Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Unit 8 Review

Total questions: 42

Worksheet time: 21mins

Name
Class
Date
1.

Ava has just purchased a new laptop and wants to make sure it is protected from unauthorized access and malware while she uses it at home and on public Wi-Fi. Which firewall type is designed to protect individual endpoints like laptops or desktops?

a)

Cloud-managed web application firewall

b)

Host-based firewall software

c)

Network perimeter firewall device

d)

Hardware IDS inline appliance

2.

Aiden is setting up security for his company's network. He is considering two options: an Intrusion Detection System (IDS) and an Intrusion Prevention System (IPS). What is the key difference between an IDS and an IPS?

a)

IDS detects, IPS can block

b)

IDS blocks traffic automatically

c)

IPS only generates alerts

d)

Both ignore suspicious traffic

3.

Maya is launching a website that will be accessed by users around the world. She wants to ensure that her site loads quickly for everyone, regardless of their location. What is a key advantage of using a Content Delivery Network (CDN) for Maya's website?

a)

Blocks malicious attachments

b)

Increases local Wi‑Fi range

c)

Caches content near users

d)

Replaces enterprise routers

4.

Rohan wants to securely access his company's internal network while working from a coffee shop. Which benefit does using a Virtual Private Network (VPN) mainly provide to Rohan?

a)

Encrypted private tunneling

b)

Automatic malware removal

c)

Public hotspot acceleration

d)

Unrestricted bandwidth caps

5.

Grace is sending a message across a network, and she wants to make sure that the message doesn't circulate endlessly if something goes wrong. What is the purpose of the Time to Live (TTL) field in a packet header?

a)

Guarantee delivery without loss

b)

Encrypt source IP address values

c)

Limit packet lifetime hops

d)

Measure throughput speed value

6.

Emma is responsible for managing the security of her company's data. She needs to ensure that sensitive information is only accessible to authorized users, that the data remains accurate and unaltered, and that the information is available whenever needed. List and define the three core components of the CIA Triad that Emma should focus on:
• C (Confidentiality):
• I (Integrity):
• A (Availability):

a)

Confidentiality, Integrity, Availability definitions

b)

Compliance, Inspection, Audit purposes

c)

Authentication, Authorization, Accounting roles

d)

Confidentiality, Identification, Assurance meanings

7.

Abigail is responsible for ensuring the integrity of important company files. Which tool should she use to help maintain the integrity of data? Explain how.

a)

Checksums verify changes in data

b)

Backups restore lost information

c)

Encryption hides content from readers

d)

Firewalls block unauthorized access

8.

Samuel owns a small business and is concerned about potential financial losses from cyber attacks. He decides to purchase cyber insurance so that if an attack occurs, the insurance company will cover the costs. In risk management, what does Samuel’s action of “transferring the risk” usually mean?

a)

Eliminating all vulnerabilities

b)

Shifting impact to a third party

c)

Accepting potential losses internally

d)

Delaying decisions indefinitely

9.

Benjamin is driving to work. Give one example of each from his everyday life: • Risk example: • Threat example: • Vulnerability example:

a)

Risk car crash, threat icy roads, vulnerability bald tires

b)

Risk data breach, threat malware, vulnerability firewall

c)

Risk rainstorm, threat sunshine, vulnerability umbrella

d)

Risk theft, threat password, vulnerability encryption

10.

Aria is setting up a secure website for her online store. She wants to make sure that customers' data, like credit card information, is protected while being sent over the internet. What encryption method should Aria use to protect data in transit over the web (like HTTPS), and what does it protect?

a)

SSH protects local file storage

b)

AES protects database schemas

c)

PGP protects printer queues

d)

TLS protects confidentiality and integrity

11.

David is setting up computers in his office and wants to ensure they are protected from malware. He learns about worms and viruses. What is the key difference between a worm and a virus?

a)

Worm self-propagates; virus needs host

b)

Neither spreads between systems

c)

Virus self-propagates; worm needs host

d)

Both require user interaction

12.

Zoe is entering her office building, which requires a key card for access. As she opens the door, someone she doesn't recognize closely follows her inside without using their own key card. What is this security breach called?

a)

Following someone into a secure area

b)

Scanning devices for vulnerabilities

c)

Spoofing email sender addresses

d)

Sharing passwords with coworkers

13.

William works as a cybersecurity analyst for a large company. One day, he discovers that computers all over the world are being remotely controlled to launch cyber attacks against his company's servers. How does this network of compromised machines operate?

a)

Peer-to-peer chat among users

b)

A single server storing backups

c)

Manual scripts executed by admins

d)

Many infected hosts controlled remotely

14.

