WorksheetsWeek 4 Quiz CSF
Total questions: 90
Worksheet time: 50mins
Which principle is NOT part of the CIA triad?
Confidentiality
Integrity
Accessibility
Availability
Malware designed to replicate itself across systems is called:
Trojan
Worm
Spyware
Adware
Which malware disguises itself as legitimate software?
Trojan
Ransomware
Worm
Backdoor
Spyware primarily aims to:
Encrypt files
Steal information
Destroy systems
Scan networks
Adware usually:
Steals banking info
Displays unwanted ads
Installs rootkits
Encrypts data
Ransomware attacks usually involve:
Remote access
Data encryption and payment demand
Network sniffing
Password brute forcing
A hidden method to access a system without authorization is known as:
Zero-day
Backdoor
Patch
Signature
A zero-day vulnerability refers to:
A. A patched bug
B. A known but unfixed bug
C. An unknown vulnerability
D. A malware component
Stuxnet was mainly designed to target:
Personal computers
Nuclear centrifuges
Banking systems
Social media networks
Outsourcing security operations may introduce:
Reduced transparency
No risks at all
Guaranteed protection
Cheaper vulnerabilities
The Target data breach occurred due to compromised:
Administrators
HVAC vendor credentials
Firewall misconfiguration
CEO laptop malware
PCI DSS applies to organizations handling:
Healthcare data
Payment card information
Student records
Government data only
A vulnerability is best defined as:
A threat actor
A weakness in a system
A successful attack
A security policy
Network segmentation helps reduce:
Firewall efficiency
Lateral movement
Authentication time
Password strength
Privilege escalation involves:
Reducing permissions
Gaining higher permission levels
Resetting access logs
Removing administrator rights
Nmap is mainly used for:
Web development
Network scanning
File encryption
Policy writing
An exploit is:
A security patch
Code used to take advantage of a vulnerability
A firewall rule
A backup process
NIST provides:
Legal prosecution tools
Cybersecurity frameworks and standards
Hardware components
ISO 27001 focuses on:
Food safety
Information security management
Physical construction
Financial auditing
GDPR mainly protects:
Payment card industry
EU citizen personal data
Government servers
Police investigative data
An access control policy defines:
Server temperature levels
Who gets access to what resources
Customer billing cycles
Marketing permissions
An incident response policy outlines:
Hiring procedures
Steps to manage security incidents
Website design rules
Employee vacation days
SIEM tools mainly provide:
Software development
Security event monitoring and correlation
HR management
Cloud migration
A threat is:
A. A missing patch
B. A potential cause of an unwanted incident
C. A firewall rule
D. A backup schedule
A risk assessment includes:
Ignoring vulnerabilities
Identifying and prioritizing risks
Eliminating all threats immediately
Only reviewing passwords
Strong passwords must:
Be reused
Be predictable
Be complex and unique
Be short for convenience
Describe Phishing
Social engineering via emails
A. Phishing
B. Texting
C. Hardware theft
D. Wireless jamming
A DDoS attack aims to:
Encrypt data
Overload a system or network
Scan open ports
Modify logs
Which is NOT a security control type?
Administrative
Technical
Physical
Imaginative
A firewall works at which level of security?
Administrative
Network
Policy
Human resources
Log analysis helps in:
Cooking
Identifying suspicious activities
Increasing storage speed
Deleting user accounts
A backdoor may be created by:
Attackers
Developers
System misconfigurations
All of the above
Least privilege means:
Maximum access
Minimum necessary access
No password requirements
Unlimited permissions
A patch is intended to:
Add malware
Fix vulnerabilities
Remove users
Expand storage
Encryption ensures:
Speed
Confidentiality
Virus removal
Open access
A vulnerability scanner does:
Active packet injection only
Identifies system weaknesses
Encrypts passwords
Sends phishing emails
An IDS detects:
Network printers
Potential intrusions
Website themes
Camera feeds
Physical security involves:
Locks and surveillance
Password resets
Patching systems
Email filtering
The principle of separation of duties helps prevent:
Efficiency
Single-person abuse of power
Log generation
Encryption
A threat actor is:
A vulnerability
An individual or group causing attacks
A firewall
A risk response strategy
RPO refers to:
Recovery Point Objective
Risk Prevention Order
Remote Patch Operation
Random Policy Outcome
MFA improves security by:
Reducing users
Requiring multiple authentication factors
Lowering encryption
Increasing malware
A policy is:
A rule or guideline
A vulnerability type
A hardware component
A patch update
A zero-day exploit is used:
After a patch is released
Before vulnerability is discovered by the vendor
For backups only
For firewall rules
Data minimization requires:
Collecting as much data as possible
Collecting only needed information
Storing data forever
Sharing data widely
Insider threats come from:
Hackers only
Employees or trusted personnel
Nation-states only
Only external threats
A playbook in incident response is:
A novel
A step-by-step guide for handling incidents
A database server
A policy exception
Botnets are usually controlled by:
Users
Command-and-control servers
Random IPs
System patches
Data integrity ensures data is:
Deleted
Unchanged and accurate
Hidden
Not encrypted
GDPR fines can reach:
$100
Free warnings
Up to 4% of global annual revenue
No penalties
What is the primary goal of a penetration test?
To identify security weaknesses
To monitor network traffic
To fix vulnerabilities
To install security patches
Which of the following is a common method of social engineering?
