Computer Knowledge ยท General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which of the following is NOT a common type of transportation system targeted by cyberattacks?

  1. Intelligent Transportation Systems (ITS)

  2. Traffic management systems

  3. Public transportation systems

  4. Personal vehicles

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Personal vehicles are typically not targeted by cyberattacks, as they lack the connectivity and critical infrastructure of other transportation systems.

Multiple choice

What is the term used to describe the unauthorized access, use, disclosure, disruption, modification, or destruction of transportation systems or data with malicious intent?

  1. Cybersecurity threat

  2. Cybersecurity vulnerability

  3. Cybersecurity attack

  4. Cybersecurity incident

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

A cybersecurity attack refers to the unauthorized access, use, disclosure, disruption, modification, or destruction of transportation systems or data with malicious intent.

Multiple choice

Which of the following is NOT a common cybersecurity threat to transportation systems?

  1. Malware attacks

  2. Phishing attacks

  3. DDoS attacks

  4. Physical attacks

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Physical attacks, such as sabotage or tampering with physical infrastructure, are not typically considered cybersecurity threats, although they can have similar consequences.

Multiple choice

Which of the following is NOT a common cybersecurity control measure for transportation organizations?

  1. Implementing firewalls and intrusion detection systems

  2. Regularly updating software and firmware

  3. Educating employees about cybersecurity risks

  4. Ignoring cybersecurity incidents

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Ignoring cybersecurity incidents is not a control measure and can lead to severe consequences. Organizations should promptly investigate and respond to cybersecurity incidents.

Multiple choice

Which of the following is a common type of cyberattack that involves tricking individuals into revealing sensitive information?

  1. Phishing

  2. Malware

  3. DDoS

  4. SQL Injection

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Phishing attacks attempt to obtain sensitive information, such as passwords or credit card numbers, by posing as legitimate entities.

Multiple choice

Which of the following is a type of malware that encrypts files on a victim's computer and demands a ransom payment to decrypt them?

  1. Virus

  2. Trojan Horse

  3. Ransomware

  4. Worm

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Ransomware encrypts files on a victim's computer and demands a ransom payment to decrypt them, making them inaccessible.

Multiple choice

What is the process of identifying, assessing, and prioritizing information security risks known as?

  1. Risk Assessment

  2. Vulnerability Assessment

  3. Penetration Testing

  4. Incident Response

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Risk assessment involves identifying, assessing, and prioritizing information security risks to determine their potential impact and likelihood.

Multiple choice

Which of the following is a common security measure used to protect data during transmission over a network?

  1. Encryption

  2. Authentication

  3. Authorization

  4. Non-Repudiation

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Encryption involves converting data into a form that cannot be easily understood or accessed by unauthorized individuals.

Multiple choice

What is the process of detecting, responding to, and recovering from security incidents known as?

  1. Incident Response

  2. Risk Assessment

  3. Vulnerability Assessment

  4. Penetration Testing

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Incident response involves detecting, responding to, and recovering from security incidents to minimize their impact and prevent future occurrences.

Multiple choice

Which of the following is a type of cyberattack that involves flooding a target system with excessive traffic to disrupt its normal operations?

  1. DDoS

  2. Phishing

  3. Malware

  4. SQL Injection

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

DDoS (Distributed Denial of Service) attacks involve flooding a target system with excessive traffic to disrupt its normal operations.

Multiple choice

Which of the following is a common security measure used to control access to resources based on user roles and permissions?

  1. Authentication

  2. Authorization

  3. Encryption

  4. Non-Repudiation

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Authorization involves controlling access to resources based on user roles and permissions, determining who can access what.

Multiple choice

What is the process of verifying the identity of a user or system known as?

  1. Authentication

  2. Authorization

  3. Encryption

  4. Non-Repudiation

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Authentication involves verifying the identity of a user or system to ensure they are who they claim to be.

Multiple choice

Which of the following is a common security measure used to prevent unauthorized access to a network or system?

  1. Firewall

  2. Intrusion Detection System

  3. Antivirus Software

  4. Secure Socket Layer (SSL)

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

A firewall acts as a barrier between a network or system and the Internet, monitoring and filtering traffic to prevent unauthorized access.

Multiple choice

What is the process of ensuring that a message or data cannot be denied by the sender or receiver known as?

  1. Authentication

  2. Authorization

  3. Encryption

  4. Non-Repudiation

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Non-repudiation ensures that a message or data cannot be denied by the sender or receiver, providing proof of its origin and integrity.

Multiple choice

Which of the following is a common security measure used to protect data at rest on a storage device?

  1. Encryption

  2. Authentication

  3. Authorization

  4. Non-Repudiation

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Encryption involves converting data at rest on a storage device into a form that cannot be easily understood or accessed by unauthorized individuals.