WorksheetsCybersecurity and Threat Management Quiz
Total questions: 12
Worksheet time: 6mins
A financial firm is implementing a new customer portal that allows clients to upload tax documents. During testing, the security analyst notices files can be intercepted if sent over HTTP. Which security goal is being violated, and what technology should be implemented to correct it?
Integrity – Hashing
Confidentiality – Encryption
Availability – Redundancy
Non-repudiation – Digital signatures
A company recently added motion-activated cameras and badge readers at all entrances. The IT director explains these are meant to discourage intruders before they reach the server room. What type of control and function best describe these new measures?
Managerial – Directive
Operational – Corrective
Physical – Deterrent
Technical – Preventive
After a malware outbreak, the IT team restores servers from clean backups and patches all systems. Which functional control type is the team performing?
Detective
Preventive
Corrective
Directive
During an ongoing phishing campaign, analysts in the Security Operations Center (SOC) detect new malicious domains. They immediately alert developers through the DevSecOps channel so code repositories can block the URLs. Which business units are working together to maintain security resilience in this scenario?
CIRT and Help Desk
SOC and DevSecOps
CIO and Legal Team
CSO and Auditing Department
A mid-level accountant in a company’s finance department begins emailing confidential client data to a competitor. The employee had legitimate access to the files as part of their daily duties. Which type of threat actor does this scenario describe?
Unintentional insider
Malicious insider
External hacktivist
Nation-state actor
A company uses multiple cloud applications and remote access tools for employees. A penetration test shows that default admin passwords and open ports on several cloud servers could be exploited by attackers. Which two components of the organization’s security posture are being described?
Threat vectors and attack surface
Security policies and risk controls
Firewall rules and proxy logs
Compliance gaps and vulnerabilities
A company receives reports that several employees found USB drives in the parking lot labeled “Confidential Salaries.” When inserted, the drives executed malicious scripts that gave attackers remote access to the company network. Which type of attack method was used?
Social engineering using pretexting
Watering hole attack
Lure-based vector (drop attack)
Message-based phishing attack
A threat actor calls a company’s help desk claiming to be a senior executive who urgently needs access to an internal file. The attacker uses a confident tone and insists on bypassing standard verification procedures. Which social engineering techniques are being used in this scenario?
Pretexting and urgency
Whaling and pharming
Baiting and disinformation
Reconnaissance and shoulder surfing
A cybersecurity firm discovers that an attack campaign has been slowly stealing data from government networks for over a year. The malware is custom-built, uses multiple zero-day exploits, and operates through compromised third-party servers. Which type of threat actor is most likely responsible?
Script kiddie
Hacktivist
Nation-state APT
Insider threat
After a ransomware attack, the IT department isolates affected systems and notifies the incident response team. The legal department is also informed to assess regulatory obligations. Which business units are collaborating to address the incident?
Sales and Customer Support
Finance and Marketing
HR and Facilities
IT and Legal
Security analysts discover a sophisticated cyberattack targeting a critical infrastructure provider. The attackers use advanced evasion techniques and have access to significant resources. Which type of threat actor is most likely behind this attack?
Script kiddie
Nation-state APT
Disgruntled employee
Cybercriminal group
A company installs biometric scanners and security guards at the entrance to its data center. These measures are intended to prevent unauthorized physical access. What type of control and function do these measures represent?
Physical – Preventive
Operational – Directive
Technical – Detective
Managerial – Corrective
