Font size
WorksheetsIAS-Long Quiz
Total questions: 50
Worksheet time: 50mins
Which of the following best defines DATA?
Raw facts and figures without context
Processed facts wih meaning
Interpreted knowledge
Useful insight for decision-making
Test scores of students listed in a spreadsheet without analysis represent:
information
data
knowledge
wisdom
When sales figures are summarized into a report showing monthly trends, this becomes:
data
information
noise
threat
In computing, INFORMATION is created when:
facts are encrypted
data is processed and given meaning
records are stored in a database
passwords protect sensitive details
Which of the following is NOT an example of information?
A graph showing rising sales trends
A student's grade point average (GPA)
A list of raw, unorganized number
A summarized weather forecast
The main goal of information security is to protect
data, systems, and users from threats
confidential government files
physical storage devices
personal information
Which of the following best describes INFORMATION ASSURANCE?
Ensuring that only managers can view files
Practices that guarantee information is trustworthy and available
Encrypting every email sent in an organization
Installing antivirus software only
Which element of the CIA triad ensures that information is not disclosed to unauthorized individuals?
Integrity
Availability
Confidentiality
Authentication
When a bank prevents unauthorized modification of customer records, it ensures:
Confidentiality
Availability
Integrity
Risk
Making sure that information and systems are accessible when needed refers to:
Confidentiality
Integrity
Assuraance
Availability
A company stores backup files in an offsite location to protect against disasters. Which CIA principle does this support?
Confidentiality
Integrity
Availability
Assurance
Which of the following is an example of confidentiality being compromised
Hackers delete system logs
Hackers alter payroll amounts
Hackers access employee social security number
Server downtime causes delays
Which of the following BEST maintains data integrity?
backups
hashing
encryption
antivirus software
Which term refers to the protection of data from destruction or unauthorized changes?
Assurance
Availability
Integrity
Confidentiality
Information security differs from IT security because:
IT security only protects networks and hardware.
Information security focuses solely on paper-based information.
Information security is unrelated to data.
IT security is broader in scope than information security.
An employee leaves their computer unlocked in the office, and another person views confidential files. Which CIA principle was compromised?
Confidentiality
Integrity
Availability
Assurance
A student uploads a research paper to the school portal, but a system error changes parts of the content without their knowledge. Which CIA principle is violated?
Confidentiality
Integrity
Availability
Assurance
During a power outage, a hospital’s electronic medical records system becomes inaccessible to doctors. Which CIA principle is most affected?
Confidentiality
Integrity
Availability
Reliability
To ensure confidentiality of messages between two employees, which measure is most appropriate?
File duplication
Data backup
Redundant server
Encryption
Which CIA principle is supported when digital signatures are used to verify that a message was not altered during transmission?
Confidentiality
Integrity
Availability
Accessibility
Which of the following is considered an information asset?
Firewall
Customer database
Malicious software
Antivirus software
Anything that has potential to cause harm to an asset.
Asset
Risk
Threat
Countermeasure
What is the main purpose of a countermeasure?
To create more risks.
To eliminate all threats completely.
To reduce the likelihood or impact of risks.
To store backup data.
Which of the following is a physical threat to information security?
Malware infection
Unauthorized login
Fire in the data center
Phishing email
Which is an example of a countermeasure?
Weak passwords
Access control policies
Unpatched software
Inside threat
If an organization does not update its software, which risk increases?
data confidentiality
backup reliability
vulnerability to cyberattacks
availability of power supply
Which of the following is an intentional threat?
Accidental file deletion
Earthquake damaging a data center
Power outage in the building
Employee theft of confidential files
A threat exploits vulnerabilities in an asset, creating risk.
True
False
Maybe
Antivirus software is an example of a:
Asset
Vulnerability
Risk
Countermeasure
A university loses internet access due to a Distributed Denial of Service (DDoS) attack. What was affected the most?
Confidentiality
Integrity
Availability
Encryption
A flaw or weakness that can be exploited by a threat.
True
False
Maybe
A school’s grading system is hosted online. If a hacker exploits weak passwords to change grades, the weak passwords represent:
An asset
A vulnerability
A risk rresponse
A countermeasure
Which of the following is the BEST example of a human threat?
Employee stealing sensitive data
Lightning strike causing power outage
Flood damaging the computer lab
Earthquake destroying the server room
A university IT department regularly applies security patches to its systems to prevent known exploits. This activity is a form of:
Risk transfer
Countermeasure
Vulnerability
Threat actor
A company has critical financial data stored in its database. If this database is attacked by ransomware, the financial data itself is classified as the:
Asset
Risk
Threat
Countermeasure
On Facebook, what is considered the primary asset of a user that needs protection? (select 2 answers)
Personal information
Account credentials
Friends list
Timeline post
A Facebook user clicks on a fake login page and unknowingly provides their password. This situation is an example of:
Threat
Risk
Backup
Countermeasure
In online shopping, enabling two-factor authentication (2FA) before making payments is an example of:
Asset
Threat
Risk
Countermeasure
To protect against fake online sellers, which of the following countermeasures is most effective?
Using strong passwords only
Verifying seller legitimacy and checking reviews
Sharing account details with friends
Avoiding two-factor authentication
In a school’s Local Area Network (LAN), students share files using a common folder without restrictions. What risk exists?
Files cannot be accessed at all
Data may be accidentally or maliciously deleted
Confidentiality is fully assured
Internet speed will increase
A small business owner uses online banking but does not enable two-factor authentication. What risk is present?
Lower risk of phishing
Faster transactions
Higher risk of unauthorized account access
No security risk
In a university LAN, the server room is not locked and anyone can enter. Which type of threat is most evident?
Network congestion
Natural threat
Physical security threat
Data redundancy
A student connects to public Wi-Fi to shop online. What is the primary risk?
Exposure to man-in-the-middle attacks
Faster download speed
Stronger encryption
Improved connection reliability
A company regularly performs data backups on cloud storage. This measure addresses which risk?
Risk of weak access controls
Risk of password phishing
Risk of data loss due to system failure
Risk of network congestion
If students use weak passwords for their school accounts, what countermeasure is best to reduce the risk?
In an e-commerce platform, what risk arises when customer data is not encrypted?
Attackers may intercept and misuse sensitive data
Transactions will process faster
Produccts cannot be delivered
Customer's reviews disappear.
user receives a suspicious email with a link to “claim a prize.” What should be the best countermeasure?
What is the primary purpose of implementing firewalls in a network?
To enhance internet speed
To prevent unauthorized access
To store data securely
To monitor employee productivity
Which of the following actions can help mitigate the risk of data breaches?
Sharing passwords among team members
Regularly updating software and security protocols
Using public Wi-Fi for sensitive transactions
Ignoring security alerts
In the context of information security, what does the term 'vulnerability' refer to?
A measure of data confidentiality
A method of data encryption
A weakness that can be exploited by threats
A potential threat to data integrity
