Computer Knowledge ยท General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which of the following is a common tool used for continuous monitoring in cybersecurity?

  1. Security information and event management (SIEM) systems

  2. Intrusion detection systems (IDS)

  3. Vulnerability scanners

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Security information and event management (SIEM) systems, intrusion detection systems (IDS), and vulnerability scanners are all commonly used tools for continuous monitoring in cybersecurity. These tools help organizations detect and respond to security incidents, identify vulnerabilities, and monitor the overall security posture of their systems and networks.

Multiple choice

Which of the following is a key responsibility of a Chief Information Security Officer (CISO) in cybersecurity risk management?

  1. Overseeing the development and implementation of cybersecurity risk management strategies

  2. Communicating cybersecurity risks to stakeholders and ensuring their understanding

  3. Allocating resources for cybersecurity risk mitigation activities

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The Chief Information Security Officer (CISO) is responsible for overseeing the development and implementation of cybersecurity risk management strategies, communicating cybersecurity risks to stakeholders and ensuring their understanding, and allocating resources for cybersecurity risk mitigation activities. The CISO plays a crucial role in ensuring the organization's cybersecurity posture is aligned with its business objectives and regulatory requirements.

Multiple choice

Which of the following is a key principle of CPTED?

  1. Natural surveillance

  2. Access control

  3. Territorial reinforcement

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Natural surveillance, access control, and territorial reinforcement are all key principles of CPTED. Natural surveillance refers to the ability of people to see and be seen in a space, which can deter crime. Access control refers to the use of physical barriers to restrict access to a space, which can make it more difficult for criminals to commit crimes. Territorial reinforcement refers to the use of signs, markers, and other cues to communicate ownership and responsibility for a space, which can discourage crime.

Multiple choice

How can access control be used to prevent crime?

  1. By installing fences and gates

  2. By using door locks and security systems

  3. By limiting access to certain areas

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Access control can be used to prevent crime by installing fences and gates, by using door locks and security systems, and by limiting access to certain areas. These measures can make it more difficult for criminals to gain access to a space and can also deter crime.

Multiple choice

How can CPTED be used to prevent terrorism?

  1. By designing buildings and landscapes that make it difficult for terrorists to attack

  2. By using access control to restrict access to potential targets

  3. By creating a sense of community and ownership in public spaces

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

CPTED can be used to prevent terrorism by designing buildings and landscapes that make it difficult for terrorists to attack, by using access control to restrict access to potential targets, and by creating a sense of community and ownership in public spaces.

Multiple choice

What is cybersecurity?

  1. The protection of computer systems and networks from unauthorized access, use, disclosure, disruption, modification, or destruction.

  2. The practice of defending against digital attacks.

  3. The use of technology to protect information and systems from unauthorized access, use, disclosure, disruption, modification, or destruction.

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Cybersecurity is the protection of computer systems and networks from unauthorized access, use, disclosure, disruption, modification, or destruction. It is the practice of defending against digital attacks and the use of technology to protect information and systems from unauthorized access, use, disclosure, disruption, modification, or destruction.

Multiple choice

Which of the following is NOT a common type of security measure used in fashion retail to prevent employee theft?

  1. Background checks

  2. Employee training

  3. Mystery shoppers

  4. Access control systems

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Mystery shoppers are not typically used as a security measure in fashion retail to prevent employee theft as they are more commonly used to evaluate customer service and store operations.

Multiple choice

Which of the following is NOT a common type of loss prevention measure used in fashion retail to prevent data theft?

  1. Access control systems

  2. Encryption

  3. Firewalls

  4. Employee training

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Employee training is not typically used as a loss prevention measure in fashion retail to prevent data theft as it is more commonly used to deter shoplifting and employee theft.

Multiple choice

Which of the following is NOT a common type of cyber threat?

  1. Malware

  2. Phishing

  3. Social engineering

  4. DDoS attacks

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

DDoS attacks are not a common type of cyber threat to individuals or small businesses. They are typically used to target large organizations or websites.

Multiple choice

What is the best way to protect yourself from phishing attacks?

  1. Never click on links in emails from unknown senders

  2. Always use a strong password

  3. Keep your software up to date

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the above are important steps to protect yourself from phishing attacks.

Multiple choice

What is the most effective way to prevent social engineering attacks?

  1. Be aware of the latest social engineering techniques

  2. Never share personal information online

  3. Use strong passwords and two-factor authentication

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the above are important steps to prevent social engineering attacks.

Multiple choice

Which of the following is NOT a good security practice?

  1. Use a strong password

  2. Keep your software up to date

  3. Click on links in emails from unknown senders

  4. Enable two-factor authentication

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Clicking on links in emails from unknown senders is a bad security practice because it can lead to phishing attacks.

Multiple choice

Why is it important to stay informed about the latest cybersecurity trends?

  1. To protect yourself from new and emerging threats

  2. To keep your software up to date

  3. To be able to respond to security incidents effectively

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the above are reasons why it is important to stay informed about the latest cybersecurity trends.

Multiple choice

What is the best way to protect yourself from malware?

  1. Use a strong antivirus program

  2. Keep your software up to date

  3. Be careful about what you download from the internet

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the above are important steps to protect yourself from malware.

Multiple choice

What is the most effective way to respond to a security incident?

  1. Contact your IT department immediately

  2. Change your passwords

  3. Scan your computer for malware

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the above are important steps to respond to a security incident.