Firewalls
Data masking
Encryption
Phishing
What is the primary purpose of a firewall?
To encrypt data
To monitor network traffic
To block unauthorized access
To perform backups
Which of the following is a common method for securing data in transit?
Encryption
Data masking
Data archiving
Data replication
Which of the following is a phishing email??
You have won a lottery!! Follow this link to claim it!!
Your bank account has been compromised. Login here to protect yourself.
Help.I am stuck aboard and urgently need money transferred to me to get home.
All of the above. Be careful.
Which of these is an indicator that the website is secure.
Bruce Lee photo
The http://
The https://
The https:\\
What does DDOS stand for?
Denial Data Operation System
Domain Data Overwrite Service
Distributed Domain Or Service
Distributed Denial Of Service
Strategic and tactical capability of the organization to plan for and respond to incidents and business disruptions in order to continue business operations at an acceptable predefined level
Live Drill
Business Continuity
Risk Management
Strategic Planning
Which of these is a sign of malware on your computer?
You receive a fraudulent email
Your browser alerts you it has blocked a pop-up window
Your homepage has changed unexpectedly
Your browser alerts you to update to a newer version
i am a security system that keeps track of filters and outgoing & incoming data through the network
(a)
Which of these is not a form of phishing?
fake email
fake website link
spam
key logger
What is the primary function of a Security Operations Center (SOC)?
monitor, detect, investigate, and respond to cybersecurity incidents in real-time.
Monitor server performance
Monitor transaction fraud
Monitor network parameter
What is the process of giving individual access to a system or resource?
Auditing
Authorization
Accounting
Authentication
Kim has taken her A-Level exam and is waiting to get her results by email. By accident, Kim’s results are sent to Karen.
C
I
A
None of the above
Mason, Rohan, and Maya are working in a cybersecurity firm. They are using a SIEM system. What would be the purpose of event correlation in their SIEM system?
To help Mason, Rohan, and Maya decide if reported activity is normal or outside of the baseline
To identify vulnerabilities in their system and recommend remediation steps
To gather data from log files, system applications, network appliances, etc., and analyze it
To send customized alerts to Mason, Rohan, and Maya if certain parameters are not within the acceptable range
Is hashing different from encryption?
Yes
No
What do you understand by one-way?
Input can not be recovered from the output
Input can be recovered in only one-direct from the output
Out put can be converted back to the original input if hash key is known
You receive an email with the subject “Immediate Action Required needed on your credit card account.” Why is this suspicious?
Because it is illegal to send credit offers in email
Because your credit card company does not use email
This email is not suspicious
The subject line is demanding immediate action
How can malware be distributed?
Found USB drives
Email attachments
All of these
Browser Plugins
During an ISO 27001 audit exercise at Arjun's company, what is the main focus?
Review and categorize audit findings
Design a new product
Develop a marketing strategy
Train new employees
Anika, Benjamin, and Nora are working in a cybersecurity firm. They are analyzing some data. What information can they get from the network logs they are studying?
The latest news updates
The current weather conditions
The data that's coming into and leaving their network
The menu for the company's cafeteria
Scarlett, William, and Ava are working as IT security analysts in a company. They are asked to review certain logs as part of their job. Which logs fall under the security category that they should review?
Application-security logs
Event-security logs
Security logs for specialty applications
All of the above
TCP Full form
Transmission Control Protocol
Tally Compliant Product
Transcutaneous Cardiac Pacing
None of these
Every device connected to the Internet has at least one IP address
True
False
When should the Commission and affected data subjects be notified about a personal data breach?
Within 24 hours
Within 48 hours
Within 72 hours
Within 96 hours
What information should be included in the notification of a personal data breach?
Nature of the breach and measures taken to address it
Personal data possibly involved
Contact details of the personal information controller
All of the above
Which of the following is NOT a type of data breach?
Unauthorized access to data
Data being made unavailable to authorized users
Properly encrypted data being stored securely
Data being altered or deleted without authorization
A computer virus is a program that can copy or______ its code in the system
modify
erase
decode
change
How do you identify a secure website
Check if the web site has a security certificate
Check if the web site content is accurate and valid
Check if the web site is in your browsing history
Check if the web site publisher’s contact information is present
When you delete a post from a social network site or forum it is completely erased.
True
False
Subjects (Users) and sources of access requests are validated through a proper authentication mechanism.
Reliable input
Least privilege
Open Policies
Closed policies
Describe the way in which a subject may access an object
object
access control
subject
object
Name one type of ransomware.
Zepto
CryptoLocker
WannaCry
Locky
How does ransomware typically infect a computer?
Through malicious email attachments, infected websites, or software vulnerabilities.
By downloading pirated software
By connecting to an infected network
By clicking on suspicious links or pop-up ads
What are the types of cloud services?
Public, private and hybrid clouds
Personal area (PAN), Local area (LAN), Campus area networks (CAN)
Infrastructure as a service (IaaS), platform as a service (PaaS), software as a service (SaaS)
Mail server, collaboration server, web server, application server
What is the drawback of cloud computing in education system?
The need for high speed internet access
The management of data and products
The absence of hardware
The wide connection of networks
How can a company stay protected from DDoS attacks?
By limiting user access
By ignoring suspicious activity
By increasing bandwidth
By reducing server capacity
