FUNDAMENTALS OF INFORMATION
SECURITY QUIZLET BY BRIAN
MACFARLANE EXAM QUESTIONS
AND ANSWERS
Which9bcybersecurity9bterm9bis9bdefined9bas9bthe9bpotential9bfor9ban9battack9bon9ba9bresour
ce?
A9bImpact
B9bVulnerability
C9bRisk
D9bThreat9b-9bANSWERS--D
Which9bsecurity9btype9bdeliberately9bexposes9ba9bsystem's9bvulnerabilities9bor9bresource
s9bto9ban9battacker?
A9bIntrusion9bdetection
B9bFirewalls
C9bHoneypots
D9bIntrusion9bprevention9b-9bANSWERS--C
Which9btool9bcan9bbe9bused9bto9bmap9bdevices9bon9ba9bnetwork,9balong9bwith9btheir9bopera
ting9bsystem9btypes9band9bversions?
A9bPacket9bsniffer
B9bPacket9bfilter
C9bPort9bscanner
D9bStateful9bfirewall9b-9bANSWERS--C
Which9bweb9battack9bis9ba9bserver-side9battack?
A9bClickjacking
B9bCross-site9bscripting
C9bSQL9binjection
D9bCross-site9brequest9bforgery9b-9bANSWERS--C
An9borganization9bemploys9ba9bVPN9bto9bsafeguard9bits9binformation.9b
Which9bsecurity9bprinciple9bis9bprotected9bby9ba9bVPN?
A9bData9bin9bmotion
B9bData9bat9brest
C9bData9bin9buse
D9bData9bin9bstorage9b-9bANSWERS--A
,A9bmalicious9bhacker9bwas9bsuccessful9bin9ba9bdenial9bof9bservice9b(DoS)9battack9bagainst
9ban9binstitution's9bmail9bserver.9bFortunately,9bno9bdata9bwas9blost9bor9baltered9bwhile9bthe
9bserver9bwas9boffline.
9b
Which9btype9bof9battack9bis9bthis?
9b
A9bModification
B9bFabrication
C9bInterception
D9bInterruption9b-9bANSWERS--D
A9bcompany9bhas9bhad9bseveral9bsuccessful9bdenial9bof9bservice9b(DoS)9battacks9bon9bits9
bemail9bserver.
9b
Which9bsecurity9bprinciple9bis9bbeing9battacked?
A9bPossession
B9bIntegrity
C9bConfidentiality
D9bAvailability9b-9bANSWERS--D
A9bnew9bstart-
up9bcompany9bhas9bstarted9bworking9bon9ba9bsocial9bnetworking9bwebsite.9bThe9bcompan
y9bhas9bmoved9ball9bits9bsource9bcode9bto9ba9bcloud9bprovider9band9bwants9bto9bprotect9bthi
s9bsource9bcode9bfrom9bunauthorized9baccess.
9b
Which9bcyber9bdefense9bconcept9bshould9bthe9bstart-
up9bcompany9buse9bto9bmaintain9bthe9bconfidentiality9bof9bits9bsource9bcode?
9b
A9bAlarm9bsystems
B9bAccount9bpermissions
C9bAntivirus9bsoftware
D9bFile9bencryption9b-9bANSWERS--D
A9bcompany9bhas9ban9bannual9baudit9bof9binstalled9bsoftware9band9bdata9bstorage9bsyste
ms.9bDuring9bthe9baudit,9bthe9bauditor9basks9bhow9bthe9bcompany's9bmost9bcritical9bdata9bi
s9bused.9bThis9bdetermination9bhelps9bthe9bauditor9bensure9bthat9bthe9bproper9bdefense9b
mechanisms9bare9bin9bplace9bto9bprotect9bcritical9bdata.
9b
Which9bprinciple9bof9bthe9bParkerian9bhexad9bis9bthe9bauditor9baddressing?
A9bPossession
B9bIntegrity
C9bAuthenticity
D9bUtility9b-9bANSWERS--D
Which9bweb9battack9bis9bpossible9bdue9bto9ba9black9bof9binput9bvalidation?
9b
A9bExtraneous9bfiles
B9bClickjacking
C9bSQL9binjection
D9bCross-site9brequest9bforgery9b-9bANSWERS--C
,Which9bfile9baction9bimplements9bthe9bprinciple9bof9bconfidentiality9bfrom9bthe9bCIA9btriad?
