithms.

27.

What is "Plaintext"?

a)

Encrypted data.

b)

Readable data.

c)

Data that has been scrambled.

d)

Ciphertext.

28.

What is the main weakness of hashing when protecting against intentional changes?

a)

It protects against accidental changes.

b)

If a malicious user intercepts, changes, and calculates a new hash, the recipient receives a message with a valid hash.

c)

It is not subject to man-in-the-middle attacks.

d)

It makes it easier to find the original password.

29.

What is the role of "Project Zero" according to the document?

a)

To create new malware.

b)

To exploit known vulnerabilities.

c)

Google formed a permanent team to find software vulnerabilities.

d)

To monitor network communication.

30.

What is "Cryptojacking"?

a)

Using strong encryption techniques for secure online transactions.

b)

Using resources to mine cryptocurrencies without approval or user knowledge.

c)

A new type of digital money.

d)

Solving mathematical problems for transaction authentication.

31.

What are the three categories of cyber protection according to McCumber Cube?

a)

Confidentiality, Integrity, Availability.

b)

Transmission, Storage, Processing.

c)

Technologies, Policies and Practices, People.

d)

Identification, Authentication, Authorization.

32.

What is "Obfuscation" related to?

a)

Data masking

b)

Steganographic techniques

c)

Software watermarking

d)

Software obfuscation

33.

What is the definition of "Cybersecurity"?

a)

Actions to exploit network systems.

b)

Continuous actions to protect network systems and all data from unauthorized use or destruction.

c)

Monitoring online identities.

d)

Tracking cookies.

34.

What is a "Vulnerability"?

a)

A program written to exploit a known defect.

b)

Any type of software or hardware defect.

c)

The act of using an exploit to attack a defect.

d)

A malicious executable code.

35.

What is the goal of "White hat" hackers?

a)

To exploit vulnerabilities for personal gain.

b)

To identify vulnerabilities to improve security.

c)

To steal credit card information.

d)

To install malware on systems.

36.

What is the primary characteristic of a "Worm" malware?

a)

It attaches to other executable files and requires user action.

b)

It carries out malicious operations that resemble desired ones.

c)

It replicates itself through independent exploiting vulnerabilities in networks and does not need a host.

d)

It remains inactive until an activation trigger.

37.

What ethical principle is concerned with actions that bring the most good over bad?

a)

Real approach

b)

Approach for the common good

c)

Utilitarian ethics

d)

Deontology

38.

What is a "Logic bomb"?

a)

A program that tracks and spies on a user.

b)

A malicious program that uses an activation-trigger to wake up malicious code.

c)

A program that displays unwanted ads.

d)

A program that blocks access to data until ransom is paid.

39.

What is a "digital fingerprint" in hashing?

a)

A unique identifier for a user.

b)

A hash value that changes with the smallest change in the message.

c)

A method for authentication only.

d)

A way to encrypt data.

40.

What is "Ciphertext"?

a)

Readable data.

b)

Encrypted data.

c)

Plaintext.

d)

A cryptographic key.

41.

Which of the following is NOT one of the Ten Commandments of Computer Ethics?

a)

Thou Shalt Not Use A Computer To Harm Other People.

b)

Thou Shalt Always Share Your Passwords With Others.

c)

Thou Shalt Not Snoop Around In Other People's Computer Files.

d)

Thou Shalt Not Copy Or Use Proprietary Software For Which You Have Not Paid.

42.

What is "Steganalysis"?

a)

The process of hiding information.

b)

Discovering hidden information.

c)

The art of making confusing messages.

d)

A type of encryption.

43.

What does the "Real Approach" in ethical systems emphasize?

a)

Actions that bring the most good over bad.

b)

Everyone to make their own decisions, not at the expense of others, primarily referring to rights to truth, privacy, and security.

c)

What is good for society as a whole.

d)

Misuse of

44.

What is the key characteristic of "Brute force" attack?

a)

Uses files of most common words.

b)

Tries all possible combinations of characters for a given length.

c)

Requires little processing time.

d)

Compares calculated hashes to password hashes.

45.

