ThatQuiz Test Library Take this test now
IASEC1
Contributed by: Vergonio
  • 1. The quality or state of being secure that is to be free from danger.
A) Information security
B) Information assurance
C) Cybersecurity
D) Security
  • 2. A construction block in DIKW pyramid that has been "cleaned of errors and further processed so that it is easier to measure, visualize, and analyze for a specific purpose.
A) Data
B) Wisdom
C) Information
D) Knowledge
  • 3. Information Security is basically the practice of preventing unauthorized access, use, disclosure, disruption, modification, inspection, recording or destruction of information.
A) Information Assurance
B) Cybersecurity
C) Data Security
D) Information Security
  • 4. To safeguard the person or group of people who have been granted access to the organization and its operations is known as
A) Operations security
B) Communication security
C) Physical security
D) Personal security
  • 5. A web browser pop-up appears on your personal computer offering an "anti-spyware product" What's your best course of action?
A) Close the window. If want spyware protection software, better to get it from a provider with extensive review and download on a reputed site such as download.com.
B) Click on the link and provide your credit card information as the more protection prompted to install the better.
C) Click on the link and provide your personal information
D) Click on the link in the ad to learn more about the company its products before you provide.
  • 6. Peter is working at a real estate business this summer. He's using the company's computer system to enter client addresses. Marzan is working at what level of the DIKW hierarchy?
A) Data
B) Knowledge
C) Wisdom
D) Information
  • 7. These attackers intend to do damage to your system or try to obtain the information from tha system which can be used to attain financial gain.
A) Malware
B) Intruders
C) hackers
D) Virus
  • 8. The highest level of the DIKW Pyramid is _______
A) Information
B) Wisdom
C) Data
D) Knowledge
  • 9. _______ is a group of people working together to achieve the same goal or objectives.
A) Industry
B) Enterprise
C) Organization
D) Company
  • 10. is the information you have learned, while wisdom is the ability to use that knowledge in a profound way.
A) Wisdom
B) Knowledge
C) Information
D) Data
  • 11. The ________ hierarchy, connects data, information, knowledge, and wisdom in four layers
A) GIGO
B) DIKW
C) IPO
D) Sequential access
  • 12. _________ are the news who is only interested in penetrating into your system. They do not cause any harm to your system they only get satisfied by getting access to your system.
A) Trojan horse
B) Hacker
C) Virus
D) Malware
  • 13. Mary is analyzing the sales report figures as a new sales manager to determine the top three salespeople for the year. Mary is working at what level of the DIKW hierarchy
A) Information
B) Wisdom
C) Knowledge
D) Data
  • 14. __________ is the protection of assets from harm.
A) Information security
B) Cybersecurity
C) Data security
D) Security
  • 15. When data is compiled or used to better understand or do anything, it is referred to as ___________
A) Wisdom
B) Information
C) Data
D) Knowledge
  • 16. Assets within the organization includes: machine, facilities, data, information and __________
A) People
B) Security
C) Knowledge
D) Wisdom
  • 17. We turn data into information providing _________ into it.
A) Security
B) Knowledge
C) Wisdom
D) Context
  • 18. Information is __________ when it is free of faults or mistakes and provides the value that the end-user expects.
A) true
B) Confidential
C) Reliable
D) accurate
  • 19. ________ is the quality or state of being exposed to the possibility of being attackod or harmed, either physically or emotionally.
A) vulnerability
B) integrity
C) confidentiality
D) availability
  • 20. The securing of computer systems and data against harm, theft, and unauthorized access is

    known as ________
A) Information security
B) vulnerability
C) Computer Security
D) Data security
  • 21. ________ is a concept that allows you to recognize patterns and the elements that drive them. Ultimately, it allows future events to be predicted.
A) Wisdom
B) Knowledge
C) Data
D) Information
  • 22. Information must be available for use by those who have been granted access to it, which is a feature of IΑ.
A) Integrity
B) Availability
C) Integrity
D) Authenticity
  • 23. __________ is knowledge applied in action.
A) Wisdom
B) Data
C) Information
D) Knowledge
  • 24. _________ defines and applies a collection of policies, standards, methodologies, services, and mechanism to maintain mission integrity with respect to people, process, technology, information and supporting infrastructure.
A) Information and Information System
B) Information security
C) Security
D) Information Assurance
  • 25. __________, means to safeguard network components, connections, and data.
A) network security
B) confidentiality
C) availability
D) security
  • 26. An _________ is where an unauthorized individual gains access to confidential or private information.
A) Fabrication
B) interception
C) Modification
D) interruption
  • 27. Unintentional tampering, such as human errors or data loss as a result of a system failure, must also he protected by effective integrity countermeasures.
A) False
B) True
  • 28. __________ is defined set of measures that ensure the availability, integrity. authenticity, secrecy, and nonrepudiation of information and information systems,
A) information
B) Information assurance
C) information security
D) computer security
  • 29. Hardware failures, unanticipated software downtime, and network bandwidth challenges are just a few of the most common non-malicious threats to availability.
A) False
B) True
  • 30. What does multi-factor authentication (MFA) require?
A) Only a password
B) A single security question
C) Multiple verification methods, such as biometrics or one-time codes
D) A firewall
  • 31. What is the primary goal of information security?
A) Improve network speed
B) Ensure system functionality
C) Protect data confidentiality, integrity, and availability
D) Prevent unauthorized system access
  • 32. What is a common method used to assess risks within an organization?
A) Ignoring security incidents
B) Risk assessment framework
C) Random employee surveys
D) Firewall configuration
  • 33. What does "CIA Triad" stand for in cybersecurity?