9b
A9bCompression
B9bHash
C9bBackup
D9bEncryption9b-9bANSWERS--D
Which9bcyber9bdefense9bconcept9bsuggests9blimiting9bpermissions9bto9bonly9bwhat9bis9bne
cessary9bto9bperform9ba9bparticular9btask?
9b
A9bAuthentication
B9bAuthorization
C9bDefense9bin9bdepth
D9bPrinciple9bof9bleast9bprivilege9b-9bANSWERS--D
A9bcompany9binstitutes9ba9bnew9bpolicy9bthat9b"All9boffice9bcomputer9bmonitors9bmust9bfac
e9btoward9bemployees9band9bmust9bface9baway9bfrom9bdoorways.9bThe9bmonitor9bscreen
s9bmust9bnot9bbe9bvisible9bto9bpeople9bvisiting9bthe9boffice."
9b
Which9bprinciple9bof9bthe9bCIA9btriad9bis9bthis9bcompany9bapplying?
A9bAvailability
B9bConfidentiality
C9bUtility
D9bIntegrity9b-9bANSWERS--B
At9ba9bsmall9bcompany,9ban9bemployee9bmakes9ban9bunauthorized9bdata9balteration.
9b
Which9bcomponent9bof9bthe9bCIA9btriad9bhas9bbeen9bcompromised?
A9bConfidentiality
B9bAuthenticity
C9bIntegrity
D9bAvailability9b-9bANSWERS--C
An9borganization9bplans9bto9bencrypt9bdata9bin9btransit9bon9ba9bnetwork.
9b
Which9baspect9bof9bdata9bis9bthe9borganization9battempting9bto9bprotect?
A9bIntegrity
B9bPossession
C9bAvailability
D9bAuthenticity9b-9bANSWERS--A
Which9baspect9bof9bthe9bCIA9btriad9bis9bviolated9bby9ban9bunauthorized9bdatabase9brollbac
k9bor9bundo?
A9bAvailability
B9bIdentification
C9bIntegrity
D9bConfidentiality9b-9bANSWERS--C
, A9bcompany's9bwebsite9bhas9bsuffered9bseveral9bdenial9bof9bservice9b(DoS)9battacks9band
9bwishes9bto9bthwart9bfuture9battacks.
9b
Which9bsecurity9bprinciple9bis9bthe9bcompany9baddressing?
A9bAvailability
B9bAuthenticity
C9bConfidentiality
D9bPossession9b-9bANSWERS--A
An9borganization9bhas9ba9brequirement9bthat9ball9bdatabase9bservers9band9bfile9bservers9b
be9bconfigured9bto9bmaintain9boperations9bin9bthe9bpresence9bof9ba9bfailure.9b
9b
Which9bprinciple9bof9bthe9bCIA9btriad9bis9bthis9brequirement9bimplementing?
A9bUtility
B9bIntegrity
C9bAvailability
D9bConfidentiality9b-9bANSWERS--C
A9bcompany's9bIT9bpolicy9bmanual9bstates9bthat9b"All9bcompany9bcomputers,9bworkstation
s,9bapplication9bservers,9band9bmobile9bdevices9bmust9bhave9bcurrent9bversions9bof9bantivi
rus9bsoftware."
9b
Which9bprinciple9bor9bconcept9bof9bcybersecurity9bdoes9bthis9bpolicy9bstatement9bimpact?
A9bAccounting9bpolicy
B9bOperating9bsystem9bsecurity
C9bAccess9bcontrol9bpolicy
D9bPhysical9bsecurity9b-9bANSWERS--B
An9borganization's9bprocedures9bdocument9bstates9bthat9b"All9belectronic9bcommunicatio
ns9bshould9bbe9bencrypted9bduring9btransmission9bacross9bnetworks9busing9bencryption9b
standards9bspecified9bin9bthe9bdata9bencryption9bpolicy."
9b
Which9bsecurity9bprinciple9bis9bthis9bpolicy9baddressing?
A9bInterruption
B9bConfidentiality
C9bControl
D9bAvailability9b-9bANSWERS--B
A9bcompany's9bwebsite9bpolicy9bstates9bthat9b"To9bgain9baccess9bto9bthe9bcorporate9bweb
site,9beach9bemployee9bmust9bprovide9ba9bvalid9buser9bname9band9bpassword,9band9bthen
9banswer9bone9bof9bsix9bsecurity9bquestions9baccurately."
Which9btype9bof9bsecurity9bdoes9bthe9bpolicy9baddress?
A9bOperations
B9bPhysical
C9bHuman9belement
D9bApplication9b-9bANSWERS--A