wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

BM2 Unit 4 Test Review

Total questions: 110

Worksheet time: 55mins

Name
Class
Date
1.

What is the process by which an organization’s accounts and records are verified?

a)

Audit

b)

Decision making

c)

Compliance

d)

Data processing

2.

What term refers to an organization’s ability to function after a disaster?

a)

Outsourcing

b)

Consistency

c)

Business continuity

d)

Information management

3.

What does compliance mean?

a)

Stability and regularity

b)

Unauthorized access to a computer system

c)

Acquiring assistance from outside organizations

d)

Fulfilling the requirements of the law

4.

What term refers to stability and regularity?

a)

Trade secret

b)

Consistency

c)

Audit

d)

Spam

5.

What are facts and figures called?

a)

Virus

b)

Hack

c)

Information

d)

Data

6.

What is the process of converting facts and figures into useful information?

a)

Decision making

b)

Wireless network

c)

Data processing

d)

Information overload

7.

What term refers to choosing among alternatives?

a)

Audit

b)

Decision making

c)

Proprietary information

d)

Spam

8.

What is unauthorized access to a computer system called?

a)

Virus

b)

Hack

c)

Trade secret

d)

Spam

9.

What is knowledge, facts, or data presented in a useful form called?

a)

Audit

b)

Data

c)

Information

d)

Compliance

10.

What is the process of accessing, processing, maintaining, evaluating, and disseminating knowledge, facts, or data for assisting business decision making?

a)

Information management

b)

Management information system

c)

Business continuity

d)

Outsourcing

11.

What term refers to communication that is too much and/or comes too fast to process at one time?

a)

Hack

b)

Spam

c)

Virus

d)

Information overload

12.

What is an integrated technology that assists with an organization’s information management needs?

a)

Management information system (MIS)

b)

Information management

c)

Sarbanes-Oxley Act

d)

Wireless network

13.

What term refers to acquiring assistance from outside organizations/consultants to obtain goods or services?

a)

Trade secret

b)

Outsourcing

c)

Compliance

d)

Audit

14.

What is private information that belongs to an organization and cannot be released to the public called?

a)

Virus

b)

Proprietary information

c)

Trade secret

d)

Spam

15.

What is a computer network connected without the use of wires or cables called?

a)

Wireless network

b)

Hack

c)

Management information system

d)

Information overload

16.

Which of the following actions is a part of information management:

a)

Creating technology

b)

Observing competitors

c)

Creating data

d)

Disseminating information

17.

What is big data?

a)

Large amounts of information automatically collected from electronic sources

b)

A small set of manually collected data

c)

Data that is only collected from physical sources

d)

Information that is not stored electronically

18.

What is competitive advantage?

a)

A condition that puts a business in a favorable position over its competitors

b)

A disadvantage that a business faces in the market

c)

A strategy to reduce competition

d)

A method to increase product prices

19.

What does 'consistent' mean?

a)

Unchanging

b)

Changing frequently

c)

Irregular

d)

Unpredictable

20.

What are cookies in the context of websites?

a)

Text files put on a visitor’s hard drive to track internet behavior

b)

A type of dessert

c)

A software used to block ads

d)

A virus that infects computers

21.

What is a data breach?

a)

A situation where private data is potentially viewed, stolen, or used by unauthorized individuals

b)

A method to secure data

c)

A process of encrypting data

d)

A way to share data securely

22.

What is data encryption?

a)

The process of transforming information into a secret code so only the recipient can read it

b)

The process of deleting data permanently

c)

The process of sharing data publicly

d)

The process of storing data in a cloud

23.

What are the Fair Information Practice Principles (FIPP)?

a)

A set of guidelines by the FTC to establish ethical practices for handling information in the electronic marketplace

b)

A set of rules for encrypting data

c)

A law to prevent identity theft

d)

A policy for managing customer complaints

24.

What is the Federal Trade Commission responsible for?

a)

Administering and enforcing customer-protection laws

b)

Managing data encryption standards

c)

Creating privacy policies for businesses

d)

Tracking internet behavior through cookies

25.

What is identity theft?

a)

The fraudulent acquisition and use of a person’s private identifying information for financial gain

b)

The process of encrypting personal data

c)

A method to protect personal information

d)

A way to share personal data securely

26.

