Computer Knowledge ยท General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which of the following is NOT a common type of malware used in cyber attacks against energy systems?

  1. Ransomware

  2. Worms

  3. Trojan horses

  4. Antivirus software

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Antivirus software is not a type of malware used in cyber attacks, but rather a tool used to protect systems from malware.

Multiple choice

Which of the following is NOT a recommended cybersecurity practice for energy companies to protect their systems from cyber attacks?

  1. Implementing strong passwords and multi-factor authentication

  2. Regularly updating software and firmware

  3. Educating and training employees on cybersecurity

  4. Allowing employees to use personal devices on company networks without restrictions

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Allowing employees to use personal devices on company networks without restrictions is not a recommended cybersecurity practice, as it can increase the risk of cyber attacks.

Multiple choice

What is the best way to protect yourself from identity theft?

  1. Use strong passwords and change them regularly.

  2. Be careful about what information you share online.

  3. Shred any documents that contain your personal information.

  4. All of the above.

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The best way to protect yourself from identity theft is to use strong passwords and change them regularly, be careful about what information you share online, and shred any documents that contain your personal information.

Multiple choice

Which of the following is NOT a common type of cyberattack targeting financial institutions?

  1. Phishing

  2. Malware

  3. DDoS attacks

  4. Insider trading

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Insider trading is not a cyberattack, but rather a form of financial fraud.

Multiple choice

What is the term used to describe the unauthorized access, use, disclosure, disruption, modification, or destruction of information in electronic form?

  1. Cybersecurity

  2. Cybercrime

  3. Information security

  4. Data breach

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Cybercrime refers to the unauthorized access, use, disclosure, disruption, modification, or destruction of information in electronic form.

Multiple choice

Which of the following is NOT a best practice for financial institutions to protect against cyberattacks?

  1. Implementing strong cybersecurity policies and procedures

  2. Regularly updating software and systems

  3. Educating employees about cybersecurity risks

  4. Ignoring cybersecurity risks and hoping for the best

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Ignoring cybersecurity risks is not a best practice and can lead to serious consequences.

Multiple choice

Which of the following is NOT a common type of cybersecurity attack that targets financial institutions?

  1. Phishing

  2. Malware

  3. DDoS attacks

  4. Zero-day attacks

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Zero-day attacks are not a common type of cybersecurity attack that targets financial institutions.

Multiple choice

What is the term used to describe a type of cyberattack that involves flooding a target system with traffic in order to overwhelm it and prevent legitimate users from accessing it?

  1. Phishing

  2. Malware

  3. DDoS attacks

  4. Insider trading

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

DDoS attacks involve flooding a target system with traffic in order to overwhelm it and prevent legitimate users from accessing it.

Multiple choice

Which of the following is NOT a common type of cybersecurity control used to protect financial institutions from cyberattacks?

  1. Firewalls

  2. Intrusion detection systems

  3. Anti-malware software

  4. Employee training

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Employee training is not a cybersecurity control, but rather a cybersecurity best practice.

Multiple choice

What is the term used to describe a type of cyberattack that involves tricking a user into clicking on a malicious link or opening a malicious attachment in an email?

  1. Phishing

  2. Malware

  3. DDoS attacks

  4. Insider trading

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Phishing involves tricking a user into clicking on a malicious link or opening a malicious attachment in an email.

Multiple choice

Which of the following is NOT a common type of cybersecurity incident that can occur in the financial services industry?

  1. Data breaches

  2. Malware infections

  3. DDoS attacks

  4. Insider trading

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Insider trading is not a cybersecurity incident, but rather a type of financial fraud.

Multiple choice

What is the term used to describe a type of cybersecurity attack that involves exploiting a vulnerability in software or a system to gain unauthorized access or control?

  1. Phishing

  2. Malware

  3. Exploit

  4. Insider trading

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

An exploit is a type of cybersecurity attack that involves exploiting a vulnerability in software or a system to gain unauthorized access or control.

Multiple choice

Which of the following is NOT a common type of security measure implemented at events?

  1. Bag checks

  2. Metal detectors

  3. Surveillance cameras

  4. Social media monitoring

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Social media monitoring is not a common type of security measure implemented at events. Common security measures include bag checks, metal detectors, and surveillance cameras, which are used to detect potential threats and ensure the safety of attendees.

Multiple choice

Which of the following is NOT a potential risk associated with using free Wi-Fi?

  1. Malware attacks

  2. Phishing scams

  3. Identity theft

  4. Increased productivity

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Increased productivity is not a risk associated with using free Wi-Fi, but rather a potential benefit.

Multiple choice

When using free Wi-Fi, it is generally considered good practice to:

  1. Use a VPN to protect your privacy.

  2. Avoid accessing sensitive information.

  3. Be aware of your surroundings and potential security risks.

  4. All of the above.

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the options are good practices to follow when using free Wi-Fi.