Computer Knowledge ยท General Awareness
Information Security
4,143 Questions
Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.
Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection
Information Security Questions
-
RandomNumberGenerator
-
ECDsa
-
ECDiffieHellmanCng
-
ECDsaCng
-
CngKey
D
Correct answer
Explanation
This .NET cryptographic class provides a CNG implementation of the ECDSA.
-
HMACMD5
-
HMAC
-
KeyedHashAlgorithm
-
MD5
-
ProtectedMemory
A
Correct answer
Explanation
This .NET cryptographic class computes a HMAC using the message digest 5 hash function.
-
Stateful inspection firewall
-
Packet filtering gateway
-
The certificate scheme
-
Non repudiation
-
Transport layer security
B
Correct answer
Explanation
This security technique blocks access from or to addresses, in the network.
-
ECDiffieHellmanPublicKey
-
ECDiffieHellmanCngPublicKey
-
ECDiffieHellmanCng
-
ECDsa
-
ProtectedData
B
Correct answer
Explanation
This .NET cryptographic class specifies an ECDH public key for use with the ECDiffieHellmanCng class.
-
Secure electronic transaction
-
Transport layer security
-
Message authentication code
-
Proc-Type
-
Stateful inspection firewall
A
Correct answer
Explanation
This security mechanism encompasses the dealing between the credit card holders, payment processing establishments, the public key certificate authorities, etc.
-
Web bug
-
Cookie
-
Web analytics
-
Device fingerprint
-
Web traffic
D
Correct answer
Explanation
A device fingerprint or machine fingerprint or browser fingerprint is information collected about a remote computing device.
-
These controls are used to upgrade the strength of the system by managing the vulnerabilities.
-
This control will signal the preventative or corrective controls to address the issue in case of an attack.
-
These controls reduce the effect of an attack.
-
These controls are used to prevent any purposeful attack on a cloud system.
-
These controls reduce the actual vulnerability of a system.
B
Correct answer
Explanation
This is true statement as Detective controls are used to detect the attacks, occurring to the system.
-
These controls prevent any attack in a cloud system by providing alerts to the system.
-
These controls are used to upgrade the strength of the system by managing the vulnerabilities.
-
These controls are used to recover the vulnerabilities of the system.
-
These controls do not reduce the actual vulnerability of a system.
-
Both (1) and (4).
E
Correct answer
Explanation
These are the correct statements.
-
It provides consistent security enforcement throughout the organization.
-
It provides greater alignment of security policies with business needs.
-
It provides Integrated global intelligence.
-
It also provides Cisco Security Intelligence Operations (SIO) service.
-
Both (3) and (4).
D
Correct answer
Explanation
Cisco SecureX framework does not provide that service.
-
It provide an interface to separate the networks.
-
DMZ is used to denied the traffic form the external network.
-
By using DMZ, the traffic from the internal network to the external network is authorized.
-
DMZ is used to protect internal servers.
-
All of the above
E
Correct answer
Explanation
All are the correct statements.
-
It exploits how easy an organization or government establishment is vulnerable to cyber-attacks.
-
Due to this factor, a computer network attack disrupts the integrity or authenticity of data.
-
It creates fear amongst individuals, groups, or societies.
-
This attacks created direct losses and gained negative publicity.
-
Both (1) and (2)
E
Correct answer
Explanation
These are the correct statements.
-
Firewall provides application data validity.
-
These are used to check the connectivity of the data packets.
-
Firewalls provide application data security running in remote environment.
-
All of the above
-
Both (2) and (3)
D
Correct answer
Explanation
These are correct statements about the firewall.
-
IPS is used to review the network traffic.
-
IPS does not check the web application traffic.
-
IPS protects from web server attacks to the web applications.
-
IPS provides more functionality than IDS (Intrusion Detection System).
-
Both (2) and (3)
C
Correct answer
Explanation
IPS can not prevent the web based attacks to secure web applications or servers.
-
To maintain the checklist of information about the networking environment.
-
Disable the unnecessary services and applications.
-
Implement the bogon block list.
-
All of the above
-
Both (1) and (3)
D
Correct answer
Explanation
All are the defending techniques against DOS attack.
-
This tools is used mainly for workstations to defend them from the attackers.
-
This tool configures proxies, turning off risky add-ons, and so on.
-
This tool centrally manage Web browser settings.
-
This tool is also used to secure the database.
-
Both (2) and (4)
D
Correct answer
Explanation
EMS tools is not used to secure database from the attackers. This tool is browser or client specific to provide security.