Computer Knowledge ยท General Awareness
Information Security
4,634 Questions
Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.
Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection
Information Security Questions
Which of the following is NOT a common type of cybersecurity attack that targets financial institutions?
-
Phishing
-
Malware
-
DDoS attacks
-
Zero-day attacks
D
Correct answer
Explanation
Zero-day attacks are not a common type of cybersecurity attack that targets financial institutions.
What is the term used to describe a type of cyberattack that involves flooding a target system with traffic in order to overwhelm it and prevent legitimate users from accessing it?
-
Phishing
-
Malware
-
DDoS attacks
-
Insider trading
C
Correct answer
Explanation
DDoS attacks involve flooding a target system with traffic in order to overwhelm it and prevent legitimate users from accessing it.
Which of the following is NOT a common type of cybersecurity control used to protect financial institutions from cyberattacks?
-
Firewalls
-
Intrusion detection systems
-
Anti-malware software
-
Employee training
D
Correct answer
Explanation
Employee training is not a cybersecurity control, but rather a cybersecurity best practice.
What is the term used to describe a type of cyberattack that involves tricking a user into clicking on a malicious link or opening a malicious attachment in an email?
-
Phishing
-
Malware
-
DDoS attacks
-
Insider trading
A
Correct answer
Explanation
Phishing involves tricking a user into clicking on a malicious link or opening a malicious attachment in an email.
Which of the following is NOT a common type of cybersecurity incident that can occur in the financial services industry?
-
Data breaches
-
Malware infections
-
DDoS attacks
-
Insider trading
D
Correct answer
Explanation
Insider trading is not a cybersecurity incident, but rather a type of financial fraud.
What is the term used to describe a type of cybersecurity attack that involves exploiting a vulnerability in software or a system to gain unauthorized access or control?
-
Phishing
-
Malware
-
Exploit
-
Insider trading
C
Correct answer
Explanation
An exploit is a type of cybersecurity attack that involves exploiting a vulnerability in software or a system to gain unauthorized access or control.
Which of the following is NOT a common type of security measure implemented at events?
-
Bag checks
-
Metal detectors
-
Surveillance cameras
-
Social media monitoring
D
Correct answer
Explanation
Social media monitoring is not a common type of security measure implemented at events. Common security measures include bag checks, metal detectors, and surveillance cameras, which are used to detect potential threats and ensure the safety of attendees.
Which of the following is NOT a potential risk associated with using free Wi-Fi?
-
Malware attacks
-
Phishing scams
-
Identity theft
-
Increased productivity
D
Correct answer
Explanation
Increased productivity is not a risk associated with using free Wi-Fi, but rather a potential benefit.
When using free Wi-Fi, it is generally considered good practice to:
-
Use a VPN to protect your privacy.
-
Avoid accessing sensitive information.
-
Be aware of your surroundings and potential security risks.
-
All of the above.
D
Correct answer
Explanation
All of the options are good practices to follow when using free Wi-Fi.
Which of the following is NOT a recommended security measure for business travelers?
-
Using strong passwords and changing them regularly
-
Being aware of phishing scams and avoiding suspicious emails
-
Using a VPN when connecting to public Wi-Fi networks
-
Leaving your laptop and other valuables unattended in public places
D
Correct answer
Explanation
Leaving your laptop and other valuables unattended in public places is not a recommended security measure for business travelers, as it increases the risk of theft.
Which of the following is NOT a common security measure implemented in home automation systems?
-
Two-factor authentication
-
Encrypted communication
-
Regular firmware updates
-
Leaving the system password on a sticky note
D
Correct answer
Explanation
Leaving the system password on a sticky note is a poor security practice and not a recommended security measure for home automation systems.
Which of the following is NOT a common limitation of vulnerability indices?
-
They are often static
-
They are often not context-specific
-
They are often not participatory
-
They are often not transparent
D
Correct answer
Explanation
They are often not transparent is not a common limitation of vulnerability indices, as it is more commonly a limitation of vulnerability assessments.
Which of the following is a type of cybercrime?
-
Hacking
-
Phishing
-
Malware Attacks
-
All of the above
D
Correct answer
Explanation
Hacking, phishing, and malware attacks are all types of cybercrimes.
What are the main types of cybercrimes?
-
Hacking
-
Phishing
-
Malware
-
All of the above
D
Correct answer
Explanation
Cybercrimes are illegal activities that are committed using computers or electronic networks.
What are the key features of the Personal Data Protection Bill, 2019?
-
It establishes a Data Protection Authority to oversee the implementation of the law
-
It requires businesses to obtain consent from individuals before collecting and using their personal data
-
It gives individuals the right to access, correct, and delete their personal data
-
All of the above
D
Correct answer
Explanation
The Personal Data Protection Bill, 2019 establishes a Data Protection Authority to oversee the implementation of the law. It requires businesses to obtain consent from individuals before collecting and using their personal data. It also gives individuals the right to access, correct, and delete their personal data.