wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

IAS-Long Quiz

Total questions: 50

Worksheet time: 50mins

Name
Class
Date
1.

Which of the following best defines DATA?

a)

Raw facts and figures without context

b)

Processed facts wih meaning

c)

Interpreted knowledge

d)

Useful insight for decision-making

2.

Test scores of students listed in a spreadsheet without analysis represent:

a)

information

b)

data

c)

knowledge

d)

wisdom

3.

When sales figures are summarized into a report showing monthly trends, this becomes:

a)

data

b)

information

c)

noise

d)

threat

4.

In computing, INFORMATION is created when:

a)

facts are encrypted

b)

data is processed and given meaning

c)

records are stored in a database

d)

passwords protect sensitive details

5.

Which of the following is NOT an example of information?

a)

A graph showing rising sales trends

b)

A student's grade point average (GPA)

c)

A list of raw, unorganized number

d)

A summarized weather forecast

6.

The main goal of information security is to protect

a)

data, systems, and users from threats

b)

confidential government files

c)

physical storage devices

d)

personal information

7.

Which of the following best describes INFORMATION ASSURANCE?

a)

Ensuring that only managers can view files

b)

Practices that guarantee information is trustworthy and available

c)

Encrypting every email sent in an organization

d)

Installing antivirus software only

8.

Which element of the CIA triad ensures that information is not disclosed to unauthorized individuals?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Authentication

9.

When a bank prevents unauthorized modification of customer records, it ensures:

a)

Confidentiality

b)

Availability

c)

Integrity

d)

Risk

10.

Making sure that information and systems are accessible when needed refers to:

a)

Confidentiality

b)

Integrity

c)

Assuraance

d)

Availability

11.

A company stores backup files in an offsite location to protect against disasters. Which CIA principle does this support?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Assurance

12.

Which of the following is an example of confidentiality being compromised

a)

Hackers delete system logs

b)

Hackers alter payroll amounts

c)

Hackers access employee social security number

d)

Server downtime causes delays

13.

Which of the following BEST maintains data integrity?

a)

backups

b)

hashing

c)

encryption

d)

antivirus software

14.

Which term refers to the protection of data from destruction or unauthorized changes?

a)

Assurance

b)

Availability

c)

Integrity

d)

Confidentiality

15.

Information security differs from IT security because:

a)

IT security only protects networks and hardware.

b)

Information security focuses solely on paper-based information.

c)

Information security is unrelated to data.

d)

IT security is broader in scope than information security.

16.

An employee leaves their computer unlocked in the office, and another person views confidential files. Which CIA principle was compromised?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Assurance

17.

A student uploads a research paper to the school portal, but a system error changes parts of the content without their knowledge. Which CIA principle is violated?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Assurance

18.

During a power outage, a hospital’s electronic medical records system becomes inaccessible to doctors. Which CIA principle is most affected?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Reliability

19.

To ensure confidentiality of messages between two employees, which measure is most appropriate?

a)

File duplication

b)

Data backup

c)

Redundant server

d)

Encryption

20.

Which CIA principle is supported when digital signatures are used to verify that a message was not altered during transmission?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Accessibility

21.

Which of the following is considered an information asset?

a)

Firewall

b)

Customer database

c)

Malicious software

d)

Antivirus software

22.

Anything that has potential to cause harm to an asset.

a)

Asset

b)

Risk

c)

Threat

d)

Countermeasure

23.

What is the main purpose of a countermeasure?

a)

To create more risks.

b)

To eliminate all threats completely.

c)

To reduce the likelihood or impact of risks.

d)

To store backup data.

24.

Which of the following is a physical threat to information security?

a)

Malware infection

b)

Unauthorized login

c)

Fire in the data center

d)

Phishing email

25.

Which is an example of a countermeasure?

a)

Weak passwords

b)

Access control policies

c)

Unpatched software

d)

Inside threat

26.

If an organization does not update its software, which risk increases?

a)

data confidentiality

b)

backup reliability

c)

vulnerability to cyberattacks

d)

availability of power supply

27.

Which of the following is an intentional threat?

a)

Accidental file deletion

b)

Earthquake damaging a data center

c)

Power outage in the building

d)

Employee theft of confidential files

28.

A threat exploits vulnerabilities in an asset, creating risk.

a)

True

b)

False

c)

Maybe

29.