What does 'integrity' mean?

a)

Adhering to an established set of ethics and sound moral principles

b)

Changing principles frequently

c)

Being inconsistent in actions

d)

Avoiding ethical practices

27.

What is a privacy policy?

a)

A statement that discloses how an organization will gather, use, and manage a customer’s data

b)

A document that encrypts customer data

c)

A law to prevent data breaches

d)

A guideline for creating cookies

28.

What is spam?

a)

Junk email that the recipient did not request

b)

A type of encrypted message

c)

A secure way to send emails

d)

A method to track email behavior

29.

What does 'transparency' mean?

a)

The quality of being just as one seems; trustworthy

b)

Hiding information from others

c)

Being inconsistent in actions

d)

Changing principles frequently

30.

Which risk might result from ethical misconduct?

a)

decreased company value

b)

decreased whistle-blowing

c)

increased positive publicity

d)

increased employee support of the company

31.

Which risk might result from ethical misconduct?

a)

decreased company value

b)

decreased whistle-blowing

c)

increased positive publicity

d)

increased employee support of the company

32.

To reduce the risks associated with noncompliance, a business should continuously monitor:

a)

government regulations

b)

competitors’ activities

c)

judicial opinions

d)

social etiquette

33.

ABC Corporation makes its employees sign a noncompete agreement. This agreement states that employees who leave the company are restricted from working for a competitor for two years. The purpose of this agreement is to make sure that competitors are unable to obtain ABC Corporation's trade secrets. What type of information is ABC Corporation protecting?

a)

business

b)

employee

c)

technology

d)

management

34.

Tim is the technology manager for the MSJ Company. He is responsible for backing up the computer system every evening to ensure the company has a copy of each day’s computer activities and transactions. On Tuesday evening, Tim was running late for a meeting and decided not to conduct the backup activities. Later that night, the computer system crashed and all of Tuesday’s computer data was lost. By apologizing to his boss for making a poor decision and offering to work extra hours to help fix the problem, Tim was:

a)

taking the time to make informed decisions

b)

promising not to make any mistakes in the future

c)

blaming others for the consequences of his actions

d)

accepting the consequences for the decisions he made

35.

To reduce the risk of future legal problems, a company might require its business partners to sign a formal:

a)

contract

b)

invoice

c)

premium

d)

warrant

36.

During a staff meeting, the company's president states, 'Samari Enterprises experienced a three percent increase during the first quarter and a five percent increase during the second quarter of this fiscal year.' What type of information is the president providing?

a)

raw data

b)

tacit knowledge

c)

personal opinion

d)

explicit knowledge

37.

Which of the following best describes confidentiality in the workplace?

a)

Allowing employees to access all information to promote transparency

b)

Keeping trusted or sensitive information private

c)

Selling customer data only with permission

d)

Encrypting information on all company devices

38.

A manager limits access to payroll files so only HR can view them. What strategy is the manager using?

a)

Data expansion

b)

Access control

c)

Open-source sharing

d)

Data mining

39.

A business encrypts customer credit card information to prevent hackers from reading it. This is an example of protecting:

a)

privacy

b)

security

c)

fairness

d)

transparency

40.

What type of risk is MOST likely when employees discuss coworker salaries or disciplinary actions openly?

a)

Loss of trade secrets

b)

Confidentiality breach

c)

Increase in tacit knowledge

d)

Improved morale

41.

Which category of information includes business plans, financial data, and client lists?

a)

Employee information

b)

Management information

c)

Business information

d)

Required public information

42.

An employee accidentally emails customer info to the wrong person. This is an example of a risk caused by:

a)

cyberattacks

b)

human error

c)

transparency

d)

system upgrades

43.

Which tool is MOST closely associated with digital data security?

a)

Employee evaluations

b)

Firewalls and antivirus software

c)

Confidentiality agreements

d)

Customer feedback forms

44.

A company shreds old personnel files before disposal. This practice supports:

a)

transparency

b)

secure data destruction

c)

public reporting

d)

employee morale

45.

Why must managers protect private and confidential data?

a)

It increases the amount of information the company collects

b)

It is required by law and maintains trust

c)

It guarantees no cybersecurity issues will occur

d)

It allows employees to access personal information freely

46.

