wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Cyber II - Unit 1: Quiz 1 - Foundational Practice & Frameworks

Total questions: 25

Worksheet time: 13mins

Name
Class
Date
1.

Ethics in cybersecurity primarily ensures

a)

Responsible use of cybersecurity skills

b)

Higher salaries for cybersecurity professionals

c)

Legal protection for hackers

d)

Faster internet speeds

2.

Ethical hacking involves illegally accessing systems.

a)

True

b)

False

3.

Which organization provides ethical guidelines for cybersecurity professionals?

a)

ISC2

b)

ISO

c)

FCC

d)

NICCS

4.

Which is NOT part of the CIA Triad?

a)

Central

b)

Confidentiality

c)

Availability

d)

Integrity

5.

The DIE triad focuses primarily on data.

a)

True

b)

False

6.

The concept "Immutable Infrastructure" means:

a)

Systems cannot be changed once deployed

b)

Data can be altered easily

c)

Data must always be available

d)

Infrastructure changes daily

7.

Which is NOT a function of the NIST Cybersecurity Framework (CSF)?

a)

Back-up

b)

Respond

c)

Identify

d)

Detect

8.

The NIST Risk Management Framework (RMF) is only used by federal agencies.

a)

True

b)

False

9.

ISO 27001 primarily:

a)

Provides international security standards

b)

Focuses on financial data

c)

Is a general cybersecurity framework

d)

Only applies to small businesses

10.

GDPR stands for:

a)

General Data Protection Regulation

b)

General Department Privacy Regulation

c)

Government Data Privacy Rule

d)

General Data Protection Responsibility

11.

Regulated data includes passport numbers.

a)

True

b)

False

12.

PCI-DSS regulates:

a)

Credit card transactions

b)

Health records

c)

Email communications

d)

Public databases

13.

Which term describes the commitment to protect society, uphold trust, act honorably, and always prioritize the public good while using knowledge and resources responsibly?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Cybersecurity ethics

14.

What is a set of rules that limits access to information?

a)

Framework

b)

Regulated data

c)

Confidentiality

d)

Cybersecurity ethics

15.

What is the assurance that the information is trustworthy and accurate?

a)

Availability

b)

Ephemerality

c)

Immutability

d)

Integrity

16.

What is the guarantee of reliable access to the information by authorized people?

a)

Availability

b)

Integrity

c)

Confidentiality

d)

Framework

17.

What is a three-part model designed to guide how infrastructure should be designed to limit the attack surface for an organization?

a)

CIA Triad

b)

DAD Triad

c)

NIST

d)

DIE Triad

18.

What is a three-part model designed to assist cybersecurity experts when analyzing risk and is made to directly counter the CIA Triad?

a)

DIE Triad

b)

CIA Triad

c)

DAD Triad

d)

NIST

19.

What is private business information that provides a competitive edge?

a)

Intellectual property data

b)

Legal information data

c)

Financial data

d)

Trade secret data

20.

What is the process of categorizing data based on sensitivity and security needs?

a)

Data classification

b)

Tokenization

c)

Obfuscation

d)

Encryption

21.

What is making data unreadable without special knowledge or tools?

a)

Tokenization

b)

Hashing

c)

Encryption

d)

Obfuscation

22.

A cybersecurity professional discovers a critical vulnerability in a company's software that could be exploited by a competitor to steal trade secrets. The professional is offered a large sum of money to sell the exploit on the black market. Which principle is most critical for the professional to uphold in this scenario?

a)

Confidentiality

b)

Integrity

c)

Cybersecurity ethics

d)

Availability

23.

How do the CIA and DIE triads work together in a complementary way?

a)

The CIA Triad focuses on physical security, while the DIE Triad focuses on digital security.

b)

The CIA Triad is for government systems, and the DIE Triad is for private sector systems.

c)

The CIA Triad focuses on protecting data, while the DIE Triad focuses on building infrastructure to enhance that protection.

d)

he CIA Triad is a modern framework, and the DIE Triad is a legacy framework.

24.

According to the NIST Cybersecurity Framework (CSF), which of the following is a primary step to take after detecting a cybersecurity incident?

a)

Identify

b)

Protect

c)

Respond

d)

Recover

25.

How do regulations like GDPR and HIPAA primarily impact data management in organizations?

a)

They mandate that all data must be encrypted to a specific standard.

b)

They require organizations to perform a full system audit once a month.

c)

They enforce strict rules on how sensitive data is collected, stored, and used, which can be categorized as a type of "regulated data."

d)

They allow organizations to sell user data, provided they inform the user first.