Computer Knowledge ยท General Awareness

Information Security

4,634 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which of the following is a type of security control that can be used to protect IaaS resources from phishing attacks?

  1. User awareness training

  2. Email filtering

  3. Multi-factor authentication (MFA)

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

User awareness training, email filtering, and multi-factor authentication (MFA) are all types of security controls that can be used to protect IaaS resources from phishing attacks.

Multiple choice

Which of the following is a type of security assessment that can be used to identify misconfigurations in an IaaS environment?

  1. Configuration audit

  2. Vulnerability scanning

  3. Penetration testing

  4. All of the above

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

A configuration audit is a type of security assessment that can be used to identify misconfigurations in an IaaS environment.

Multiple choice

Which of the following is NOT a common mobile device security risk?

  1. Malware and viruses

  2. Phishing attacks

  3. Strong passwords

  4. Unsecured Wi-Fi networks

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Strong passwords are a security measure, not a risk.

Multiple choice

Which of the following is NOT a recommended best practice for securing mobile devices?

  1. Using strong and unique passwords or passcodes

  2. Enabling two-factor authentication

  3. Jailbreaking or rooting devices

  4. Installing security updates and patches regularly

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Jailbreaking or rooting devices compromises the security of the device and makes it more vulnerable to attacks.

Multiple choice

What is the most effective way to protect against phishing attacks on mobile devices?

  1. Using a strong antivirus software

  2. Being cautious when clicking on links in emails or text messages

  3. Enabling pop-up blockers

  4. Using a VPN

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Being cautious and verifying the authenticity of links before clicking is the most effective way to prevent phishing attacks.

Multiple choice

Which of the following is NOT a recommended practice for securing mobile devices when using public Wi-Fi networks?

  1. Using a VPN

  2. Disabling automatic Wi-Fi connections

  3. Using strong passwords for Wi-Fi networks

  4. Accessing sensitive information over public Wi-Fi

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Accessing sensitive information over public Wi-Fi is not recommended due to the risk of eavesdropping and interception.

Multiple choice

Which of the following is NOT a recommended practice for securing mobile devices against malware and viruses?

  1. Installing a reputable antivirus software

  2. Keeping the device's operating system and apps up to date

  3. Downloading apps only from official app stores

  4. Clicking on suspicious links in emails or text messages

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Clicking on suspicious links is a common way for malware and viruses to infect devices.

Multiple choice

What is the purpose of two-factor authentication (2FA) on mobile devices?

  1. To add an extra layer of security to user accounts

  2. To improve the device's performance

  3. To allow users to access their accounts from multiple devices simultaneously

  4. To track the location of the device

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

2FA adds an extra layer of security by requiring users to provide two different forms of identification when logging in.

Multiple choice

Which of the following is NOT a recommended practice for securing mobile devices against theft or loss?

  1. Using a strong and unique passcode

  2. Enabling remote tracking and wiping capabilities

  3. Backing up important data regularly

  4. Leaving the device unattended in public places

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Leaving the device unattended in public places increases the risk of theft or loss.

Multiple choice

Which of the following is NOT a recommended practice for securing mobile devices when using Bluetooth?

  1. Only connecting to trusted Bluetooth devices

  2. Keeping Bluetooth turned off when not in use

  3. Accepting Bluetooth connection requests from unknown devices

  4. Using a strong passcode for Bluetooth pairing

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Accepting Bluetooth connection requests from unknown devices can compromise the security of the device.

Multiple choice

Which of the following is NOT a recommended practice for securing mobile devices against unauthorized access?

  1. Using a strong and unique passcode

  2. Enabling remote tracking and wiping capabilities

  3. Backing up important data regularly

  4. Jailbreaking or rooting devices

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Jailbreaking or rooting devices compromises the security of the device and makes it more vulnerable to attacks.

Multiple choice

Which of the following is NOT a recommended practice for securing mobile devices when using public charging stations?

  1. Using a reputable charging station

  2. Avoiding charging stations in high-traffic areas

  3. Using a personal charging cable

  4. Leaving the device unattended while charging

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Leaving the device unattended while charging increases the risk of theft or unauthorized access.

Multiple choice

What is the term used to describe the unauthorized access, use, disclosure, disruption, modification, or destruction of information in an IoT system?

  1. Data breach

  2. Cyberattack

  3. Malware infection

  4. Phishing scam

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

A cyberattack refers to any malicious attempt to compromise the security of an IoT system, potentially leading to unauthorized access, data theft, or disruption of services.

Multiple choice

Which of the following is NOT a common type of supply chain attack?

  1. Man-in-the-Middle (MitM) Attack

  2. Zero-Day Attack

  3. Phishing Attack

  4. Insider Attack

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Zero-Day Attacks are not specifically targeted at supply chains. They exploit vulnerabilities in software or systems that are not yet known to the vendor or the general public.

Multiple choice

Which of the following is a best practice for mitigating supply chain attacks?

  1. Conducting regular security audits of suppliers

  2. Implementing multi-factor authentication (MFA) for supplier access

  3. Educating employees about supply chain security risks

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the mentioned practices contribute to reducing the risk of supply chain attacks.