A manager reminding employees to update passwords every 60 days is reinforcing:

a)

informal communication

b)

system transparency

c)

security best practices

d)

leadership accountability

47.

Which type of information would MOST likely require confidentiality due to legal and ethical reasons?

a)

Public event schedule

b)

Employee disciplinary records

c)

Store hours

d)

Marketing flyer designs

48.

A company’s confidentiality agreement requiring employees not to share trade secrets even after leaving the job is an example of:

a)

long-term privacy rights

b)

ongoing confidentiality obligations

c)

temporary data protection

d)

personal information disclosure

49.

A manager encourages employees to report suspicious emails immediately. This supports which goal?

a)

Increasing transparency

b)

Avoiding excessive monitoring

c)

Reducing cyber threats

d)

Sharing sensitive information

50.

When a company only collects the customer information necessary to complete a transaction, it is following which guideline?

a)

Collect only what’s necessary

b)

Report all data to third parties

c)

Increase transparency

d)

Expand customer records

51.

Which challenge often makes data security harder for companies with remote workers?

a)

Using office desktops

b)

Unsecured home or public Wi-Fi

c)

Required training sessions

d)

Limited access to personal devices

52.

What is an intangible asset?

a)

A tangible product sold by a company

b)

A type of financial liability

c)

A physical resource like machinery

d)

A non-physical resource with value to a business

53.

Which of the following is considered intellectual property?

a)

A company's employee handbook

b)

A company's financial statements

c)

A legally protected invention or artwork

d)

A company's office building

54.

What does a trademark protect?

a)

A company's trade secrets

b)

A word, phrase, symbol, or design identifying goods or services

c)

A company's financial assets

d)

A company's customer data

55.

What is copyright designed to protect?

a)

A company's confidential business information

b)

A company's patents

c)

Original creative works fixed in a tangible form

d)

A company's brand reputation

56.

What does a patent grant?

a)

Protection for trade secrets

b)

Ownership of a company's brand

c)

Legal rights to use copyrighted material

d)

Exclusive legal rights for an invention

57.

What is a trade secret?

a)

A company's intellectual property license

b)

A company's trademarked logo

c)

Confidential business information giving a competitive advantage

d)

A public patent for an invention

58.

What is infringement?

a)

The unauthorized use, copying, or sale of protected intellectual property

b)

The legal protection of a company's trade secrets

c)

The process of registering a trademark

d)

The act of creating a new invention

59.

What does the doctrine of fair use allow?

a)

Unlimited use of copyrighted material

b)

Limited use of copyrighted material for specific purposes

c)

The sale of copyrighted material without permission

d)

The creation of new intellectual property

60.

What is royalty-free media?

a)

Media that is protected by copyright

b)

Creative content that can be used without paying ongoing royalties

c)

Media that is considered a trade secret

d)

Media that requires ongoing fees for use

61.

What is the purpose of a Non-Disclosure Agreement (NDA)?

a)

To register a trademark with legal authorities

b)

To grant exclusive rights to an invention

c)

To prevent employees or contractors from sharing confidential information

d)

To protect intellectual property from infringement

62.

Which of the following is an example of intellectual property?

a)

A company's office furniture

b)

A legally protected design or symbol

c)

A company's financial report

d)

A company's customer list

63.

What type of protection does copyright provide?

a)

Protection for confidential business information

b)

Protection for original creative works

c)

Protection for inventions

d)

Protection for brand reputation

64.

Which of the following is NOT an example of intellectual property?

a)

A company's patented invention

b)

A company's trademarked logo

c)

A company's office building

d)

A company's copyrighted artwork

65.

What is the main benefit of a trade secret?

a)

It gives a company a competitive advantage

b)

It provides exclusive legal rights for an invention

c)

It protects a company's trademark

d)

It allows unlimited use of copyrighted material

66.

What is the primary purpose of a patent?

a)

To protect a company's trade secrets

b)

To grant exclusive rights to an invention

c)

To register a company's trademark

d)

To provide legal protection for creative works

67.

Which of the following best describes an intangible asset?

a)

A physical item owned by a business

b)

A non-physical resource that has value to a business

c)

Any product the business sells

d)

Money collected from customers

68.

