WorksheetsSpecial Quiz - Chapter 1: Introduction to Security
Total questions: 15
Worksheet time: 8mins
What historical event was a significant catalyst for the development of early information security measures?
The invention of the personal computer
The launch of the first satellite
World War II
The rise of e-commerce
The CISO typically reports directly to the:
Chief Executive Officer (CEO)
Chief Financial Officer (CFO)
Chief Information Officer (CIO)
Board of Directors
What was the name of the first operational packet-switching network that became the precursor to the modern Internet?
ENIAC
MILNET
ARPANET
NSFNET
Which report is widely credited with starting the formal study of computer security?
The Anderson Report
The Turing Report
Rand Report R-609
The ARPA Security Review
Ensuring that information is not disclosed to unauthorized individuals, entities, or processes is the definition of:
Integrity
Availability
Confidentiality
Possession
If a hacker steals encrypted data but cannot decrypt it, which characteristic of information has been breached?
Integrity
Availability
Utility
Possession
An attack that manipulates individuals into breaking security procedures is known as:
A software exploit
A brute-force attack
Social engineering
Network snooping
Which approach to implementing information security is initiated by upper-level managers and is considered the most successful?
Side-to-Side Approach
Bottom-Up Approach
Top-Down Approach
Ad-Hoc Approach
Which SecSDLC phase involves "creating a security blueprint and planning incident response actions"?
Investigation
Analysis
Logical Design
Physical Design
What is the primary goal of information security in relation to business operations?
To achieve perfect, absolute security
To eliminate all threats
To balance protection and availability
To prevent any and all access to data
In which SecSDLC phase would you "select technologies needed to support the security blueprint"?
Analysis
Logical Design
Physical Design
Implementation
Which senior manager is primarily responsible for the assessment, management, and implementation of the information security program?
Chief Executive Officer (CEO)
Chief Information Officer (CIO)
Chief Financial Officer (CFO)
Chief Information Security Officer (CISO)
What does SDLC stand for?
Security Data and Logic Control
Systems Development Life Cycle
Standardized Data Link Configuration
Secure Development for Legacy Computers
The characteristic of information that ensures it is whole, complete, and uncorrupted is called:
Authenticity
Utility
Integrity
Timeliness
The NSTISSC security model is a cube that combines the dimensions of the C.I.A. triad with:
People, Procedures, and Technology
Policy, Education, and Technology
Storage, Processing, and Transmission
Software, Hardware, and Data
