wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

MCyber_Chap10N11

Total questions: 21

Worksheet time: 21mins

Name
Class
Date
1.
What is identified by the first dimension of the cybersecurity cube?
a)
Tools
b)
Knowledge
c)
Goals
d)
Safeguards
e)
Rules
2.
What type of cybersecurity laws protect you from an organization that might want to share your sensitive data?
a)
Authentication
b)
Confidentiality
c)
Nonrepudiation
d)
Privacy
e)
Integrity
3.
Which two methods help to ensure data integrity? (Choose two.)
a)
Data consistency checks
b)
Privacy
c)
Hashing
d)
Repudiation
e)
Authorization
4.
What name is given to a storage device connected to a network?
a)
RAID
b)
DAS
c)
NAS
d)
SAN
e)
Cloud
5.
What is a method of sending information from one device to another using removable media?
a)
Wired
b)
Infrared
c)
Wireless
d)
LAN
e)
Sneaker net
6.
Which data state is maintained in NAS and SAN services?
a)
Stored data
b)
Data in-transit
c)
Encrypted data
d)
Data in-process
7.
Which type of networks poses increasing challenges to cybersecurity specialists due to the growth of BYOD on campus?
a)
Wireless networks
b)
Wired networks
c)
Sneaker net
d)
Virtual networks
8.
An organization allows employees to work from home two days a week. Which technology should be implemented to ensure data confidentiality as data is transmitted?
a)
SSH
b)
VPN
c)
VLANS
d)
RAID
9.
Which of the following are types of sensitive information? (Choose three.)
a)
Public
b)
Business
c)
Classified
d)
Published
e)
Personal
10.
What are the three foundational principles of the cybersecurity domain? (Choose three.)
a)
Integrity
b)
Policy
c)
Availabliity
d)
Security
e)
Confidentiality
11.
What tasks are accomplished by a comprehensive security policy? Select three answers:
a)
It sets rules for expected behavior.
b)
It is not legally binding.
c)
It defines legal consequences of violations.
d)
It gives security staff the backing of management.
e)
It is useful for management.
12.
In a defense-in-depth approach, which three options must be identified to effectively defend a network against attacks? (Choose three.)
a)
Total number of devices that attach to the wired and wireless network
b)
Assets that need protection
c)
Vulnerabilities in the system
d)
Location of attacker or attackers
e)
Threats to assets
13.
Which device is usually the first line of defense in a layered defense-in-depth approach?
a)
Access layer switch
b)
Internal router
c)
Edge router
d)
Firewall
14.
Which device in a layered defense-in-depth approach denies connections initiated from untrusted networks to internal networks, but allows internal users within an organization to connect to untrusted networks?
a)
Firewall
b)
IPS
c)
Internal router
d)
Access layer switch
15.
With the evolution of borderless networks, which vegetable is now used to describe a defense-in-depth approach?
a)
Lettuce
b)
Artichoke
c)
Onion
d)
Cabbage
16.
What is the benefit of a defense-in-depth approach?
a)
All network vulnerabilities are mitigated.
b)
The need for firewalls is eliminated.
c)
Only a single layer of security at the network core is required.
d)
The effectiveness of other security measures is not impacted when a security mechanism fails.
17.
Which tool can be used to gather information about the different types of traffic that exist in a network?
a)
RTP
b)
Protocol analyzer
c)
Application server
d)
QoS
18.
What component of a security policy explicitly defines the type of traffic allowed on a network and what users are allowed and not allowed to do?
a)
Password policies
b)
Identification and authentication policies
c)
Acceptable use policies
d)
Remote access policies
19.
Which section of a security policy is used to specify that only authorized individuals should have access to enterprise data?
a)
Statement of authority
b)
Campus access policy
c)
Internet access policy
d)
Acceptable use policy
e)
Identification and authentication policy
20.
An administrator discovers that a user is accessing a newly established website that may be detrimental to company security. What action should the administrator take first in terms of the security policy?
a)
Ask the user to stop immediately and inform the user that this constitutes grounds for dismissal.
b)
Create a firewall rule blocking the respective website.
c)
Revise the AUP immediately and get all users to sign the updated AUP.
d)
Immediately suspend the network privileges of the user.
21.
What three goals does a BYOD security policy accomplish? (Choose three.)
a)
Describe the rights to access and activities permitted to security personnel on the device
b)
Identify and prevent all heuristic virus signatures
c)
Identify which employees can bring their own devices
d)
Identify safeguards to put in place if a device is compromised
e)
Identify all malware signatures and synchronize them across corporate databases