Worksheets4.5 Identity and Access Management Quiz
Total questions: 20
Worksheet time: 10mins
Which of the following is the primary purpose of Identity and Access Management (IAM)?
To ensure the right people have the right access to the right resources at the right time
To monitor network traffic for performance issues
To create backup copies of data
To manage software updates on devices
Which of the following is an example of enforcing system-level policies in IAM?
Using a web filter to block malicious websites
Using Group Policy or SELinux
Blocking unauthorized traffic with a firewall
Using signatures to identify attacks
Which of the following best describes the role of a firewall in IAM?
Detects and prevents intrusions using signatures
Blocks unauthorized traffic by enforcing access rules
Enforces system-level policies like SELinux
Blocks malicious websites using a centralized proxy
If you are asked to select the best access control or authentication method for a scenario, which exam tip should you remember?
Always choose the most expensive solution
Select the method that best fits the scenario requirements
Choose the method with the most features
Select the method that is easiest to implement
What is the primary purpose of DNS filtering in cybersecurity?
Block access to known malicious domains
Encrypt email messages
Detect unauthorized file changes
Monitor user behavior
Which set of technologies is used to prevent email spoofing and phishing?
SPF, DKIM, DMARC
TLS, IPSec
Tripwire, Wazuh
UEBA tools
What is the main function of file integrity monitoring tools like Tripwire and Wazuh?
Detect unauthorized changes to critical files
Block phishing emails
Encrypt network traffic
Analyze user behavior
What does NAC ensure before allowing a device to connect to a network?
Devices meet security standards
Emails are encrypted
Files are not altered
User behavior is normal
Which tools are examples of advanced threat detection solutions?
CrowdStrike, Microsoft Defender
TLS, IPSec
SPF, DKIM
UEBA tools
A company wants to prevent phishing and malware by blocking access to certain domains. Which security control should they implement?
DNS filtering
File integrity monitoring
DLP
EDR/XDR
Which term refers to verifying a user's identity before issuing credentials?
Federation
De-provisioning
Identity proofing
Permission assignments
A company wants to allow users to log in once and access multiple systems without re-entering credentials. Which solution should they implement?
Federation
Single Sign-On (SSO)
De-provisioning
Permission assignments
The principle of least privilege in permission assignments is important for security because it:
Allows users to choose their own permissions
Grants only the permissions needed for a user’s role, reducing the risk of misuse or accidental damage
Grants all users administrative rights to ensure flexibility
Disables accounts for terminated users
What is the main principle of the "least privilege" access control model?
Users can access any system at any time
Users get only what they need
Access is based on location
Access is based on firewall rules
Which of the following is an example of a biometric factor used in multifactor authentication (MFA)?
Password
Smart card
Fingerprint
Location
Which of the following is NOT a factor used in multifactor authentication (MFA)?
Something you know
Something you have
Something you want
Something you are
Which access control model grants access based on attributes such as user, device, or location?
Role-based (RBAC)
Rule-based
Attribute-based (ABAC)
Least privilege
Which of the following is an example of a security key used for authentication?
YubiKey
Password
Fingerprint
Smart card
If a system uses firewall rules to determine access, which access control model is being used?
Rule-based
Role-based (RBAC)
Attribute-based (ABAC)
Time-of-day restrictions
Which of the following statements best describes Identity and Access Management (IAM)?
A tool for encrypting emails
A process for managing user identities and their access to resources
A type of firewall
A method for detecting network intrusions
