Skip to main content

Introduction to Cybersecurity Test Questions - 588 Verified Questions

Page 1


Introduction to Cybersecurity Test Questions

Course Introduction

Introduction to Cybersecurity provides students with a foundational understanding of the principles, practices, and technologies used to safeguard information systems. The course explores key concepts such as cyber threats, vulnerabilities, risk management, cryptography, and the human factors influencing cybersecurity. Through real-world examples and practical applications, students learn about common attack vectors, defensive strategies, and ethical considerations, preparing them to recognize potential security challenges and contribute to the protection of digital assets in personal, academic, and professional environments.

Recommended Textbook

Security+ Guide to Network Security Fundamentals 4th Edition by Mark Ciampa

Available Study Resources on Quizplus

14 Chapters

588 Verified Questions

588 Flashcards

Source URL: https://quizplus.com/study-set/1054

Page 2

Chapter 1: Introduction to Security

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20875

Sample Questions

Q1) What is the maximum fine for those who wrongfully disclose individually identifiable health information with the intent to sell it?

A) $100,000

B) $250,000

C) $500,000

D) $1,000,000

Answer: B

Q2) Information security is achieved through a combination of what three entities? Provide at least one example of each entity.

Answer: 1. Products (physical security): The physical security around the data. May be as basic as door locks or as complicated as intrusion-detection systems and firewalls.

2. People (personnel security): Those who implement and properly use security products to protect data.

3. Procedures (organizational security): Plans and policies established by an organization to ensure that people correctly use the products.

Q3) ____________________ provides tracking of events.

Answer: Accounting

To view all questions and flashcards with answers, click on the resource link above.

3

Chapter 2: Malware and Social Engineering Attacks

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20876

Sample Questions

Q1) ____ involves horizontally separating words, although it is still readable by the human eye.

A) Word splitting

B) GIF layering

C) Geometric variance

D) Layer variance

Answer: A

Q2) What is a worm?

Answer: A worm is a malicious program designed to take advantage of a vulnerability in an application or an operating system in order to enter a computer. Once the worm has exploited the vulnerability on one system, it immediately searches for another computer that has the same vulnerability. A worm uses a network to send copies of itself to other devices also connected to the network.

Q3) Viruses and worms are said to be self-____.

A) duplicating

B) updating

C) copying

D) replicating

Answer: D

To view all questions and flashcards with answers, click on the resource link above.

Page 4

Chapter 3: Application and Network Attacks

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20877

Sample Questions

Q1) Web application attacks are considered ____ attacks.

A) client-side

B) hybrid

C) server-side.

D) relationship

Answer: C

Q2) ____ is a language used to view and manipulate data that is stored in a relational database.

A) C

B) DQL

C) SQL

D) ISL

Answer: C

Q3) All Web traffic is based on the ____________________ protocol.

Answer: HTTP

Q4) Why would you want to limit access to the root directory of a Web server?

Answer: Limiting access to the root directory prevents unauthorized users from accessing sensitive files on the server.

Q5) The predecessor to today's Internet was a network known as ____________________.

Answer: ARPAnet

Page 5

To view all questions and flashcards with answers, click on the resource link above.

Chapter 4: Vulnerability Assessment and Mitigating Attacks

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20878

Sample Questions

Q1) ____ is a comparison of the present state of a system compared to its baseline.

A) Baseline reporting

B) Compliance reporting

C) Baseline assessment

D) Compliance review

Q2) When a security hardware device fails or a program aborts, which state should it go into?

Q3) The ____ is the expected monetary loss every time a risk occurs.

A) SLE

B) ARO

C) ALE

D) SRE

Q4) ____ is the proportion of an asset's value that is likely to be destroyed by a particular risk.

A) SLE

B) ARO

C) EF

D) ER

Q5) List two types of hardening techniques.

Q6) Discuss one type of asset that an organization might have.

Page 6

To view all questions and flashcards with answers, click on the resource link above.

