Information Security and Risk Management
Quiz covering Information Security Management Systems, cyber laws, identity management, risk assessment methodologies, vulnerability management, and IT fundamentals including software licensing and wireless technologies.
Questions
Which of the following biometric technologies are still under evolution to estalish better identification and verification?
- Iris Matching
- Retina Scan
- Nail bed Structure
- Face recognition
Which of the following listed attacks is a Wireless Access Point (WAP) most susceptible to?
- Lexicographer Attack
- Cafe Latte Attack
- All except A
- Man in the Middle attack
Which of the following IEEE standards standardizes Wireless LANs?
- 802.3
- 802.11
- 802.1
- 802.5
Mobile 3G supports which of the following?
- Voice calls
- Video calls
- Wireless data
- All of the above
Why is Vulnerability Management critical for any organization?
- To protect reputation and brand
- Ensure business continuity
- Protect IT infrastructure and critical data
- All of the above
Which of the following is the correct order of the 4 steps involved in Vulnerability Management Lifecycle?
- Analyze, Identify, Mitigate, Monitor
- Identify, Analyze, Mitigate, Manage
- Analyze, Identify, Manage, Mitigate
- Monitor, Analyze, Mitigate, Manage
State true or false: "Patch Management is all that is to Vulnerability Management"
- True
- False
State true or false: "Risk is assessed as a function of: a. probability of a threat b. probability of vulnerabilities c. potential impact to business."
- True
- False
Which of the following Risk Assessment Methodologies is deployed at TTSL?
- Fault Tree Analysis (FTA)
- Probability Risk Assessment (PRA)
- Failure Mode and Effect Analysis (FMEA)
- Operationally Critical Threat, Asset and Vulnerability (OCTAVE)
Which of the following options correctly states the various potential risk treatments?
- Risk Transfer, Risk Retention, Risk Avoidance, Risk Reduction
- Risk Analysis and Mitigation
- Risk Elimination
- None of the above
Software can be broadly categorized as which of the following?
- Application Software
- System Software
- Programming Software
- All of the above
Which of the following lists out correctly the various categories of software licenses?
- Open source and donate ware
- Proprietary Liences, Freeware and Cardware
- Proprietary Licenses, Freeware and Open Source
- Shareware, Donateware and Cardware
Why is a software license agreement important?
- It contains restrictions imposed by the creator of the software
- It ocntains warranty and warranty disclaimers
- It contains permissions granted to the user by the creator
- All of the above
Which of the following could be forms of identity theft?
- Credit Card Frauds
- Bank Frauds
- Employment Frauds
- All of the above
Which of the followin highlights the benefits of a Single Sign On technology?
- Reducing IT costs as it lowers the number of IT help desk calls about passwords
- Enforces uniform password policy controls against disparate and legacy systems
- Both A & B
- None of the above
What are the benefits of using an Identity and Access Management System?
- Automation of account management
- Control and delegation of elevated and least privileged accounts
- Establishment of strong authentication
- All of the above
Which of the following domains are encomapssed by Cyber Laws?
- Cyber Crimes and Intellectual Property
- Electronic and Digital Signature
- Data Protection and Privacy Laws
- All of the above
Which of the following ISO 27000 series deals with detailed information on Information Security Management System (ISMS)?
- ISO 27001
- ISO 27006
- ISO 27005
- ISO 27000 series