What is "Man-in-The-Middle" or "Man-in-The-Mobile" malware?

a)

A virus that attaches to executable files.

b)

A Trojan horse that uses user privileges.

c)

Malware that takes control of a device without the user's knowledge.

d)

A worm that replicates itself.

46.

What is the meaning of "Exploitation" in the context of cyberattacks?

a)

Any type of software or hardware defect.

b)

A program written to exploit a known vulnerability.

c)

The act of using an exploit to attack the vulnerability.

d)

The process of finding vulnerabilities.

47.

What does "Software watermarking" protect software from?

a)

Unreadable results from reverse engineering.

b)

Unauthorized access or modification.

c)

Difficult analysis.

d)

Normal program functionality.

48.

What are the two classes of encryption algorithms?

a)

Private and Public.

b)

Symmetric and Asymmetric.

c)

Block and Stream.

d)

Plaintext and Ciphertext.

49.

What is a "Dictionary attack"?

a)

An attack that tries all possible combinations of characters.

b)

An attack that uses files of the most common words, phrases, or passwords.

c)

An attack that focuses on hardware vulnerabilities.

d)

An attack that exploits buffer overflows.

50.

What is "Software obfuscation"?

a)

Protecting software from unauthorized access.

b)

Embedding a secret message into the program.

c)

Translates software into an equivalent version that is very difficult to analyze, but still works.

d)

Protecting software from modification.

51.

What is the distinction between "online" and "offline" identity?

a)

Online identity is about personal information, offline is about public information.

b)

Online identity is how you present yourself on the Internet, while offline identity is personal information and who knows it.

c)

There is no distinction between the two.

d)

Online identity is always fully visible.

52.

What are the "Countermeasures" in the McCumber Cube?

a)

Confidentiality, Integrity, Availability.

b)

Transmission, Storage, Processing.

c)

Technology, Policies and Practice, People.

d)

Identification, Authentication, Authorization.

53.

What is the importance of "Key management" in cryptosystem design?

a)

It makes the algorithm more complicated.

b)

It is the easiest part of the design.

c)

Many systems have failed due to key management problems.

d)

It ensures that the algorithm is secret.

54.

What are the common types of software vulnerabilities mentioned?

a)

Buffer overflow

b)

Invalid input

c)

Competition conditions (Race Conditions)

d)

Weaknesses in security practices

55.

What is the purpose of an "appropriate username without personal information" online?

a)

To make you an easy target for attacks.

b)

To indicate that you are easy a target for unwanted attention.

c)

To avoid indicating that you are an easy target for attacks or unwanted attention.

d)

To reveal more personal information.

56.

What does "Auditing" involve in security settings?

a)

Disabling security policies.

b)

Tracking and logging events.

c)

Undocking devices.

d)

Restricting floppy access.

57.

According to the document, what do "Professionals who care for Cyberattack defenses" need to possess?

a)

The ability to ignore legal provisions.

b)

At least the same skills as those attacking, while working within legal and ethical frameworks.

c)

The ability to break into any computer system.

d)

No limits on their actions.

58.

What does "Data masking" involve?

a)

Encryption only.

b)

Obfuscation of data and steganography.

c)

Storing data in plaintext.

d)

Only applying access controls.

59.

What is the role of the "ISO model" in data protection?

a)

It defines only technical guidance.

b)

It defines objectives for data in each of the three states (transmission, storage, processing) and ties them to policies, procedures, and guidelines.

c)

It is implemented only by IT professionals.

d)

It is independent of management definitions.

60.

What is "Cryptography"?

a)

The science of making and breaking secret codes.

b)

The development and use of codes.

c)

The study and breaking of codes.

d)

A way of controlling access.

61.

What does Integrity guarantee in the context of data?

a)

Data is always available.

b)

Data has not been changed by anyone during its entire lifecycle.

c)

Data is confidential.

d)

Data is encrypted.

62.

Which of the following are main features of hashing?

a)

The input can be of arbitrary size.

b)

The output is always a fixed size.

c)

The hash function is one-way and has no inverse.

d)

Two different input data almost never give the same output.

63.

What are the three principles of information security according to the McCumber Cube?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Processing

64.

What are the three states of information or data that should be protected?

a)

Data in transit

b)

Data at rest or in storage

c)

Data in processing

d)

Data in use

65.

