Computer Knowledge ยท General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which tool is primarily used for vulnerability assessment and penetration testing?

  1. Nmap

  2. Nessus

  3. Metasploit

  4. Wireshark

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Nessus is a popular vulnerability assessment and management tool that scans systems for known vulnerabilities and provides detailed reports, enabling security teams to identify and prioritize vulnerabilities for remediation.

Multiple choice

Which tool is commonly used for incident response and remediation?

  1. Metasploit

  2. Splunk

  3. Security Onion

  4. Nessus

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Metasploit is a powerful penetration testing and exploitation framework that can be used for incident response and remediation, allowing security teams to exploit vulnerabilities, gain access to compromised systems, and perform post-exploitation activities.

Multiple choice

Which tool is commonly used for endpoint detection and response (EDR)?

  1. CrowdStrike Falcon

  2. Splunk

  3. Security Onion

  4. Metasploit

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

CrowdStrike Falcon is a popular EDR solution that provides real-time visibility into endpoint activity, detects and responds to threats, and enables security teams to investigate and remediate incidents effectively.

Multiple choice

Which tool is commonly used for digital forensics and incident investigation?

  1. EnCase

  2. Wireshark

  3. Splunk

  4. Nessus

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

EnCase is a widely used digital forensics and incident investigation tool that enables security professionals to collect, analyze, and preserve digital evidence, reconstruct events, and identify the root cause of security incidents.

Multiple choice

What is the purpose of the GSM Authentication and Key Agreement (AKA) protocol?

  1. Encryption of Voice Traffic

  2. Subscriber Authentication

  3. Network Access Control

  4. Data Transmission

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

The GSM Authentication and Key Agreement (AKA) protocol is responsible for authenticating subscribers and generating session keys for encrypting voice traffic and signaling messages.

Multiple choice

Which encryption algorithm is used in GSM to protect the confidentiality of voice communication?

  1. AES

  2. DES

  3. RC4

  4. RSA

Reveal answer Fill a bubble to check yourself
Correct answer
Explanation

The A5/1 encryption algorithm is used in GSM to encrypt voice traffic. It is a stream cipher that generates a pseudo-random keystream that is XORed with the speech data to produce the encrypted signal.

Multiple choice

Which of the following is a common strategy employed by surveillance systems to collect information about individuals' online activities?

  1. Web Tracking

  2. Cookie Tracking

  3. Behavioral Profiling

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Web tracking, cookie tracking, and behavioral profiling are all techniques used by surveillance systems to collect information about individuals' online activities, such as their browsing history, search queries, and interactions with websites.

Multiple choice

How can technology help organizations ensure data security and privacy in the workplace?

  1. By implementing strong cybersecurity measures

  2. By educating employees about data protection practices

  3. By regularly updating software and systems to patch vulnerabilities

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Organizations can leverage technology to enhance data security and privacy by implementing cybersecurity measures, educating employees, and keeping software and systems up to date.

Multiple choice

Which encryption algorithm is used to protect the data transmitted over GPRS networks?

  1. AES

  2. DES

  3. 3DES

  4. RC4

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

3DES (Triple Data Encryption Standard) is the encryption algorithm used to protect the data transmitted over GPRS networks. It is a symmetric block cipher that uses a 168-bit key to encrypt and decrypt data.

Multiple choice

Which security mechanism is used to protect the integrity of GPRS data traffic?

  1. CRC

  2. HMAC

  3. MD5

  4. SHA-1

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

HMAC (Hash-based Message Authentication Code) is the security mechanism used to protect the integrity of GPRS data traffic. It is a message authentication code that uses a shared secret key to generate a hash of the data.

Multiple choice

Which security mechanism is used to protect the confidentiality of GPRS data traffic?

  1. AES

  2. DES

  3. 3DES

  4. RC4

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

AES (Advanced Encryption Standard) is the security mechanism used to protect the confidentiality of GPRS data traffic. It is a symmetric block cipher that uses a 128-bit key to encrypt and decrypt data.

Multiple choice

Which of the following is a security mechanism used in UMTS to protect the integrity of signaling messages?

  1. KASUMI

  2. HMAC

  3. RSA

  4. AES

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

HMAC (Hash-based Message Authentication Code) is used in UMTS to ensure the integrity of signaling messages by generating a message authentication code (MAC) based on a shared secret key.

Multiple choice

Which of the following algorithms is used for encryption of user data in UMTS?

  1. AES

  2. DES

  3. 3DES

  4. RC4

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

AES (Advanced Encryption Standard) is the algorithm used for encryption of user data in UMTS. It provides strong encryption protection against eavesdropping and unauthorized access.

Multiple choice

Which of the following is a potential security vulnerability in UMTS networks?

  1. Eavesdropping

  2. Man-in-the-middle attacks

  3. Denial-of-service attacks

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

UMTS networks are susceptible to various security vulnerabilities, including eavesdropping, man-in-the-middle attacks, denial-of-service attacks, and others. These vulnerabilities can compromise the confidentiality, integrity, and availability of network services.

Multiple choice

What is the role of the UMTS authentication center (AUC) in the authentication process?

  1. To store and manage user credentials

  2. To generate session keys for encryption and integrity protection

  3. To verify the authenticity of authentication requests

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The UMTS AUC is responsible for storing and managing user credentials, generating session keys for encryption and integrity protection, and verifying the authenticity of authentication requests.