wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Quiz2-ADV05-MakScie

Total questions: 40

Worksheet time: 40mins

Name
Class
Date
1.

A hospital encrypts all patient records stored in its database. Which aspect of the CIA Triad is being addressed primarily?

a)

A. Availability

b)

B. Integrity

c)

C. Confidentiality

d)

D. Authentication

2.

A software company uses SHA-256 hashing to verify that downloaded updates haven’t been altered. Which CIA principle is this?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Non-repudiation

3.

During a DDoS attack, a company’s website becomes unreachable for customers. Which CIA component is affected?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Authenticity

4.

An HR staff member accidentally emails employee salary data to all staff. Which CIA principle was violated?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Non-repudiation

5.

An attacker modifies audit logs to erase evidence of unauthorized access. Which CIA element is compromised?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Accountability

6.

To ensure that systems are always operational during power outages, a company installs backup generators. This supports:

a)

Availability

b)

Confidentiality

c)

Integrity

d)

Non-repudiation

7.

A financial institution uses multi-factor authentication to prevent unauthorized account access. Which CIA principle is this?

a)

A. Availability

b)

B. Confidentiality

c)

C. Integrity

8.

A developer signs an application digitally before distribution. This supports:

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Authorization

9.

A company replicates its data to a secondary data center every hour. This ensures:

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Accountability

10.

Unauthorized access to a database allowed a hacker to view customer credit card numbers. Which is violated?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Auditability

11.

Checksum validation during file transfer ensures what?

a)

Data is private

b)

Data is accurate and unaltered

c)

Data is always accessible

d)

Data is encrypted

12.

A system regularly backs up data to prevent loss during system crashes. Which is protected?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Authorization

13.

Access control lists (ACLs) prevent unauthorized users from viewing system logs. Which CIA principle is upheld?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Reliability

14.

A user deletes critical system files accidentally, rendering a server inoperable. Which CIA element is violated?

a)

A. Availability

b)

B. Integrity

c)

C. Confidentiality

d)

D. Accountability

15.

An attacker intercepts a message and alters its content before delivery. This impacts:

a)

Availability

b)

Integrity

c)

Confidentiality

d)

Authorization

16.

To maintain accurate patient records, a hospital uses a checksum verification system. This ensures:

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Usability

17.

Data stored in the cloud is encrypted and accessible only through authorized credentials. This ensures:

a)

Integrity

b)

Confidentiality and Availability

c)

Availability only

d)

Confidentiality only

18.

A ransomware attack encrypts all company data, making it inaccessible. Which CIA component suffers most?

a)

A. Availability

b)

B. Integrity

c)

C. Confidentiality

d)

D. Authentication

19.

An employee modifies a colleague’s performance report without permission. Which principle is breached?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Authenticity

20.

A backup server ensures the company can restore operations within minutes of failure. This maintains:

a)

Availability

b)

Confidentiality

c)

Integrity

d)

Authorization

21.

A company installs a device that blocks traffic from unauthorized IP addresses. What type of device is this?

a)

IDS

b)

IPS

c)

Firewall

d)

Antivirus

22.

An organization uses a system that detects suspicious network activity but doesn’t stop it. This system is:

a)

IDS

b)

IPS

c)

Firewall

d)

Antivirus

23.

An IPS blocks a user trying to exploit a vulnerability in the company’s web server. Which function is demonstrated?

a)

Detection only

b)

Prevention and blocking

c)

Data encryption

d)

Authentication

24.

A firewall rule blocks all incoming connections except HTTP and HTTPS. What is the main goal?

a)

Improve system performance

b)

Maintain integrity

c)

Control access and reduce exposure

d)

Encrypt network traffic

25.

An antivirus quarantines a malicious file found in a user’s email. Which CIA component is it protecting?

a)

Integrity

b)

Confidentiality

c)

Availability

d)

Authentication

26.

A firewall blocks port 23 (Telnet) due to security concerns. What attack type is it preventing?

a)

Brute-force login

b)

Unencrypted communication sniffing

c)

SQL injection

d)

Malware infection

27.

A company uses a next-generation firewall that analyzes packet content. This feature is called:

a)

Deep Packet Inspection (DPI)

b)

Port Filtering

c)

Packet Forwarding

d)

Content Encryption

28.

An IDS generates too many false alarms, causing administrators to miss real threats. This issue is called:

a)

False negative

b)

Alert flooding

c)

Data leakage

d)

Packet dropping

29.

Which device should be placed behind a firewall to detect insider attacks?

a)

Router

b)

IDS

c)

Proxy

d)

Switch

30.

A user disables antivirus updates to improve PC speed. What is the consequence?

a)

Reduced confidentiality

b)

Reduced protection against new malware

c)

Increased availability

d)

Improved integrity

31.

A host-based IDS monitors:

a)

Network packets between systems

b)

Events within a specific host or computer

c)

Traffic leaving the organization

d)

Email messages for spam

32.

Which technology would best prevent a zero-day attack?

a)

Signature-based IDS

b)

Behavior-based IPS

c)

Static firewall

d)

Blacklist antivirus

33.

A company separates its internal network from the internet using a firewall. This design is known as:

a)

DMZ architecture

b)

VLAN

c)

VPN

d)

IDS configuration

34.

An IDS fails to detect an attack that occurred. This is known as:

a)

False positive

b)

False negative

c)

False alarm

d)

Detection bias

35.

Which system would stop malicious traffic in real-time?

a)

Firewall

b)

IDS

c)

IPS

d)

Antivirus (on-demand)

36.

A company uses antivirus software that compares files to a known malware database. This method is:

a)

Heuristic analysis

b)

Signature-based detection

c)

Behavior analysis

d)

Sandboxing

37.

Which of the following would BEST prevent data exfiltration through email attachments?

a)

IDS

b)

Firewall

c)

Data Loss Prevention (DLP) integrated with firewall

d)

Antivirus only

38.

An attacker floods a firewall with traffic, causing it to crash. What CIA element is impacted?

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Authenticity

39.

The antivirus detected malware but could not remove it completely. Which step should follow?

a)

Ignore it

b)

Disable the antivirus

c)

Isolate or quarantine the infected system

d)

Restart the computer

40.

A network security team configures an IPS to automatically block repeated suspicious login attempts. This best supports:

a)

Integrity

b)

Confidentiality

c)

Availability

d)

Non-repudiation