wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity Chapter Review

Total questions: 24

Worksheet time: 22mins

Name
Class
Date
1.

Which of the following is the main goal of cybersecurity?

a)

To protect only government networks

b)

To secure physical documents

c)

To protect digital systems, networks, and data from attacks

d)

To develop new hardware components

2.

The “I” in the CIA Triad stands for:

a)

Integrity

b)

Intelligence

c)

Identification

d)

Information

3.

A hacker changing exam grades in a school’s database violates:

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Authorization

4.

Which of the following best describes Authentication?

a)

Recording what users do

b)

Deciding what users can access

c)

Proving who a user is

d)

Encrypting files for storage

5.

A student who can access the teacher’s panel after logging in experiences failure in:

a)

Auditing

b)

Authorization

c)

Authentication

d)

Integrity

6.

Which of the following threat actors is most motivated by financial gain?

a)

Hacktivists

b)

Cybercriminals

c)

State-sponsored groups

d)

Internal employees

7.

A DDoS attack targets which cybersecurity principle of the CIA Triad?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Authentication

8.

Social Engineering is best described as:

a)

Infecting systems with malware

b)

Tricking people into revealing information

c)

Physically stealing computers

d)

Encrypting files for ransom

9.

Which of the following best explains why IoT devices are risky?

a)

They use complex passwords

b)

They’re disconnected from networks

c)

They often lack security updates and have default passwords

d)

They are only used in offices

10.

Risk occurs when:

a)

A hacker sends an email

b)

A vulnerability exists but isn’t exploited

c)

A threat exploits a vulnerability

d)

A system is completely secure

11.

Which of the following is a Preventive Control?

a)

Restoring backups

b)

Using a firewall

c)

Reviewing logs

d)

Investigating after an incident

12.

Which principle of Zero Trust limits users to only the permissions they need?

a)

Verify every request

b)

Least Privilege Access

c)

Micro-segmentation

d)

Continuous Monitoring

13.

An employee accidentally clicks a phishing link from a known contact. This represents:

a)

Internal threat

b)

External threat

c)

Hybrid of internal and external

d)

Physical threat

14.

The Ukraine Blackout (2015) is an example of:

a)

Physical theft of computers

b)

Cyberattack on critical infrastructure

c)

Insider espionage

d)

Web spoofing attack

15.

The main difference between cybersecurity and information security is that cybersecurity:

a)

Includes physical protection like locks and cameras

b)

Focuses only on digital assets and networks

c)

Doesn’t involve the CIA Triad

d)

Protects paper-based files

16.

The Zero Trust model assumes that every user inside a network is safe.

a)

True

b)

False

17.

Preventive, Detective, and Corrective controls together make a strong defense system.

a)

True

b)

False

18.

Hacktivists attack mainly for financial profit.

a)

True

b)

False

19.

Risk Assessment involves identifying, analyzing, and prioritizing risks.

a)

True

b)

False

20.

Internal threats can be either intentional or accidental.

a)

True

b)

False

21.

Explain the difference between Authentication and Authorization with one real-life example.

4 lines
22.

Define a Threat, Vulnerability, and Risk, and show how they are related.

4 lines
23.

List three core strategies of Risk Management and give one example of each.

4 lines
24.

What are two main reasons IoT devices are considered a security risk?

4 lines