What is Cryptology defined as?

a)

The development and use of codes.

b)

The study and breaking of codes.

c)

The science of making and breaking secret codes.

d)

A method of storing and transmitting data.

66.

Which of the following are types of malware?

a)

Spam

b)

Spyware

c)

Adware

d)

Ransomware

e)

Virus

67.

What is the primary goal of cybersecurity?

a)

To exploit vulnerabilities in networks.

b)

Continuous actions to protect network systems and all data from unauthorized use or destruction.

c)

To steal money and information.

d)

To track users online.

68.

What is encryption?

a)

The conversion of ciphertext into plaintext.

b)

The process of scrambling data to make it more difficult for unauthorized access.

c)

The conversion of plaintext into ciphertext.

d)

A method of controlling access to a building.

69.

Which of the following are examples of personal sensitive information?

a)

EMBG

b)

Medical data

c)

Credit card number

d)

Financial records

70.

What are the four steps in the access control process?

a)

Identification

b)

Authentication

c)

Authorization

d)

Tracking

71.

What is the main characteristic of a hash function?

a)

It is a two-way function.

b)

It has an inverse.

c)

It is a one-way function.

d)

It produces variable-size output.

72.

What is the purpose of ethical frameworks in cybersecurity?

a)

To allow cyberattackers to operate freely.

b)

To ensure that defense professionals work within legal provisions and boundaries.

c)

To enable the misuse of confidential data.

d)

To make all unethical actions punishable by law.

73.

Which of these defines integrity in the context of information?

a)

Data confidentiality

b)

Data availability

c)

Data and information are complete and unaltered at the time we retrieve them.

d)

Data encryption

74.

What are the two main approaches to breaking through hashes?

a)

Brute force

b)

Dictionary attack

c)

Social engineering

d)

Phishing

75.

What is the role of a key in encryption and decryption?

a)

It makes the data readable.

b)

It plays a major role in encryption and decryption.

c)

It converts ciphertext to plaintext.

d)

It is only used for encryption.

76.

What is the difference between symmetric and asymmetric encryption algorithms?

a)

Symmetric algorithms use two different keys, while asymmetric use the same key.

b)

Symmetric algorithms use the same pre-shared key for encryption and decryption, while asymmetric algorithms use one key for encryption and another for decryption.

c)

Asymmetric algorithms are simpler and require less processing power.

d)

Symmetric algorithms are more complex and require more processing power.

77.

What are the types of cryptography mentioned?

a)

Block Ciphers

b)

Stream Ciphers

c)

Hash Ciphers

d)

Symmetric Ciphers

78.

What are common signs of spam messages?

a)

The message has no title.

b)

The message requests user account information be updated.

c)

The message text has misspelled words or strange punctuation.

d)

The links in the message are long and/or strange.

e)

The message asks the user to open an attached file.

79.

What is a "blended attack" in cyber threats?

a)

An attack that only uses software vulnerabilities.

b)

A combined attack.

c)

An attack that only targets hardware.

d)

An attack that only uses social engineering.

80.

What is "Obfuscation" in the context of keeping secrets?

a)

The art of making confusing, ambiguous, difficult-to-understand messages.

b)

Deliberately scrambling messages to prevent unauthorized access.

c)

Directly making messages readable.

d)

Only used for data masking.

81.

What is the primary purpose of the McCumber Cube?

a)

To define new types of cyberattacks.

b)

To categorize malware.

c)

To be used as a tool for managing the protection of networks, domains, and the Internet.

d)

To identify cybercriminals.

82.

What does "Confidentiality" in cybersecurity aim to prevent?

a)

Data alteration.

b)

Disclosure of sensitive information to unauthorized people, resources, or processes.

c)

System downtime.

d)

Unauthorized access to physical equipment.

83.

What types of sensitive information are mentioned?

a)

Personal data

b)

Business data

c)

Classified data

d)

Public data

84.

What are some methods used to ensure confidentiality?

a)

Encryption

b)

Authentication

c)

Identity verification

d)

Physical security

85.

What are some methods used to ensure confidentiality?

a)

Encryption

b)

Authentication

c)

Identity verification

d)

Physical security

86.

