wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity Quiz

Total questions: 40

Worksheet time: 20mins

Name
Class
Date
1.

What is the primary goal of cybersecurity?

a)

To eliminate all cyber threats

b)

To protect information systems and data

c)

To monitor internet traffic

d)

To prevent hardware failure

2.

Which component of the CIA triad ensures data is accurate and unaltered?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Authentication

3.

Confidentiality is best described as:

a)

Ensuring systems are always online

b)

Preventing unauthorized access to information

c)

Ensuring data accuracy

d)

Backing up data regularly

4.

Availability in cybersecurity means:

a)

Data is encrypted

b)

Systems are patched

c)

Information is accessible when needed

d)

Users are authenticated

5.

Which of the following is an example of an information asset?

a)

Power cable

b)

Employee database

c)

Air conditioner

d)

Office chair

6.

Who is primarily responsible for an organization’s overall security strategy?

a)

Security Analyst

b)

Security Engineer

c)

IT Support

d)

Chief Information Security Officer (CISO)

7.

Risk management mainly involves:

a)

Buying security tools

b)

Identifying, analyzing, and mitigating risks

c)

Hiring security staff

d)

Blocking all threats

8.

Which document defines high-level security expectations?

a)

Procedure

b)

Standard

c)

Policy

d)

Guideline

9.

ISO/IEC 27001 primarily focuses on:

a)

Network configuration

b)

Information Security Management Systems (ISMS)

c)

Ethical hacking

d)

Software development

10.

Which framework is developed by NIST?

a)

ISO 27001

b)

COBIT

c)

NIST Cybersecurity Framework

d)

ITIL

11.

Ghana’s data protection law focuses mainly on:

a)

Cyber warfare

b)

Data privacy and personal data protection

c)

Software licensing

d)

Intellectual property

12.

Malware is best defined as:

a)

Hardware failure

b)

Malicious software designed to harm systems

c)

Legal software misuse

d)

Network congestion

13.

Phishing attacks mainly attempt to:

a)

Destroy data

b)

Gain unauthorized physical access

c)

Trick users into revealing sensitive information

d)

Scan open ports

14.

An insider threat originates from:

a)

Hackers abroad

b)

Natural disasters

c)

Employees or trusted users

d)

Government agencies

15.

A vulnerability is:

a)

A type of attack

b)

A system weakness that can be exploited

c)

A threat actor

d)

A security policy

16.

Which phase comes first in vulnerability management?

a)

Remediation

b)

Reporting

c)

Identification

d)

Verification

17.

The total points where an attacker can try to enter a system is called:

a)

Threat vector

b)

Attack surface

c)

Risk profile

d)

Control plane

18.

Security policies are an example of:

a)

Technical controls

b)

Physical controls

c)

Administrative controls

d)

Detective controls

19.

Firewalls are considered:

a)

Administrative controls

b)

Technical controls

c)

Physical controls

d)

Corrective controls

20.

CCTV cameras are an example of:

a)

Preventive control

b)

Detective control

c)

Corrective control

d)

Technical control

21.

Defense-in-depth means:

a)

One strong security control

b)

Multiple layers of security controls

c)

Outsourcing security

d)

Only technical security

22.

CIS Controls are best described as:

a)

Legal requirements

b)

Military standards

c)

Best-practice security safeguards

d)

Software tools

23.

AAA stands for:

a)

Authentication, Authorization, Accounting

b)

Access, Audit, Availability

c)

Authentication, Access, Auditing

d)

Authorization, Audit, Access

24.

Which access control model assigns permissions based on job roles?

a)

DAC

b)

MAC

c)

RBAC

d)

ABAC

25.

A fingerprint scanner uses which authentication factor?

a)

Knowledge

b)

Possession

c)

Inherence

d)

Location

26.

A strong password policy helps mainly with:

a)

Availability

b)

Confidentiality

c)

Integrity

d)

Auditing

27.

Which stage removes user access when employment ends?

a)

Provisioning

b)

Authentication

c)

De-provisioning

d)

Authorization

28.

The main purpose of encryption is to ensure:

a)

Integrity

b)

Availability

c)

Confidentiality

d)

Authentication

29.

AES is an example of:

a)

Asymmetric encryption

b)

Symmetric encryption

c)

Hashing algorithm

d)

Digital signature

30.

RSA is classified as:

a)

Symmetric algorithm

b)

Hash function

c)

Asymmetric algorithm

d)

Stream cipher

31.

Hashing is mainly used to:

a)

Encrypt data

b)

Decrypt data

c)

Verify data integrity

d)

Share keys

32.

PKI primarily manages:

a)

Passwords

b)

Firewalls

c)

Digital certificates and keys

d)

Network traffic

33.

Which OSI layer does a firewall primarily operate on?

a)

Physical

b)

Data Link

c)

Network

d)

Application

34.

IDS stands for:

a)

Intrusion Detection System

b)

Internet Defense Service

c)

Internal Data Scanner

d)

Intrusion Defense Software

35.

A VPN mainly provides:

a)

Faster internet

b)

Secure remote communication

c)

Network monitoring

d)

Port scanning

36.

Packet sniffing is used to:

a)

Destroy packets

b)

Capture and analyze network traffic

c)

Block IP addresses

d)

Encrypt data

37.

A Man-in-the-Middle attack aims to:

a)

Shut down servers

b)

Intercept communication between two parties

c)

Delete databases

d)

Scan ports

38.

The main role of a SOC is to:

a)

Develop software

b)

Monitor and respond to security incidents

c)

Train employees

d)

Manage databases

39.

SIEM tools are used for:

a)

Encryption

b)

Log collection and correlation

c)

Access control

d)

Software testing

40.

Patch management helps to:

a)

Increase system speed

b)

Fix known vulnerabilities

c)

Improve user experience

d)

Replace hardware