Chapter 5: Host, Application, and Data Security

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20879

Sample Questions

Q1) Identify one of the capabilities of DLP agents.

Q2) ID badges that can be detected by a proximity reader are often fitted with tiny radio ____ tags.

A) wave

B) pulse

C) AFID

D) RFID

Q3) Describe a mantrap.

Q4) A ____ can be inserted into the security slot of a portable device and rotated so that the cable lock is secured to the device, while a cable connected to the lock can then be secured to a desk or immobile object.

A) U-lock

B) safe lock

C) shield lock

D) cable lock

Q5) ____ can be prewired for electrical power as well as wired network connections.

A) Locking cabinets

B) Fences

C) Locking drawers

D) Desks

To view all questions and flashcards with answers, click on the resource link above. Page 7

Chapter 6: Network Security

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20880

Sample Questions

Q1) Describe the difference between subnetting and VLANs.

Q2) IP addresses are ____-bit addresses.

A) 4

B) 8

C) 16

D) 32

Q3) ____ is a technology that can help to evenly distribute work across a network.

A) Stateful packet filtering

B) Load balancing

C) DNS caching

D) DNS poisoning

Q4) The key to the OSI reference model is ____________________.

Q5) ____ is a technique that allows private IP addresses to be used on the public Internet.

A) PAT

B) PNAT

C) NAPT

D) NAT

Q6) Networks are usually segmented by using ____________________ to divide the network into a hierarchy.

Page 8

To view all questions and flashcards with answers, click on the resource link above.

Chapter 7: Administering a Secure Network

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20881

Sample Questions

Q1) What are the two types of community strings?

Q2) SNMP agents are protected with a password known as a(n) ____ in order to prevent unauthorized users from taking control over a device.

A) entity

B) community string

C) MIB

D) OID

Q3) ____ is a pay-per-use computing model in which customers pay only for the computing resources they need.

A) Cloud computing

B) Virtualization

C) Cloud Software as a Service

D) Infrastructure as a Service

Q4) List the steps of a DNS lookup.

Q5) List the steps in an 802.1x authentication procedure.

Q6) List and describe the three service models of cloud computing.

Q7) With operating system virtualization, a(n) ____________________ system is the native operating system to the hardware.

Q8) Why is the Physical Layer omitted in the TCP/IP model?

To view all questions and flashcards with answers, click on the resource link above. Page 9

Chapter 8: Wireless Network Security

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20882

Sample Questions

Q1) ____ is a framework for transporting authentication protocols instead of the authentication protocol itself.

A) PEAP

B) TKIP

C) SSL

D) EAP

Q2) A ____ access point is an unauthorized AP that allows an attacker to bypass many of the network security configurations and opens the network and its users to attacks.

A) random

B) sanctioned

C) rogue

D) legitimate

Q3) Discuss how and why some organizations set up a wireless VLAN for employees and another for guests.

Q4) ____ is the encryption protocol standard for WPA2.

A) AES-CCMP

B) AES-CTR

C) AES-TKIP

D) AES-SCMP

To view all questions and flashcards with answers, click on the resource link above. Page 10

Chapter 9: Access Control Fundamentals

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20883

Sample Questions

Q1) ____ indicates when an account is no longer active.

A) Password expiration

B) Account expiration

C) Last login

D) Account last used

Q2) The capability to look up information by name under the X.500 standard is known as a(n) ____________________-pages service.

Q3) A user or a process functioning on behalf of the user that attempts to access an object is known as the ____.

A) subject

B) reference monitor

C) entity

D) label

Q4) A user accessing a computer system must present credentials or ____ when logging on to the system.

A) access

B) authorize

C) token

D) identification

To view all questions and flashcards with answers, click on the resource link above. Page 11

Chapter 10: Authentication and Account Management

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20884

Sample Questions

Q1) Explain how an attacker can use a resetting attack.

Q2) Due to the limitations of online guessing, most password attacks today use ____.

