Information Security
This quiz covers various aspects of Information Security, including threats, vulnerabilities, security measures, and best practices.
Questions
What is the primary objective of Information Security?
- To ensure the confidentiality, integrity, and availability of information.
- To prevent unauthorized access to information.
- To detect and respond to security incidents.
- To comply with regulatory requirements.
Which of the following is NOT a common type of cyber attack?
- Phishing
- Malware
- Denial-of-Service (DoS)
- Social Engineering
What is the purpose of a firewall in a network security architecture?
- To control and monitor incoming and outgoing network traffic.
- To detect and block malicious software.
- To encrypt data transmitted over the network.
- To provide secure remote access to users.
Which of the following is a best practice for creating strong passwords?
- Use common words or phrases that are easy to remember.
- Include personal information, such as your name or birthdate.
- Use a combination of upper and lowercase letters, numbers, and symbols.
- Change your password frequently, even if it's not compromised.
What is the term for the unauthorized access, use, disclosure, disruption, modification, or destruction of information?
- Information Security
- Cybersecurity
- Data Breach
- Vulnerability
Which of the following is a common type of social engineering attack?
- Phishing
- Malware
- Denial-of-Service (DoS)
- Buffer Overflow
What is the process of identifying, assessing, and mitigating risks to information assets called?
- Risk Assessment
- Vulnerability Assessment
- Penetration Testing
- Incident Response
Which of the following is a common type of vulnerability in software?
- Buffer Overflow
- Cross-Site Scripting (XSS)
- SQL Injection
- Denial-of-Service (DoS)
What is the term for the unauthorized use of a computer system to gain access to information, disrupt operations, or cause damage?
- Hacking
- Malware
- Phishing
- Social Engineering
Which of the following is a common type of malware that encrypts files and demands a ransom payment to decrypt them?
- Virus
- Trojan Horse
- Ransomware
- Worm
What is the term for the process of securing data in transit over a network?
- Encryption
- Authentication
- Authorization
- Non-Repudiation
Which of the following is a common type of security control used to restrict access to resources?
- Firewall
- Intrusion Detection System (IDS)
- Access Control List (ACL)
- Virtual Private Network (VPN)
What is the term for the process of restoring data or systems after a security incident?
- Incident Response
- Disaster Recovery
- Business Continuity Planning
- Risk Assessment
Which of the following is a common type of security standard or framework?
- ISO 27001
- NIST Cybersecurity Framework
- PCI DSS
- GDPR
What is the term for the process of regularly reviewing and updating security measures to address evolving threats and vulnerabilities?
- Security Audit
- Penetration Testing
- Vulnerability Assessment
- Risk Management