What is the core idea behind the "Ethical Approach for the Common Good"?

a)

Actions that bring the most good over bad are the best ethical choices.

b)

Everyone should make their own decisions, not at the expense of others.

c)

The actions of people in charge of cybersecurity should take into account the whole picture of social good.

d)

Prioritizing personal gain over societal benefit.

87.

What does "Cryptanalysis" involve?

a)

The development of codes.

b)

The use of codes.

c)

The study and breaking of codes.

d)

The creation of new encryption algorithms.

88.

What is "Plaintext"?

a)

Encrypted data.

b)

Readable data.

c)

Data that has been scrambled.

d)

Ciphertext.

89.

What is the main weakness of hashing when protecting against intentional changes?

a)

It protects against accidental changes.

b)

If a malicious user intercepts, changes, and calculates a new hash, the recipient receives a message with a valid hash.

c)

It is not subject to man-in-the-middle attacks.

d)

It makes it easier to find the original password.

90.

What is the role of "Project Zero" according to the document?

a)

To create new malware.

b)

To exploit known vulnerabilities.

c)

Google formed a permanent team to find software vulnerabilities.

d)

To monitor network communication.

91.

What is "Cryptojacking"?

a)

Using strong encryption techniques for secure online transactions.

b)

Using resources to mine cryptocurrencies without approval or user knowledge.

c)

A new type of digital money.

d)

Solving mathematical problems for transaction authentication.

92.

What are the three categories of cyber protection according to McCumber Cube?

a)

Confidentiality, Integrity, Availability.

b)

Transmission, Storage, Processing.

c)

Technologies, Policies and Practices, People.

d)

Identification, Authentication, Authorization.

93.

What is "Obfuscation" related to?

a)

Data masking

b)

Steganographic techniques

c)

Software watermarking

d)

Software obfuscation

94.

What is the definition of "Cybersecurity"?

a)

Actions to exploit network systems.

b)

Continuous actions to protect network systems and all data from unauthorized use or destruction.

c)

Monitoring online identities.

d)

Tracking cookies.

95.

What is a "Vulnerability"?

a)

A program written to exploit a known defect.

b)

Any type of software or hardware defect.

c)

The act of using an exploit to attack a defect.

d)

A malicious executable code.

96.

What is the goal of "White hat" hackers?

a)

To exploit vulnerabilities for personal gain.

b)

To identify vulnerabilities to improve security.

c)

To steal credit card information.

d)

To install malware on systems.

97.

What is the primary characteristic of a "Worm" malware?

a)

It attaches to other executable files and requires user action.

b)

It carries out malicious operations that resemble desired ones.

c)

It replicates itself through independent exploiting vulnerabilities in networks and does not need a host.

d)

It remains inactive until an activation trigger.

98.

What ethical principle is concerned with actions that bring the most good over bad?

a)

Real approach

b)

Approach for the common good

c)

Utilitarian ethics

d)

Deontology

99.

What is a "Logic bomb"?

a)

A program that tracks and spies on a user.

b)

A malicious program that uses an activation-trigger to wake up malicious code.

c)

A program that displays unwanted ads.

d)

A program that blocks access to data until ransom is paid.

100.

What is a "digital fingerprint" in hashing?

a)

A unique identifier for a user.

b)

A hash value that changes with the smallest change in the message.

c)

A method for authentication only.

d)

A way to encrypt data.

101.

What is "Ciphertext"?

a)

Readable data.

b)

Encrypted data.

c)

Plaintext.

d)

A cryptographic key.

102.

Which of the following is NOT one of the Ten Commandments of Computer Ethics?

a)

Thou Shalt Not Use A Computer To Harm Other People.

b)

Thou Shalt Always Share Your Passwords With Others.

c)

Thou Shalt Not Snoop Around In Other People's Computer Files.

d)

Thou Shalt Not Copy Or Use Proprietary Software For Which You Have Not Paid.

103.

What is "Steganalysis"?

a)

The process of hiding information.

b)

Discovering hidden information.

c)

The art of making confusing messages.

d)

A type of encryption.

104.