A) offline cracking

B) online cracking

C) hash replay

D) token replay

Q3) Windows Live ID was originally designed as a ____ system that would be used by a wide variety of Web servers.

A) federated identity management

B) liberated identity management

C) central identity management

D) distributed identity management

Q4) The ____ attack will slightly alter dictionary words by adding numbers to the end of the password, spelling words backward, slightly misspelling words, or including special characters such as @, $, !, or %.

A) brute force

B) hash replay

C) network replay

D) hybrid

Q5) Discuss the weaknesses of OpenID.

Page 12

To view all questions and flashcards with answers, click on the resource link above.

Chapter 11: Basic Cryptography

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20885

Sample Questions

Q1) ____ was first proposed in the mid-1980s and it uses sloping curves.

A) FCC

B) RSA

C) ECC

D) IKE

Q2) Describe hard disk drive encryption.

Q3) Symmetric encryption is also called ____ cryptography.

A) private key

B) public key

C) symmetric key

D) shared key

Q4) The most basic type of cryptographic algorithm is a ____ algorithm.

A) hash

B) key

C) digest

D) block

Q5) A(n) ____________________ is a method used by operating systems to store, retrieve, and organize files.

Q6) Describe how Message Digest2 (MD2) works.

Q7) Describe how a block cipher works.

To view all questions and flashcards with answers, click on the resource link above. Page 13

Chapter 12: Advanced Cryptography

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20886

Sample Questions

Q1) ____________________ may be defined as confidence in or reliance on another person or entity.

Q2) A class 2 certificate is known as a ____ certificate.

A) signing digital

B) server digital

C) personal digital

D) code-signing

Q3) Digital signatures actually only show that the public key labeled as belonging to person was used to encrypt the digital signature.

A)True

B)False

Q4) A(n) ____________________ trust model can be used in an organization where one CA is responsible for only the digital certificates for that organization.

Q5) Key ____________________ dates prevent an attacker who may have stolen a private key from being able to decrypt messages for an indefinite period of time.

Q6) Explain how digital certificates are managed.

Q7) List and describe the entities for which IPsec is transparent.

Q8) Identify the general duties of an RA.

To view all questions and flashcards with answers, click on the resource link above. Page 14

Chapter 13: Business Continuity

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20887

Sample Questions

Q1) A ____ is a metallic enclosure that prevents the entry or escape of an electromagnetic field.

A) bollard

B) mantrap

C) Faraday cage

D) Newton cage

Q2) A ____ typically begins by identifying threats through a risk assessment.

A) BRA

B) BAA

C) BPA

D) BIA

Q3) RAID 0 technology is based on ____________________.

Q4) The ____ response team serves as first responders whenever digital evidence needs to be preserved.

A) incident

B) computer forensics

C) risk

D) emergency

Q5) Generally, ____________________ focuses on restoring computing and technology resources to their former state.

Page 15

To view all questions and flashcards with answers, click on the resource link above.

Chapter 14: Risk Mitigation

Available Study Resources on Quizplus for this Chatper

41 Verified Questions

41 Flashcards

Source URL: https://quizplus.com/quiz/20888

Sample Questions

Q1) What is a general security tip for using a social networking site?

Q2) Most organizations follow a three-phase cycle in the development and maintenance of a security policy.

A)True

B)False

Q3) ____ learners learn through a lab environment or other hands-on approaches.

A) Visual

B) Auditory

C) Kinesthetic

D) Spatial

Q4) ____________________ seeks to approach changes systematically and provide the necessary documentation of the changes.

Q5) List and describe two risk categories.

Q6) List four attributes that should be compiled for new equipment in the change management documentation.

Q7) What are the duties of the CMT?

Q8) Most people are taught using a(n) ____________________ approach.

To view all questions and flashcards with answers, click on the resource link above. Page 16

Q9) When designing a security policy, many organizations follow a standard set of

Turn static files into dynamic content formats.

Create a flipbook
Introduction to Cybersecurity Test Questions - 588 Verified Questions by Quizplus - Issuu