Antivirus software is an example of a:

a)

Asset

b)

Vulnerability

c)

Risk

d)

Countermeasure

30.

A university loses internet access due to a Distributed Denial of Service (DDoS) attack. What was affected the most?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Encryption

31.

A flaw or weakness that can be exploited by a threat.

a)

True

b)

False

c)

Maybe

32.

A school’s grading system is hosted online. If a hacker exploits weak passwords to change grades, the weak passwords represent:

a)

An asset

b)

A vulnerability

c)

A risk rresponse

d)

A countermeasure

33.

Which of the following is the BEST example of a human threat?

a)

Employee stealing sensitive data

b)

Lightning strike causing power outage

c)

Flood damaging the computer lab

d)

Earthquake destroying the server room

34.

A university IT department regularly applies security patches to its systems to prevent known exploits. This activity is a form of:

a)

Risk transfer

b)

Countermeasure

c)

Vulnerability

d)

Threat actor

35.

A company has critical financial data stored in its database. If this database is attacked by ransomware, the financial data itself is classified as the:

a)

Asset

b)

Risk

c)

Threat

d)

Countermeasure

36.

On Facebook, what is considered the primary asset of a user that needs protection? (select 2 answers)

a)


Personal information

b)

Account credentials

c)

Friends list

d)

Timeline post

37.

A Facebook user clicks on a fake login page and unknowingly provides their password. This situation is an example of:

a)

Threat

b)

Risk

c)

Backup

d)

Countermeasure

38.

In online shopping, enabling two-factor authentication (2FA) before making payments is an example of:

a)

Asset

b)

Threat

c)

Risk

d)

Countermeasure

39.

To protect against fake online sellers, which of the following countermeasures is most effective?

a)

Using strong passwords only

b)

Verifying seller legitimacy and checking reviews

c)

Sharing account details with friends

d)

Avoiding two-factor authentication

40.

In a school’s Local Area Network (LAN), students share files using a common folder without restrictions. What risk exists?

a)

Files cannot be accessed at all

b)

Data may be accidentally or maliciously deleted

c)

Confidentiality is fully assured

d)

Internet speed will increase

41.

A small business owner uses online banking but does not enable two-factor authentication. What risk is present?

a)

Lower risk of phishing

b)

Faster transactions

c)

Higher risk of unauthorized account access

d)

No security risk

42.

In a university LAN, the server room is not locked and anyone can enter. Which type of threat is most evident?

a)

Network congestion

b)

Natural threat

c)

Physical security threat

d)

Data redundancy

43.

A student connects to public Wi-Fi to shop online. What is the primary risk?

a)

Exposure to man-in-the-middle attacks

b)

Faster download speed

c)

Stronger encryption

d)

Improved connection reliability

44.

A company regularly performs data backups on cloud storage. This measure addresses which risk?

a)

Risk of weak access controls

b)

Risk of password phishing

c)

Risk of data loss due to system failure

d)

Risk of network congestion

45.

If students use weak passwords for their school accounts, what countermeasure is best to reduce the risk?

a)
Allow students to use any password they choose.
b)
Encourage students to share passwords with friends.
c)
Enforce strong password policies for student accounts.
d)
Disable password requirements for student accounts.
46.

In an e-commerce platform, what risk arises when customer data is not encrypted?

a)

Attackers may intercept and misuse sensitive data

b)

Transactions will process faster

c)

Produccts cannot be delivered

d)

Customer's reviews disappear.

47.

user receives a suspicious email with a link to “claim a prize.” What should be the best countermeasure?

a)
Forward the email to friends to warn them.
b)
Reply to the email asking for more details.
c)
Click the link to claim the prize immediately.
d)
Do not click the link; verify the email's legitimacy.
48.

What is the primary purpose of implementing firewalls in a network?

a)

To enhance internet speed

b)

To prevent unauthorized access

c)

To store data securely

d)

To monitor employee productivity

49.

Which of the following actions can help mitigate the risk of data breaches?

a)

Sharing passwords among team members

b)

Regularly updating software and security protocols

c)

Using public Wi-Fi for sensitive transactions

d)

Ignoring security alerts

50.

In the context of information security, what does the term 'vulnerability' refer to?

a)

A measure of data confidentiality

b)

A method of data encryption

c)

A weakness that can be exploited by threats

d)

A potential threat to data integrity