Font size
WorksheetsCybersecurity Assessment
Total questions: 25
Worksheet time: 8mins
What is phishing and how can it be identified?
Phishing is a form of online gaming, identifiable by user engagement and rewards.
Phishing is a type of malware that infects computers, identifiable by slow performance.
Phishing is a legitimate marketing strategy used by companies, identifiable by clear branding.
Phishing is a cyber attack that tricks individuals into revealing sensitive information, identifiable by suspicious messages and requests.
Describe the steps involved in an incident response plan.
Assessment, Notification, Analysis, Response, Review, Follow-up
Preparation, Identification, Containment, Eradication, Recovery, and Lessons Learned.
Detection, Analysis, Mitigation, Recovery, Reporting, Evaluation
Planning, Investigation, Control, Resolution, Restoration, Documentation
What are the key components of a patch management strategy?
Key components of a patch management strategy include inventory management, risk assessment, patch deployment, testing, and monitoring.
Network security protocols
Software licensing management
User training and awareness
List three physical security measures that can protect sensitive data.
Access control systems
Surveillance cameras
Secure storage cabinets
Data encryption software
What is the purpose of business continuity planning?
To enhance employee satisfaction and engagement levels.
To ensure organizational resilience and continuity during disruptions.
To maximize short-term profits and minimize costs.
To create a detailed marketing strategy for growth.
Explain the importance of a backup strategy in cybersecurity.
A backup strategy is only necessary for large organizations.
A backup strategy is irrelevant in modern cybersecurity practices.
A backup strategy is primarily for improving internet speed.
A backup strategy is essential for data recovery, protection against ransomware, and ensuring business continuity in cybersecurity.
Define cybersecurity fundamentals and their significance.
Cybersecurity fundamentals are essential for protecting systems and data from cyber threats, ensuring safety and trust in digital environments.
Cybersecurity fundamentals focus solely on hardware protection and have little impact on data security.
Cybersecurity fundamentals are irrelevant in today's digital landscape and do not contribute to system safety.
Cybersecurity fundamentals are primarily concerned with physical security measures and not digital threats.
What is an IP address and why is it important?
An IP address is a unique identifier for a device on a network, essential for routing data.
An IP address is a password for accessing the internet.
An IP address is a physical location of a device in a building.
An IP address is a type of software for managing networks.
How do firewalls contribute to network security?
Firewalls are used to create backups of network data.
Firewalls contribute to network security by monitoring and controlling traffic, preventing unauthorized access, and enforcing security policies.
Firewalls enhance network speed by compressing data packets.
Firewalls primarily focus on improving user interface design.
What is subnetting and how does it work?
Subnetting is the division of a network into smaller sub-networks to improve management and efficiency.
Subnetting is the method of encrypting data packets for secure transmission.
Subnetting is the process of merging multiple networks into one large network.
Subnetting refers to the physical separation of network cables in a data center.
What are the best practices for identity and access management?
Disable all user accounts regularly
Use simple passwords without restrictions
Implement strong password policies, enable multi-factor authentication, regularly review access permissions, use role-based access control, conduct audits, and secure credential storage.
Allow unrestricted access to all resources
How can social engineering be used in phishing attacks?
Social engineering is used to enhance security measures against phishing attacks.
Social engineering is a method to prevent phishing by educating users about risks.
Phishing attacks rely on technical vulnerabilities rather than social manipulation.
Social engineering is used in phishing attacks to manipulate victims into revealing sensitive information by exploiting trust and urgency.
What role does training play in incident response planning?
Training is essential for effective incident response planning.
Training has no impact on incident response planning.
Training complicates incident response planning.
Training is optional for incident response planning.
What tools are commonly used in patch management?
Common tools used in patch management include WSUS (Windows Server Update Services), SCCM (System Center Configuration Manager), ManageEngine Patch Manager Plus, and Ivanti Patch Management.
Nessus Vulnerability Scanner
SolarWinds Network Performance Monitor
Splunk Security Information and Event Management
How can access control lists enhance physical security?
Access control lists are only useful for digital security measures.
Access control lists allow anyone to enter without restrictions.
Access control lists enhance security by increasing the number of entry points.
Access control lists enhance physical security by restricting access to authorized personnel only.
What are the differences between disaster recovery and business continuity?
Disaster recovery focuses on employee training; business continuity focuses on IT systems.
Disaster recovery is a long-term strategy; business continuity is a short-term plan.
Disaster recovery is about financial planning; business continuity is about risk assessment.
Disaster recovery is about restoring IT systems; business continuity is about maintaining operations.
Describe a reliable backup strategy for a small business.
Rely solely on external hard drives for backups without regular checks.
Perform backups once a year without any off-site storage.
Use only cloud storage without local backups or testing.
Implement a multi-layered backup strategy that includes regular automated backups, off-site storage, and periodic testing of data restoration.
What is the difference between public and private IP addresses?
Public IP addresses are assigned by local routers, while private IP addresses are globally unique.
Public IP addresses are used for local networks, while private IP addresses are accessible over the internet.
Public IP addresses are accessible over the internet, while private IP addresses are used within local networks.
Public IP addresses are temporary, while private IP addresses are permanent for devices.
How do VPNs enhance network security?
VPNs improve speed by reducing latency and buffering.
VPNs enhance network security by encrypting data and masking IP addresses.
VPNs enhance security by increasing bandwidth and connection speed.
VPNs allow unrestricted access to all websites without limits.
What is the significance of multi-factor authentication in identity management?
Multi-factor authentication decreases the need for secure passwords in identity management.
Multi-factor authentication significantly enhances security in identity management by requiring multiple forms of verification.
Multi-factor authentication is primarily used for password recovery processes.
Multi-factor authentication simplifies user access by reducing verification steps.
A user logs in from two countries within 3 minutes. Which are factors best helps validate identity?
Something you know
Something you have
Something you are
Somewhere you are
Attackers moved laterally inside the network after compromising one machine. Which best practices could have prevented this?
Regular patching
MFA
Network segmentation
Least privilege
A company wants to ensure that employees can only access the data required for their job roles. Which concepts apply?
Least privilege
Role‑based access control
Separation of duties
Data masking
After a breach, investigators discover that sensitive data was stored in plaintext inside application logs. Which cybersecurity fundamentals were violated?
Data confidentiality
Secure coding practices
Encryption at rest
Non‑repudiation
A threat actor successfully impersonates a senior executive by exploiting weak verification procedures during a phone call. Which fundamentals were weak?
Authentication
User awareness training
Encryption at rest
Social engineering defenses