William is working as a network administrator and suspects that someone is trying to bypass VLAN security in his organization. He learns that VLAN hopping often uses a specific technique. Which technique name is most commonly associated with VLAN hopping?

a)

DNS zone transfer

b)

ARP cache spoofing

c)

Double-tagging frames

d)

Beacon frame forging

15.

Benjamin is working in an office network and notices suspicious activity. He suspects that someone is using ARP poisoning to intercept network traffic. Which broader attack does ARP poisoning commonly facilitate?

a)

Password spraying campaigns

b)

Cross-site scripting chains

c)

SQL injection exploitation

d)

Man-in-the-Middle interception

16.

Jackson tries to visit his bank's website, but he notices that the site looks suspicious and asks for unusual information. Which user-visible symptom most commonly indicates DNS poisoning?

a)

Legitimate domains resolve to fake sites

b)

CPU usage spikes without reason

c)

Browser cache refuses to clear

d)

Wi‑Fi SSID disappears unexpectedly

17.

Emma is responsible for managing user accounts and permissions in her company's IT system. What is the primary purpose of Identity and Access Management (IAM) in this scenario?

a)

Ensure the right users have proper access

b)

Encrypt data at rest on all servers

c)

Monitor network latency and jitter

d)

Optimize database query performance

18.

Emma logs into her company's portal once and then is able to access the email system, HR platform, and project management tool without having to enter her credentials again. What technology enables this?

a)

Single Sign-On across trusted services

b)

Local account cached on the device

c)

Password manager autofilling fields

d)

Guest access with temporary tokens

19.

Anika is setting up a secure network for her company and needs a protocol that primarily handles centralized authentication, authorization, and accounting for network devices. Which protocol should she use?

a)

TACACS+ for AAA on infrastructure

b)

LDAP for email address lookups

c)

SAML for browser-based identity

d)

RADIUS for certificate enrollment

20.

Avery is configuring single sign-on (SSO) for their company's enterprise applications. During the setup, Avery needs to choose a protocol that will allow users to authenticate once and access multiple applications securely. Which statement describes how SAML is used in this workflow?

a)

Exchanges authentication assertions for SSO

b)

Stores hierarchical objects in directories

c)

Provides device-level command authorization

d)

Performs remote dial-in authentication

21.

Abigail is responsible for managing her company's cybersecurity program. She wants to ensure that the controls in place are working effectively. Why are audits important in cybersecurity programs?

a)

Reduce CPU usage on servers

b)

Provide evidence of control effectiveness

c)

Replace user training requirements

d)

Eliminate all software vulnerabilities

22.

Maya is setting up a secure website for her company and needs to ensure that users can trust the site’s identity. What is the role of a Certificate Authority (CA) in PKI for Maya’s website?

a)

Detect malware on endpoints

b)

Issue and validate certificates

c)

Manage physical access badges

d)

Encrypt all network traffic

23.

Liam wants to secure his online banking account. How does multifactor authentication (MFA) enhance his account's security compared to just using a password?

a)

Requires multiple independent factors

b)

Makes passwords longer automatically

c)

Eliminates the need for encryption

d)

Blocks all phishing attempts always

24.

Samuel is setting up a single sign-on system for his company's web applications. He wants employees to log in once and access multiple services without re-entering their credentials. In this context, what does SAML primarily do?

a)

Scans networks for vulnerabilities

b)

Encrypts hard drives entirely

c)

Facilitates federated authentication

d)

Manages physical door locks

25.

Kai is responsible for managing a company's office building. What is the primary goal of physical security in this real-world scenario?

a)

Protect people and assets

b)

Speed up wireless networks

c)

Improve software usability

d)

Reduce electricity consumption

26.

At Lincoln High School, the security team wants to install cameras that can be remotely moved and zoomed in to monitor different areas. Which camera type allows for this PTZ (pan-tilt-zoom) functionality, and how might it be used at the school?

a)

Thermal camera, encrypt databases

b)

PTZ camera, monitor hallways actively

c)

Fixed camera, prevent user logins

d)

IP camera, store analog footage

27.

Maya is responsible for managing the keys to secure areas in her company. Why is key management important for physical security?

a)

Controls access and audits use

b)

Increases camera resolution

c)

Speeds up network routing

d)

Prevents software vulnerabilities

28.

