WorksheetsInformation Security Quiz
Total questions: 25
Worksheet time: 13mins
Which of the following is NOT a critical characteristic of information?
Confidentiality
Availability
Cost-effectiveness
Integrity
What does the 'C' in the CIA triad stand for?
Control
Confidentiality
Centralization
Communication
The NSTISSC Security Model is also called the:
OSI Model
Bell-LaPadula Model
McCumber Cube
RSA Model
Which of the following is NOT a component of an information system?
People
Networks
Time
Software
What is the purpose of the Security SDLC?
To manage databases securely
To secure hardware only
To integrate security into system development lifecycle
To create backup systems
Which component of the information system is considered the weakest link?
Software
Hardware
People
Data
Balancing security and access means:
Blocking all users
Giving access to all users
Implementing strong security and maintaining usability
Ignoring security to improve performance
The first phase of the SDLC is:
Design
Testing
Implementation
Planning
Which one is a goal of information security?
Increase data size
Limit internet use
Protect confidentiality, integrity, and availability
Delete unnecessary files
Which model includes layers such as policy, technology, and education?
OSI Model
Waterfall Model
McCumber Cube
Spiral Model
Which of the following is a type of threat?
Firewall
Antivirus
Natural Disaster
Encryption
Which term refers to an intentional act to harm or steal information?
Threat
Attack
Vulnerability
Risk
A set of rules that control access to resources is known as:
Policy
Firewall
Attack
Threat
Which policy type ensures that only authorized persons can access data?
Integrity Policy
Confidentiality Policy
Hybrid Policy
Compliance Policy
What is an Access Control Matrix used for?
Encrypting files
Defining user access rights
Creating firewalls
Detecting malware
Which of the following is a legal issue in cybersecurity?
Programming style
Encryption algorithm
Data breach laws
CPU speed
Which policy ensures data is accurate and unaltered?
Confidentiality Policy
Authorization Policy
Integrity Policy
Hybrid Policy
Which term describes combining confidentiality and integrity policies?
Dual policy
Mixed policy
Hybrid policy
Secure policy
What is the main need for security in an organization?
Reduce employee workload
Speed up computers
Protect assets and data
Save electricity
Which of the following is an ethical issue in cybersecurity?
Using licensed software
Using strong passwords
Following coding standards
Writing test cases
What is the main purpose of a digital signature?
Encrypt data
Compress data
Verify authenticity and integrity
Share files
Which algorithm is commonly used in digital signature schemes?
AES
RSA
SHA-1
Blowfish
Authentication is the process of:
Encrypting data
Hiding information
Verifying identity
Deleting users
Digital signatures use which type of cryptography?
Symmetric
Asymmetric
Linear
Modular
Which of the following is a key benefit of using digital signatures?
Increased file size
Decreased network speed
Non-repudiation
Lower hardware cost
