Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cyber Threat Management (Practice Quiz #2)

Total questions: 30

Worksheet time: 15mins

Name
Class
Date
1.

Which document defines rules for accessing and using network resources?

a)

Data Policy

b)

Acceptable Use Policy

c)

Remote Access Policy

d)

Password Policy

2.

Which framework offers a comprehensive approach to information security management?

a)

CIA Triad

b)

NIST/NICE Framework

c)

ISO OSI Model

d)

CVSS

3.

Unauthorized access to government computers falls under which federal act?

a)

GLBA

b)

CFAA

c)

ECPA

d)

SOX

4.

Which role ensures compliance with data policies in a data governance program?

a)

Data User

b)

Data Steward

c)

Data Owner

d)

Data Custodian

5.

Simulated attacks to test real threat consequences are called:

a)

Network scanning

b)

Penetration testing

c)

Integrity checking

d)

Vulnerability scanning

6.

What are two tasks Nmap or Zenmap can accomplish? (Choose two.)

a)

Password Recovery + TCP/UDP Port Scanning

b)

Password Auditing + Validation of IT System Configuration

c)

TCP/UDP Port Scanning + Identification of Layer 3 Protocols

d)

Password Recovery + Host Detection

7.

Which tool can detect open TCP and UDP ports on Windows?

a)

Zenmap

b)

Nmap

c)

SuperScan

d)

L0phtcrack

8.

Which process involves collecting and analyzing data from security incidents?

a)

Network Profiling

b)

Threat Hunting

c)

Incident Analysis

d)

Vulnerability Scanning

9.

Which security organization maintains the CVE vulnerability list?

a)

NIST

b)

Cisco Talos

c)

FireEye

d)

SpamCop

10.

What term describes the ports and daemons allowed on a server profile?

a)

Service Accounts

b)

Listening Ports

c)

Software Environment

d)

Critical Asset Address

11.

Applying a patch management system to address server risks is what strategy?

a)

Avoidance

b)

Mitigation

c)

Transference

d)

Acceptance

12.

Antivirus software implements what control type?

a)

Detective

b)

Deterrent

c)

Compensative

d)

Recovery

13.

What is the first step in risk assessment?

a)

Compare with prior assessments

b)

Establish a baseline

c)

Identify threats and vulnerabilities

d)

Perform audits

14.

Which physical control enhances access security at a data center?

a)

Firewall

b)

Magnetic Door Lock

c)

Antivirus Software

d)

Intrusion Detection System

15.

Which tool is commonly used for analyzing Telnet/SSH traffic?

a)

Metasploit

b)

Zenmap

c)

Wireshark

d)

Nmap

16.

What is a risk transference strategy?

a)

Installing an IDS

b)

Purchasing cyber insurance

c)

Implementing MFA

d)

Updating firewall rules

17.

What kind of control helps uncover new potential threats?

a)

Preventive

b)

Detective

c)

Corrective

d)

Compensative

18.

Which step in vulnerability management inventories all assets?

a)

Assess

b)

Discover

c)

Remediate

d)

Prioritize

19.

What type of evidence cannot prove an IT security fact by itself?

a)

Direct

b)

Documentary

c)

Circumstantial

d)

Corroborative

20.

During which Cyber Kill Chain phase do attackers weaponize a vulnerability?

a)

Delivery

b)

Exploitation

c)

Reconnaissance

d)

Weaponization

21.

Who coordinates incident response according to NIST?

a)

IT Support

b)

HR

c)

Legal Department

d)

Management

22.

CVSS base metrics include which two classes?

a)

Exploitability + Impact

b)

Modified Base + Exploit Code Maturity

c)

Confidentiality Requirement + Exploitability

d)

Control Effectiveness + Detection

23.

What should be included in post-incident activity?

a)

Updating policies

b)

Disciplinary action

c)

Hardware replacement

d)

Network expansion

24.

Which meta-feature in the Diamond Model classifies intrusion event type?

a)

Results

b)

Methodology

c)

Direction

d)

Phase

25.

What can mitigate risks from compromised passwords?

a)

Password complexity rules

b)

Mandatory password resets

c)

Multi-factor authentication

d)

Changing minimum password length

26.

When evaluating Endpoints, what process assesses security status?

a)

Network Profiling

b)

Vulnerability Scanning

c)

Penetration Testing

d)

Baselining

27.

Which security testing technique uses packets to check hosts/services?

a)

Social Engineering

b)

Protocol Analysis

c)

Port Scanning

d)

Data Encryption

28.

What does a Business Impact Analysis (BIA) focus on? (Choose four.)

a)

Recovery Time Objectives (RTO)

b)

Recovery Point Objectives (RPO)

c)

Mean Time Between Failures (MTBF)

d)

Mean Time To Repair (MTTR)

29.

Which step in incident response is focused on removing malware?

a)

Detection

b)

Containment

c)

Eradication

d)

Preparation

30.

What element in the Diamond Model describes information gained by adversaries?

a)

Direction

b)

Results

c)

Resources

d)

Methodology