Intellectual property refers to:

a)

Physical property owned by a creator

b)

Tangible products created by a business

c)

Creations of the mind that are legally protected

d)

Products that can be patented only

69.

A trademark is used to:

a)

Protect the written content of a book

b)

Identify and distinguish the source of goods or services

c)

Keep business information secret

d)

Protect inventions

70.

Copyright protects:

a)

Ideas that have not been recorded

b)

Any type of invention

c)

Original creative works fixed in a tangible form

d)

Business logos only

71.

A patent gives an inventor:

a)

The right to keep their identity secret

b)

Exclusive legal rights for an invention

c)

Ownership of all creative works

d)

Permission to use copyrighted material freely

72.

A trade secret is:

a)

Any copyrighted material

b)

Creative work shared publicly

c)

Confidential business information that gives a competitive advantage

d)

A type of trademark

73.

Infringement occurs when someone:

a)

Buys a copyrighted product

b)

Uses someone else’s intellectual property without authorization

c)

Creates their own version of a product

d)

Renews a copyright

74.

The Doctrine of Fair Use allows:

a)

Unlimited use of copyrighted materials

b)

Limited use of copyrighted materials without permission for specific purposes

c)

Any business to claim a copyright

d)

Free use of all trademarked content

75.

Royalty-free media means:

a)

It has no copyright at all

b)

It can be used without paying ongoing fees under certain license conditions

c)

It can be used for commercial purposes with no rules

d)

It belongs to the public domain

76.

A Non-Disclosure Agreement (NDA) is used to:

a)

Protect copyrighted media

b)

Allow free sharing of business information

c)

Prevent employees or contractors from sharing confidential company information

d)

Register a trademark

77.

What are rules that determine who is allowed to view or use certain data or systems?

a)

Access Control

b)

Data Breach

c)

Encryption

d)

Firewall

78.

What refers to anything valuable a business wants to protect, such as computers, files, customer data, or equipment?

a)

Assets

b)

Malware

c)

Physical Security

d)

Spam

79.

What is it called when sensitive information is accessed, stolen, or shared without permission?

a)

Data Breach

b)

Risk Assessment

c)

Security Audit

d)

Network Security

80.

What involves organizing information into levels (like high, medium, low sensitivity) to protect the most important data?

a)

Data Classification

b)

Access Control

c)

Password Policy

d)

Intrusion Prevention System (IPS)

81.

What is the process that scrambles data so only people with the correct key or password can read it?

a)

Encryption

b)

Firewall

c)

Malware

d)

Spam

82.

What is a security system that blocks unauthorized access while allowing safe communication?

a)

Firewall

b)

Access Control

c)

Data Classification

d)

Physical Security

83.

What is a tool that watches a network for suspicious activity and alerts or blocks intruders?

a)

Intrusion Prevention System (IPS)

b)

Encryption

c)

Risk Assessment

d)

Security Audit

84.

What is malicious software (viruses, worms, spyware) designed to damage or steal data?

a)

Malware

b)

Spam

c)

Firewall

d)

Password Policy

85.

What involves protecting a computer network from unauthorized access, attacks, or misuse?

a)

Network Security

b)

Data Breach

c)

Access Control

d)

Physical Security

86.

What are rules that require strong, safe passwords and regular updates?

a)

Password Policy

b)

Data Classification

c)

Firewall

d)

Risk Assessment

87.

What involves protecting buildings, devices, and physical files from theft, damage, or break-ins?

a)

Physical Security

b)

Network Security

c)

Access Control

d)

Malware

88.

What is the process of identifying threats and deciding which ones are most likely to cause harm?

a)

Risk Assessment

b)

Data Breach

c)

Intrusion Prevention System (IPS)

d)

Spam

89.

What is a detailed check of a company’s systems to find weaknesses and improve protection?

a)

Security Audit

b)

Firewall

c)

Password Policy

d)

Data Classification

90.

What are unwanted or suspicious emails that may contain harmful links or attachments?

a)

Spam (Email Spam)

b)

Malware

c)

Encryption

d)

Access Control

91.

Businesses can protect customer personal information by:

a)

holding onto personal information forever.

b)

using personal information only when necessary.

c)

collecting as much personal information as possible.

d)

charging a premium when selling personal information to a third party.

