Computer Knowledge ยท General Awareness
Information Security
4,634 Questions
Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.
Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection
Information Security Questions
What is the significance of regular security updates for mobile devices?
-
To improve the device's performance
-
To fix bugs and glitches in the operating system
-
To add new features and functionalities
-
To patch security vulnerabilities
D
Correct answer
Explanation
Regular security updates are crucial for patching security vulnerabilities and protecting the device from potential threats.
Which of the following is a recommended practice for securing mobile devices when connecting to public Wi-Fi networks?
-
Use a virtual private network (VPN)
-
Disable the device's firewall
-
Connect to unsecured networks without a password
-
Share personal information over public Wi-Fi
A
Correct answer
Explanation
Using a VPN encrypts internet traffic, providing an added layer of security when connecting to public Wi-Fi networks.
Which of the following is a recommended practice for securing mobile devices against physical theft?
-
Leave the device unattended in public places
-
Use a weak lock screen password
-
Enable remote wipe capabilities
-
Keep the device in a secure location
D
Correct answer
Explanation
Keeping the device in a secure location, such as a locked bag or pocket, helps prevent physical theft.
Which of the following is a recommended practice for securing mobile devices against unauthorized access?
-
Use a strong password or passphrase
-
Disable the device's lock screen
-
Allow installation of apps from unknown sources
-
Connect to public Wi-Fi networks without a VPN
A
Correct answer
Explanation
Using a strong password or passphrase adds an extra layer of security to prevent unauthorized access to the device.
Which of the following is a recommended practice for securing mobile devices against phishing attacks?
-
Click on suspicious links in emails or text messages
-
Provide personal information on unverified websites
-
Enable two-factor authentication for online accounts
-
Install apps from unknown sources
C
Correct answer
Explanation
Enabling two-factor authentication adds an extra layer of security to online accounts, making it more difficult for attackers to gain access.
Which of the following is NOT a key phase in the Incident Response lifecycle?
-
Preparation and Prevention
-
Detection and Analysis
-
Containment and Eradication
-
Recovery and Lessons Learned
A
Correct answer
Explanation
Preparation and Prevention is not a phase in the Incident Response lifecycle. It is a proactive approach to minimize the risk of incidents and improve the organization's ability to respond effectively.
Which framework provides a comprehensive approach to Incident Response and Disaster Recovery?
-
NIST Cybersecurity Framework
-
ISO 27001/27002
-
PCI DSS
-
HIPAA
A
Correct answer
Explanation
The NIST Cybersecurity Framework is a comprehensive framework that provides guidance on how to manage cybersecurity risks, including Incident Response and Disaster Recovery.
Which of the following is a common type of cyber attack that involves encrypting files and demanding a ransom?
-
Phishing
-
Malware
-
Ransomware
-
DDoS
C
Correct answer
Explanation
Ransomware is a type of malware that encrypts files and demands a ransom payment to decrypt them.
Which of the following is a key component of a Disaster Recovery Plan?
-
Incident Response Plan
-
Business Impact Analysis
-
Data Backup and Recovery Plan
-
Employee Training
C
Correct answer
Explanation
A Data Backup and Recovery Plan is a key component of a Disaster Recovery Plan as it outlines the procedures for backing up and recovering data in the event of a disaster.
Which of the following is a common type of security control used to prevent unauthorized access to systems and data?
-
Firewall
-
Intrusion Detection System
-
Antivirus Software
-
Multi-Factor Authentication
D
Correct answer
Explanation
Multi-Factor Authentication is a common type of security control used to prevent unauthorized access to systems and data by requiring multiple forms of authentication.
Which of the following is a key component of an Incident Response Plan?
-
Communication Plan
-
Roles and Responsibilities
-
Incident Handling Procedures
-
Post-Incident Review
Correct answer
Explanation
All of the above options are key components of an Incident Response Plan.
Which of the following is a common type of cyber attack that involves exploiting vulnerabilities in software to gain unauthorized access to systems?
-
Phishing
-
Malware
-
Ransomware
-
Zero-Day Exploit
D
Correct answer
Explanation
Zero-Day Exploit is a type of cyber attack that involves exploiting vulnerabilities in software that are not yet known to the vendor or the public.
Which of the following is NOT a type of national security law?
-
Anti-terrorism laws
-
Espionage laws
-
Immigration laws
-
Cybersecurity laws
C
Correct answer
Explanation
Immigration laws are not typically considered to be national security laws, although they can be used to address national security concerns, such as preventing terrorists from entering the country.
Which of the following is NOT a type of national security threat?
-
Terrorism
-
Espionage
-
Cybersecurity
-
Climate change
D
Correct answer
Explanation
Climate change is not typically considered to be a national security threat, although it can have a negative impact on national security by causing instability and conflict.
Which of the following is NOT a type of national security risk?
-
Terrorism
-
Espionage
-
Cybersecurity
-
Economic instability
D
Correct answer
Explanation
Economic instability is not typically considered to be a national security risk, although it can have a negative impact on national security by causing instability and conflict.