

Introduction to Cybersecurity Test Questions
Course Introduction
Introduction to Cybersecurity provides students with a foundational understanding of the principles, practices, and technologies used to safeguard information systems. The course explores key concepts such as cyber threats, vulnerabilities, risk management, cryptography, and the human factors influencing cybersecurity. Through real-world examples and practical applications, students learn about common attack vectors, defensive strategies, and ethical considerations, preparing them to recognize potential security challenges and contribute to the protection of digital assets in personal, academic, and professional environments.
Recommended Textbook
Security+ Guide to Network Security Fundamentals 4th Edition by Mark Ciampa
Available Study Resources on Quizplus
14 Chapters
588 Verified Questions
588 Flashcards
Source URL: https://quizplus.com/study-set/1054

Page 2
Chapter 1: Introduction to Security
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20875
Sample Questions
Q1) What is the maximum fine for those who wrongfully disclose individually identifiable health information with the intent to sell it?
A) $100,000
B) $250,000
C) $500,000
D) $1,000,000
Answer: B
Q2) Information security is achieved through a combination of what three entities? Provide at least one example of each entity.
Answer: 1. Products (physical security): The physical security around the data. May be as basic as door locks or as complicated as intrusion-detection systems and firewalls.
2. People (personnel security): Those who implement and properly use security products to protect data.
3. Procedures (organizational security): Plans and policies established by an organization to ensure that people correctly use the products.
Q3) ____________________ provides tracking of events.
Answer: Accounting
To view all questions and flashcards with answers, click on the resource link above.

3

Chapter 2: Malware and Social Engineering Attacks
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20876
Sample Questions
Q1) ____ involves horizontally separating words, although it is still readable by the human eye.
A) Word splitting
B) GIF layering
C) Geometric variance
D) Layer variance
Answer: A
Q2) What is a worm?
Answer: A worm is a malicious program designed to take advantage of a vulnerability in an application or an operating system in order to enter a computer. Once the worm has exploited the vulnerability on one system, it immediately searches for another computer that has the same vulnerability. A worm uses a network to send copies of itself to other devices also connected to the network.
Q3) Viruses and worms are said to be self-____.
A) duplicating
B) updating
C) copying
D) replicating
Answer: D
To view all questions and flashcards with answers, click on the resource link above.
Page 4
Chapter 3: Application and Network Attacks
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20877
Sample Questions
Q1) Web application attacks are considered ____ attacks.
A) client-side
B) hybrid
C) server-side.
D) relationship
Answer: C
Q2) ____ is a language used to view and manipulate data that is stored in a relational database.
A) C
B) DQL
C) SQL
D) ISL
Answer: C
Q3) All Web traffic is based on the ____________________ protocol.
Answer: HTTP
Q4) Why would you want to limit access to the root directory of a Web server?
Answer: Limiting access to the root directory prevents unauthorized users from accessing sensitive files on the server.
Q5) The predecessor to today's Internet was a network known as ____________________.
Answer: ARPAnet

Page 5
To view all questions and flashcards with answers, click on the resource link above.

Chapter 4: Vulnerability Assessment and Mitigating Attacks
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20878
Sample Questions
Q1) ____ is a comparison of the present state of a system compared to its baseline.
A) Baseline reporting
B) Compliance reporting
C) Baseline assessment
D) Compliance review
Q2) When a security hardware device fails or a program aborts, which state should it go into?
Q3) The ____ is the expected monetary loss every time a risk occurs.
A) SLE
B) ARO
C) ALE
D) SRE
Q4) ____ is the proportion of an asset's value that is likely to be destroyed by a particular risk.
A) SLE
B) ARO
C) EF
D) ER
Q5) List two types of hardening techniques.
Q6) Discuss one type of asset that an organization might have.
Page 6
To view all questions and flashcards with answers, click on the resource link above.

Chapter 5: Host, Application, and Data Security
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20879
Sample Questions
Q1) Identify one of the capabilities of DLP agents.
Q2) ID badges that can be detected by a proximity reader are often fitted with tiny radio ____ tags.
A) wave
B) pulse
C) AFID
D) RFID
Q3) Describe a mantrap.
Q4) A ____ can be inserted into the security slot of a portable device and rotated so that the cable lock is secured to the device, while a cable connected to the lock can then be secured to a desk or immobile object.
A) U-lock
B) safe lock
C) shield lock
D) cable lock
Q5) ____ can be prewired for electrical power as well as wired network connections.
A) Locking cabinets
B) Fences
C) Locking drawers
D) Desks
To view all questions and flashcards with answers, click on the resource link above. Page 7

Chapter 6: Network Security
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20880
Sample Questions
Q1) Describe the difference between subnetting and VLANs.
Q2) IP addresses are ____-bit addresses.
A) 4
B) 8
C) 16
D) 32
Q3) ____ is a technology that can help to evenly distribute work across a network.
A) Stateful packet filtering
B) Load balancing
C) DNS caching
D) DNS poisoning
Q4) The key to the OSI reference model is ____________________.
Q5) ____ is a technique that allows private IP addresses to be used on the public Internet.
A) PAT
B) PNAT
C) NAPT
D) NAT
Q6) Networks are usually segmented by using ____________________ to divide the network into a hierarchy.
Page 8
To view all questions and flashcards with answers, click on the resource link above.