92.

What is the purpose of a control list in a small-business security audit?

a)

to prevent people from having access to excess information

b)

to create an intrusion prevention system that monitors the network

c)

to include devices in the network that keep employees from having lack of control

d)

to protect against the physical stealing of laptops and downloading data to a flash drive

93.

To secure confidential financial data transmitted through the Internet, businesses often use:

a)

bots.

b)

pixels.

c)

image maps.

d)

encryption techniques.

94.

Which password would be the most secure to protect personal customer information?

a)

123456789

b)

AntiQuE9532!

c)

password

d)

qwerty

95.

What is the first step in a small-business security audit?

a)

defining the audit

b)

creating a control list

c)

creating a priority list

d)

defining any opportunities

96.

The business owner, Mrs. James, asked the manager, Jade, to create a report of all the security threats that the store has faced in the past and how the threats were handled. Which phase of the small-business security audit was she asking for?

a)

creating a control and intrusion protection plan

b)

blocking physical intrusions, hackers, and viruses

c)

learning from the past and considering future threats

d)

defining all threats to protect email systems and networks

97.

Why must businesses classify their data using information-ranking software?

a)

To increase the amount of data employees can access

b)

To ensure high-priority information receives stronger protection

c)

To organize files alphabetically

d)

To make customer data public for transparency

98.

Which of the following is an example of a threat that should be included when defining threats in a security audit?

a)

Increased product sales

b)

Strong password guidelines

c)

Lack of data backups

d)

A new marketing campaign

99.

What is the purpose of creating a priority list during a security audit?

a)

To determine which employees need to be promoted

b)

To identify the most valuable assets and match them with the biggest threats

c)

To eliminate unnecessary jobs

d)

To assign weekly cleaning responsibilities

100.

Which situation best illustrates learning from past threats in a small-business security audit?

a)

Buying new uniforms after employees complain

b)

Reviewing previous data breaches to check if protections have improved

c)

Rewriting the store’s mission statement

d)

Upgrading decorations in the front lobby

101.

A business wants to stop hackers from entering the system through dangerous links sent by email. What should the business focus on improving?

a)

Employee dress code

b)

Email protection and training

c)

Physical building layout

d)

Office supply inventory

102.

Which action best supports the development of strong data policies?

a)

Allowing employees to set passwords like “1234” so they can remember them

b)

Giving all workers unlimited access to all data

c)

Monitoring who accesses sensitive information

d)

Letting employees choose whether to follow data rules

103.

Which of the following is the BEST example of a physical intrusion threat?

a)

A hacker sending a phishing email

b)

An employee using a weak password

c)

Someone breaking into the office and stealing a laptop

d)

A computer program experiencing a software glitch

104.

Why do businesses use intrusion prevention systems?

a)

To increase internet speed

b)

To monitor networks and block harmful activity

c)

To organize computer desktop icons

d)

To reduce the number of employees needed

105.

Mrs. Lopez, a business owner, wants to know exactly who is allowed to access sensitive customer information. Which audit step should she review?

a)

Create a control list

b)

Block physical intrusions

c)

Learn from past threats

d)

Add intrusion protection

106.

What is a benefit of encrypting laptops and tablets used by employees?

a)

They load apps faster

b)

They automatically block Wi-Fi access

c)

Stolen devices cannot reveal sensitive information

d)

Employees do not need passwords

107.

Which of the following would be considered a high-priority asset in most small businesses?

a)

Office posters

b)

Outdated advertisements

c)

Customer financial data

d)

Empty storage boxes

108.

What should executives do to support strong data security practices?

a)

Remove all data policies to simplify the workplace

b)

Give employees full access to all company systems

c)

Direct more budget toward security measures

d)

Eliminate monitoring systems to save money

109.

During Step 1 of a security audit, which item would MOST likely go on the list of things to be tested?

a)

Employee job satisfaction

b)

Computers, cloud accounts, and email systems

c)

The design of the company logo

d)

Customer reviews on social media

110.

An employee receives an email that looks like it is from a trusted company, but the link inside leads to a fake website. What type of threat is this?

a)

Malware installation

b)

Phishing

c)

Physical intrusion

d)

Information classification