Computer Knowledge ยท General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which of the following is NOT a common e-commerce platform security measure?

  1. SSL (Secure Sockets Layer) encryption

  2. Two-factor authentication (2FA)

  3. Regular software updates and patches

  4. Physical security measures for warehouses

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Physical security measures for warehouses are not directly related to e-commerce platform security.

Multiple choice

Which of the following is an example of a data security measure used in astronomy?

  1. Encryption

  2. Authentication

  3. Authorization

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Encryption, authentication, and authorization are all examples of data security measures used in astronomy.

Multiple choice

Which of the following is a key component of cybersecurity risk management?

  1. Risk assessment

  2. Risk mitigation

  3. Risk acceptance

  4. Risk transfer

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Risk assessment is the process of identifying, analyzing, and evaluating cybersecurity risks to determine their likelihood and impact.

Multiple choice

Which of the following is a key element of a cybersecurity risk management plan?

  1. Risk assessment

  2. Risk mitigation

  3. Risk acceptance

  4. Risk transfer

Reveal answer Fill a bubble to check yourself
Correct answer
Explanation

A cybersecurity risk management plan should include elements such as risk assessment, risk mitigation, risk acceptance, and risk transfer.

Multiple choice

Which of the following is a key component of a cybersecurity incident response plan?

  1. Incident detection and analysis

  2. Incident containment and eradication

  3. Incident recovery and restoration

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

A cybersecurity incident response plan should include components such as incident detection and analysis, incident containment and eradication, and incident recovery and restoration.

Multiple choice

Which of the following is a common cybersecurity monitoring tool?

  1. Security information and event management (SIEM)

  2. Intrusion detection system (IDS)

  3. Vulnerability scanner

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Common cybersecurity monitoring tools include SIEM, IDS, and vulnerability scanners.

Multiple choice

Which of the following is a common cybersecurity training topic?

  1. Social engineering attacks

  2. Password security

  3. Phishing scams

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Common cybersecurity training topics include social engineering attacks, password security, phishing scams, and other cybersecurity best practices.

Multiple choice

Which of the following is a common cybersecurity audit standard?

  1. ISO 27001

  2. NIST Cybersecurity Framework

  3. PCI DSS

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Common cybersecurity audit standards include ISO 27001, NIST Cybersecurity Framework, and PCI DSS.

Multiple choice

What is data protection?

  1. The protection of personal information from unauthorized access, use, or disclosure.

  2. The protection of personal information from being used for harmful purposes.

  3. The protection of personal information from being used for commercial purposes.

  4. The protection of personal information from being used for political purposes.

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Data protection is the protection of personal information from unauthorized access, use, or disclosure.

Multiple choice

What are some of the best practices for data protection?

  1. Implementing strong security measures.

  2. Educating employees about data protection.

  3. Having a data protection policy in place.

  4. Regularly reviewing and updating data protection practices.

  5. All of the above.

Reveal answer Fill a bubble to check yourself
E Correct answer
Explanation

Some of the best practices for data protection include implementing strong security measures, educating employees about data protection, having a data protection policy in place, and regularly reviewing and updating data protection practices.

Multiple choice

What are some of the key data protection laws and regulations?

  1. The General Data Protection Regulation (GDPR).

  2. The California Consumer Privacy Act (CCPA).

  3. The Personal Information Protection and Electronic Documents Act (PIPEDA).

  4. All of the above.

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Some of the key data protection laws and regulations include the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and the Personal Information Protection and Electronic Documents Act (PIPEDA).

Multiple choice

Which of the following is a common type of adversarial attack?

  1. Poisoning attack

  2. Evasion attack

  3. Model extraction attack

  4. Privacy attack

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Evasion attacks involve modifying the input data to cause the machine learning model to make incorrect predictions, while preserving the integrity of the data.

Multiple choice

Which of the following techniques can be used to defend against data poisoning attacks?

  1. Data sanitization

  2. Model regularization

  3. Adversarial training

  4. Differential privacy

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Data sanitization involves removing or correcting errors and malicious data from the training dataset before training the machine learning model.

Multiple choice

Which of the following techniques can be used to defend against model extraction attacks?

  1. Obfuscation

  2. Steganography

  3. Differential privacy

  4. Adversarial training

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Obfuscation involves modifying the model parameters or architecture to make it more difficult to extract or interpret.

Multiple choice

What are some common test security procedures?

  1. Requiring test takers to show their identification before entering the testing room

  2. Prohibiting the use of electronic devices during the test

  3. Collecting all test materials at the end of the test

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Common test security procedures include requiring test takers to show their identification before entering the testing room, prohibiting the use of electronic devices during the test, collecting all test materials at the end of the test, and using secure testing environments.