What does the "Real Approach" in ethical systems emphasize?

a)

Actions that bring the most good over bad.

b)

Everyone to make their own decisions, not at the expense of others, primarily referring to rights to truth, privacy, and security.

c)

What is good for society as a whole.

d)

Misuse of confidential data.

105.

What is the key characteristic of "Brute force" attack?

a)

Uses files of most common words.

b)

Tries all possible combinations of characters for a given length.

c)

Requires little processing time.

d)

Compares calculated hashes to password hashes.

106.

What is "Man-in-The-Middle" or "Man-in-The-Mobile" malware?

a)

A virus that attaches to executable files.

b)

A Trojan horse that uses user privileges.

c)

Malware that takes control of a device without the user's knowledge.

d)

A worm that replicates itself.

107.

What is the meaning of "Exploitation" in the context of cyberattacks?

a)

Any type of software or hardware defect.

b)

A program written to exploit a known vulnerability.

c)

The act of using an exploit to attack the vulnerability.

d)

The process of finding vulnerabilities.

108.

What does "Software watermarking" protect software from?

a)

Unreadable results from reverse engineering.

b)

Unauthorized access or modification.

c)

Difficult analysis.

d)

Normal program functionality.

109.

What are the two classes of encryption algorithms?

a)

Private and Public.

b)

Symmetric and Asymmetric.

c)

Block and Stream.

d)

Plaintext and Ciphertext.

110.

What is a "Dictionary attack"?

a)

An attack that tries all possible combinations of characters.

b)

An attack that uses files of the most common words, phrases, or passwords.

c)

An attack that focuses on hardware vulnerabilities.

d)

An attack that exploits buffer overflows.

111.

What is "Software obfuscation"?

a)

Protecting software from unauthorized access.

b)

Embedding a secret message into the program.

c)

Translates software into an equivalent version that is very difficult to analyze, but still works.

d)

Protecting software from modification.

112.

What is the distinction between "online" and "offline" identity?

a)

Online identity is about personal information, offline is about public information.

b)

Online identity is how you present yourself on the Internet, while offline identity is personal information and who knows it.

c)

There is no distinction between the two.

d)

Online identity is always fully visible.

113.

What are the "Countermeasures" in the McCumber Cube?

a)

Confidentiality, Integrity, Availability.

b)

Transmission, Storage, Processing.

c)

Technology, Policies and Practice, People.

d)

Identification, Authentication, Authorization.

114.

What is the importance of "Key management" in cryptosystem design?

a)

It makes the algorithm more complicated.

b)

It is the easiest part of the design.

c)

Many systems have failed due to key management problems.

d)

It ensures that the algorithm is secret.

115.

What are the common types of software vulnerabilities mentioned?

a)

Buffer overflow

b)

Invalid input

c)

Competition conditions (Race Conditions)

d)

Weaknesses in security practices

116.

What is the purpose of an "appropriate username without personal information" online?

a)

To make you an easy target for attacks.

b)

To indicate that you are easy a target for unwanted attention.

c)

To avoid indicating that you are an easy target for attacks or unwanted attention.

d)

To reveal more personal information.

117.

What does "Auditing" involve in security settings?

a)

Disabling security policies.

b)

Tracking and logging events.

c)

Undocking devices.

d)

Restricting floppy access.

118.

According to the document, what do "Professionals who care for Cyberattack defenses" need to possess?

a)

The ability to ignore legal provisions.

b)

At least the same skills as those attacking, while working within legal and ethical frameworks.

c)

The ability to break into any computer system.

d)

No limits on their actions.

119.

What does "Data masking" involve?

a)

Encryption only.

b)

Obfuscation of data and steganography.

c)

Storing data in plaintext.

d)

Only applying access controls.

120.

What is the role of the "ISO model" in data protection?

a)

It defines only technical guidance.

b)

It defines objectives for data in each of the three states (transmission, storage, processing) and ties them to policies, procedures, and guidelines.

c)

It is implemented only by IT professionals.

d)

It is independent of management definitions.

121.

What is "Cryptography"?

a)

The science of making and breaking secret codes.

b)

The development and use of codes.

c)

The study and breaking of codes.

d)

A way of controlling access.