Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

OCC Cybersecurity Welcome Test

Total questions: 50

Worksheet time: 25mins

Name
Class
Date
1.

What is the primary purpose of cybersecurity?

a)

Increase system performance

b)

Protect systems, networks, and data

c)

Monitor employees

d)

Develop applications

2.

. Which set represents the CIA Triad?

a)

Control, Integrity, Access

b)

Confidentiality, Integrity, Availability

c)

Compliance, Inspection, Authentication

d)

Confidentiality, Identification, Authorization

3.

What is the main role of a Cybersecurity Analyst?

a)

Writing code

b)

Managing databases

c)

Monitoring and protecting systems from threats

d)

Designing websites

4.

What best describes phishing?

a)

Hardware malfunction

b)

Social engineering attack using deception

c)

Virus scanning technique

d)

Network configuration error

5.

Which control restricts unauthorised network access?

a)

Backup

b)

Firewall

c)

Patch management

d)

Encryption

6.

What is the main purpose of MFA?

a)

Replace passwords

b)

Improve system speed

c)

Add an extra authentication layer

d)

Remove user accounts

7.

Which malware encrypts data and demands payment?

a)

Worm

b)

Trojan

c)

Ransomware

d)

Spyware

8.

Least privilege means:

a)

Full access for all users

b)

Access only required for job roles

c)

No access reviews

d)

Shared accounts

9.

Identify, Protect, Detect, Respond, Recover belongs to:

a)

COBIT

b)

ITIL

c)

ISO 9001

d)

NIST CSF

10.

What does encryption mainly protect?

a)

Availability

b)

Confidentiality

c)

Performance

d)

Storage space

11.

What is a vulnerability?

a)

A threat actor

b)

A system weakness

c)

A security policy

d)

A firewall rule

12.

What is malware?

a)

Legitimate software

b)

Hardware damage

c)

Malicious software

d)

System backup

13.

Which attack floods a system with traffic?

a)

Phishing

b)

Brute force

c)

DoS

d)

SQL Injection

14.

What is patch management?

a)

User training

b)

Updating systems to fix vulnerabilities

c)

Backing up data

d)

Encrypting files

15.

Which device monitors network traffic?

a)

Switch

b)

Router

c)

IDS

d)

Printer

16.

What is authentication?

a)

Granting permissions

b)

Verifying identity

c)

Encrypting data

d)

Backing up files

17.

What is authorisation?

a)

Verifying user identity

b)

Assigning access rights

c)

Monitoring logs

d)

Installing patches

18.

What is a brute-force attack?

a)

Guessing passwords repeatedly

b)

Sending phishing emails

c)

Blocking traffic

d)

Encrypting data

19.

What is data at rest?

a)

Data being transmitted

b)

Stored data

c)

Deleted data

d)

Temporary data

20.

Why are backups important?

a)

Improve speed

b)

Recover data after incidents

c)

Detect threats

d)

Block attacks

21.

Which are cybersecurity threats?

a)

Malware

b)

Phishing

c)

Strong passwords

d)

DoS attacks

22.

Which are examples of malware?

a)

Virus

b)

Worm

c)

Firewall

d)

Trojan

23.

Incident response activities include:

a)

Detection

b)

Containment

c)

Recovery

d)

Software development

24.

Which improve access security?

a)

MFA

b)

Strong passwords

c)

Shared accounts

d)

Least privilege

25.

Which indicate a possible security incident?

a)

Unusual network traffic

b)

Multiple failed logins

c)

Scheduled maintenance

d)

Unexpected data transfers

26.

Social engineering techniques include:

a)

Phishing

b)

Tailgating

c)

Encryption

d)

Pretexting

27.

Which are preventive controls?

a)

Firewalls

b)

Antivirus

c)

Incident reporting

d)

Encryption

28.

Which are detective controls?

a)

IDS

b)

Log monitoring

c)

Firewalls

d)

Security alerts

29.

Which protect data confidentiality?

a)

Encryption

b)

Access control

c)

Backups

d)

Public sharing

30.

Which actions reduce malware infections?

a)

Regular updates

b)

Antivirus software

c)

Disabling security tools

d)

User awareness

31.

Which may indicate insider threats?

a)

Access outside work hours

b)

Unusual data downloads

c)

Strong passwords

d)

Policy violations

32.

Which are examples of authentication factors?

a)

Password

b)

Smart card

c)

Fingerprint

d)

Username

33.

Which activities fall under risk management?

a)

Risk identification

b)

Risk assessment

c)

Risk mitigation

d)

Software coding

34.

Which are network security controls?

a)

Firewalls

b)

IDS/IPS

c)

Password policies

d)

Network segmentation

35.

Which help ensure system availability?

a)

Backups

b)

Redundancy

c)

DoS attacks

d)

Patch management

36.

A threat exploits a vulnerability.

a)

True

b)

False

37.

Encryption protects data confidentiality.

a)

True

b)

False

38.

MFA uses only one authentication factor.

a)

True

b)

False

39.

Social engineering targets human behaviour.

a)

True

b)

False

40.

Firewalls can prevent unauthorised access.

a)

True

b)

False

41.

Antivirus software can detect known malware.

a)

True

b)

False

42.

Log monitoring helps detect suspicious activities.

a)

True

b)

False

43.

Least privilege increases security risks.

a)

True

b)

False

44.

DoS attacks aim to make systems unavailable.

a)

True

b)

False

45.

Patch management reduces vulnerabilities.

a)

True

b)

False

46.

Authentication and authorisation mean the same thing.

a)

True

b)

False

47.

Data in transit refers to stored data.

a)

True

b)

False

48.

Strong passwords reduce the risk of brute-force attacks.

a)

True

b)

False

49.

Insider threats only come from hackers outside the organisation.

a)

True

b)

False

50.

Incident response plans should be tested regularly.

a)

True

b)

False