Chapter 7: Administering a Secure Network
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20881
Sample Questions
Q1) What are the two types of community strings?
Q2) SNMP agents are protected with a password known as a(n) ____ in order to prevent unauthorized users from taking control over a device.
A) entity
B) community string
C) MIB
D) OID
Q3) ____ is a pay-per-use computing model in which customers pay only for the computing resources they need.
A) Cloud computing
B) Virtualization
C) Cloud Software as a Service
D) Infrastructure as a Service
Q4) List the steps of a DNS lookup.
Q5) List the steps in an 802.1x authentication procedure.
Q6) List and describe the three service models of cloud computing.
Q7) With operating system virtualization, a(n) ____________________ system is the native operating system to the hardware.
Q8) Why is the Physical Layer omitted in the TCP/IP model?
To view all questions and flashcards with answers, click on the resource link above. Page 9

Chapter 8: Wireless Network Security
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20882
Sample Questions
Q1) ____ is a framework for transporting authentication protocols instead of the authentication protocol itself.
A) PEAP
B) TKIP
C) SSL
D) EAP
Q2) A ____ access point is an unauthorized AP that allows an attacker to bypass many of the network security configurations and opens the network and its users to attacks.
A) random
B) sanctioned
C) rogue
D) legitimate
Q3) Discuss how and why some organizations set up a wireless VLAN for employees and another for guests.
Q4) ____ is the encryption protocol standard for WPA2.
A) AES-CCMP
B) AES-CTR
C) AES-TKIP
D) AES-SCMP
To view all questions and flashcards with answers, click on the resource link above. Page 10

Chapter 9: Access Control Fundamentals
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20883
Sample Questions
Q1) ____ indicates when an account is no longer active.
A) Password expiration
B) Account expiration
C) Last login
D) Account last used
Q2) The capability to look up information by name under the X.500 standard is known as a(n) ____________________-pages service.
Q3) A user or a process functioning on behalf of the user that attempts to access an object is known as the ____.
A) subject
B) reference monitor
C) entity
D) label
Q4) A user accessing a computer system must present credentials or ____ when logging on to the system.
A) access
B) authorize
C) token
D) identification
To view all questions and flashcards with answers, click on the resource link above. Page 11
Chapter 10: Authentication and Account Management
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20884
Sample Questions
Q1) Explain how an attacker can use a resetting attack.
Q2) Due to the limitations of online guessing, most password attacks today use ____.
A) offline cracking
B) online cracking
C) hash replay
D) token replay
Q3) Windows Live ID was originally designed as a ____ system that would be used by a wide variety of Web servers.
A) federated identity management
B) liberated identity management
C) central identity management
D) distributed identity management
Q4) The ____ attack will slightly alter dictionary words by adding numbers to the end of the password, spelling words backward, slightly misspelling words, or including special characters such as @, $, !, or %.
A) brute force
B) hash replay
C) network replay
D) hybrid
Q5) Discuss the weaknesses of OpenID.

Page 12
To view all questions and flashcards with answers, click on the resource link above.

Chapter 11: Basic Cryptography
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20885
Sample Questions
Q1) ____ was first proposed in the mid-1980s and it uses sloping curves.
A) FCC
B) RSA
C) ECC
D) IKE
Q2) Describe hard disk drive encryption.
Q3) Symmetric encryption is also called ____ cryptography.
A) private key
B) public key
C) symmetric key
D) shared key
Q4) The most basic type of cryptographic algorithm is a ____ algorithm.
A) hash
B) key
C) digest
D) block
Q5) A(n) ____________________ is a method used by operating systems to store, retrieve, and organize files.
Q6) Describe how Message Digest2 (MD2) works.
Q7) Describe how a block cipher works.
To view all questions and flashcards with answers, click on the resource link above. Page 13

Chapter 12: Advanced Cryptography
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20886
Sample Questions
Q1) ____________________ may be defined as confidence in or reliance on another person or entity.
Q2) A class 2 certificate is known as a ____ certificate.
A) signing digital
B) server digital
C) personal digital
D) code-signing
Q3) Digital signatures actually only show that the public key labeled as belonging to person was used to encrypt the digital signature.
A)True
B)False
Q4) A(n) ____________________ trust model can be used in an organization where one CA is responsible for only the digital certificates for that organization.
Q5) Key ____________________ dates prevent an attacker who may have stolen a private key from being able to decrypt messages for an indefinite period of time.
Q6) Explain how digital certificates are managed.
Q7) List and describe the entities for which IPsec is transparent.
Q8) Identify the general duties of an RA.
To view all questions and flashcards with answers, click on the resource link above. Page 14

Chapter 13: Business Continuity
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20887
Sample Questions
Q1) A ____ is a metallic enclosure that prevents the entry or escape of an electromagnetic field.
A) bollard
B) mantrap
C) Faraday cage
D) Newton cage
Q2) A ____ typically begins by identifying threats through a risk assessment.
A) BRA
B) BAA
C) BPA
D) BIA
Q3) RAID 0 technology is based on ____________________.
Q4) The ____ response team serves as first responders whenever digital evidence needs to be preserved.
A) incident
B) computer forensics
C) risk
D) emergency
Q5) Generally, ____________________ focuses on restoring computing and technology resources to their former state.
Page 15
To view all questions and flashcards with answers, click on the resource link above.

Chapter 14: Risk Mitigation
Available Study Resources on Quizplus for this Chatper
41 Verified Questions
41 Flashcards
Source URL: https://quizplus.com/quiz/20888
Sample Questions
Q1) What is a general security tip for using a social networking site?
Q2) Most organizations follow a three-phase cycle in the development and maintenance of a security policy.
A)True
B)False
Q3) ____ learners learn through a lab environment or other hands-on approaches.
A) Visual
B) Auditory
C) Kinesthetic
D) Spatial
Q4) ____________________ seeks to approach changes systematically and provide the necessary documentation of the changes.
Q5) List and describe two risk categories.
Q6) List four attributes that should be compiled for new equipment in the change management documentation.
Q7) What are the duties of the CMT?
Q8) Most people are taught using a(n) ____________________ approach.
To view all questions and flashcards with answers, click on the resource link above. Page 16
Q9) When designing a security policy, many organizations follow a standard set of