Benjamin is setting up a cybersecurity system for his company. He wants to create a setup that attracts potential attackers so he can study their methods without risking the real network. What should Benjamin implement?

a)

Backup server for production

b)

Tool that blocks all malware

c)

Encrypted storage for passwords

d)

Decoy system to lure attackers

29.

David is setting up Wi‑Fi at his office and wants to allow guests to use the internet without risking the security of his internal network. Why is maintaining a separate guest Wi‑Fi network recommended?

a)

It disables all firewall functions automatically

b)

It guarantees unlimited internet bandwidth

c)

It makes printers always print faster

d)

It isolates untrusted devices from internal LAN

30.

Charlotte is responsible for managing a plant that uses sensors connected to an ICS network. Which approach best limits a malware outbreak from spreading to business systems?

a)

Share admin accounts across all devices

b)

Use a single flat network for simplicity

c)

Enable universal plug‑and‑play everywhere

d)

Segment ICS from corporate with firewalls

31.

Olivia is setting up a Wi-Fi network for her coffee shop and wants to ensure that only paying customers can access it. Which security protocol should she use to protect wireless communications, and what does it help prevent?

a)

WEP prevents password reuse

b)

FTP encrypts web traffic

c)

SMTP blocks malware downloads

d)

WPA2 secures wireless data from eavesdropping

32.

Priya leaves her house unlocked while she is away. Which concept does this scenario best illustrate?

a)

Driving on a busy highway

b)

Wearing a helmet while cycling

c)

Leaving your house unlocked while you are away

d)

Having a strong password for your email

33.

When entering a secure area, an employee notices someone tailgating behind them without proper identification. What is the recommended action to prevent this type of security breach?

a)

Hold the door open for everyone

b)

Politely ask the person to present their access credentials

c)

Ignore and continue walking

d)

Share your key card with the person

34.

Lucas is setting up a new wireless network for his company's office. He wants to make sure that only authorized employees can connect to the Wi-Fi and that their data is protected with strong encryption. Which protocol should Lucas implement to provide strong encryption and authentication for Wi-Fi connections?

a)

WPA3 for enhanced security and encryption

b)

WEP for basic password protection

c)

HTTP for secure web browsing

d)

POP3 for email retrieval

35.

Sophia is configuring her company's firewall to protect sensitive data from external threats. What is the main function of a firewall in network security?

a)

Monitor employee productivity

b)

Manage user passwords

c)

Increase internet speed

d)

Block unauthorized access to the network

36.

David is setting up a secure login system for his company's web portal. Which technology allows users to authenticate once and gain access to multiple applications without re-entering their credentials?

a)

Multi-factor authentication

b)

VPN tunneling

c)

Single Sign-On (SSO)

d)

Firewall filtering

37.

Evelyn works in an office building. One day, she notices someone she does not recognize trying to enter the building without proper authorization. Which of the following is an example of a threat to physical security in this office environment?

a)

An unauthorized person attempting to enter the building

b)

Leaving confidential documents on a desk overnight

c)

Installing security cameras

d)

Using strong encryption for emails

38.

At a corporate office, employees use secure doors to access sensitive areas. Sometimes, attackers try to enter these areas by following authorized personnel through the doors without proper authentication. Which method helps prevent such unauthorized access?

a)

Disabling all security alarms

b)

Using outdated passwords

c)

Increasing Wi-Fi bandwidth

d)

Implementing tailgating prevention measures

39.

David needs to securely access his company's internal network from home over the internet. Which protocol is commonly used to provide secure remote access in this situation?

a)

FTP (File Transfer Protocol)

b)

SMTP (Simple Mail Transfer Protocol)

c)

VPN (Virtual Private Network)

d)

HTTP (Hypertext Transfer Protocol)

40.

Olivia is setting up access controls for her company's sensitive data. Which principle helps ensure that users only have the permissions necessary to perform their job functions?

a)

Share passwords between teams

b)

Disable all user accounts

c)

Universal access for all employees

d)

Least privilege limits unnecessary access

41.

Jacob is setting up a new office for his company and wants to ensure that only authorized devices can access the company's network. He needs a device that will monitor and control all incoming and outgoing network traffic according to security rules. Which device should Jacob use?

a)

Printer manages document output

b)

Monitor tracks employee attendance

c)

Firewall enforces network boundaries

d)

Router increases internet speed

42.

Sophia manages the IT systems for her company and regularly schedules backups of important business documents. What is the main benefit of having regular backups in a cybersecurity program?

a)

Increase server CPU performance

b)

Encrypt passwords automatically

c)

Restore data after loss or corruption

d)

Block all network traffic