A) Cryptographic Integration Algorithms
B) Computer Infrastructure Analysis
C) Cyber Intelligence Agency
D) Confidentiality, Integrity, Availability
  • 34. What does a Disaster Recovery Plan (DRP) focus on?
A) Employee satisfaction surveys
B) Increasing revenue
C) Restoring IT systems and data after a disruption
D) Maintaining customer engagement
  • 35. What is the role of a risk mitigation plan?
A) Help organizations reduce the impact of security risks
B) Prevent all security threats permanently
C) Allow employees unrestricted access to data
D) Ignore vulnerabilities in the system
  • 36. Which security attack involves an attacker intercepting communication between two parties?
A) DDoS Attack
B) Man-in-the-Middle attack
C) SQL Injection
D) Ransomware
  • 37. What is the Zero Trust security model?
A) Provide unrestricted access to databases
B) Disable all security features
C) Always verify and authenticate before granting accessB. Always verify and authenticate before granting access
D) Trust all internal users automatically
  • 38. What is the purpose of an Intrusion Detection System (IDS)?
A) Detect potential security breaches
B) Encrypt sensitive data
C) Speed up network traffic
D) Prevent unauthorized access
  • 39. Which type of malware locks user files and demands payment for access?
A) Worm
B) Spyware
C) Trojan Horse
D) Ransomware
  • 40. Which security principle restricts users to only the permissions necessary for their roles?
A) Multi-factor authentication
B) Denial-of-service
C) Open access
D) Least privilege
  • 41. How can a company ensure its Business Continuity Plan remains effective?
A) Regularly review and update the plan
B) Reduce security measures
C) Delay testing procedures
D) Ignore it until an emergency occurs
  • 42. Which type of malware encrypts files and demands payment for their release?
A) Spyware
B) Trojan Horse
C) Worm
D) Ransomware
  • 43. What is the first step in developing a Business Continuity Plan?
A) Purchasing cybersecurity software
B) Expanding business operations
C) Hiring more employees
D) Conducting a business impact analysis (BIA)
  • 44. Which strategy helps businesses remain operational during a natural disaster?
A) Using only local backups
B) Relocating all servers off-site or to the cloud
C) Ignoring customer inquiries
D) Relying on social media advertising
  • 45. What is the main goal of a Business Continuity Plan (BCP)?
A) Reduce hiring costs
B) Increase company profits
C) Improve advertising strategies
D) Ensure business operations continue during disruptions
  • 46. What is the main purpose of cybersecurity?
A) Protect digital systems from unauthorized access and threats
B) Improve software speed
C) Minimize hardware costs
D) Increase internet speed
  • 47. What is the main purpose of cybersecurity?
A) Protect digital systems from unauthorized access and threats
B) Increase internet speed
C) Improve software speed
D) Minimize hardware costs
  • 48. What is the term for an individual inside an organization who intentionally leaks sensitive information or causes security breaches?
A) Firewall bypasser
B) System administrator
C) External hacker
D) Insider threat
  • 49. What is the main purpose of penetration testing in cybersecurity?
A) To crash an organization's system
B) To identify weaknesses by simulating cyberattacks
C) To slow down network connections
D) To delete unnecessary files
  • 50. Which security measure helps prevent brute-force attacks on passwords?
A) Limiting login attempts
B) Using simple passwords
C) Disabling firewalls
D) Allowing unlimited retries
  • 51. What type of cyberattack uses fake emails to trick users into revealing sensitive information?
A) SQL Injection
B) Denial-of-Service(DoS)
C) Phishing
D) Malware
  • 52. Which event would require a company to activate its Business Continuity Plan?
A) Routine software updates
B) Office relocation
C) Cyberattack, natural disaster, or major equipment failure
D) Annual employee training
  • 53. Why is business impact analysis (BIA) critical in business continuity planning?
A) It eliminates all business risks
B) It focuses only on marketing strategies
C) It prevents all operational failures
D) It helps organizations understand the potential consequences of disruptions
  • 54. What is a common method used in phishing attacks?
A) Blocking all incoming network traffic
B) Sending deceptive emails to trick users
C) Encrypting all system files
D) Exploiting software vulnerabilities
  • 55. Who is responsible for executing a Business Continuity Plan during an emergency?
A) External consultants
B) Only the CEO
C) Random employees
D) The designated business continuity team and stakeholders
  • 56. What is social engineering in cybersecurity?
A) Hacking servers using malware
B) Conducting network vulnerability tests
C) Strengthening security with encryption
D) Manipulating individuals to reveal confidential information
  • 57. Which cybersecurity principle helps reduce risk by restricting system access based on user roles?
A) Least Privilege
B) Firewal Bypass
C) No Authentication
D) Open Access
  • 58. Which type of attack floods a network or system to overload resources?
A) Man-in-the-middle
B) Denial-of-Service (DoS)
C) Phishing
D) SQL Injection
  • 59. Which security principle ensures data remains unchanged during transit or storage?
A) Confidentiality
B) Authentication
C) Availability
D) Integrity
  • 60. What is the primary function of a Virtual Private Network (VPN)?
A) Improve internet speed
B) Block ads
C) Encrypt internet connections for secure browsing
D) Prevent phishing attacks
  • 61. What is the main difference between risk and vulnerability?
A) Risk is always external, while vulnerability is always internal
B) Vulnerability deals with financial losses, while risk only affects IT systems
C) Risk refers to potential threats, while vulnerability is a weakness that can be exploited
D) Risk and vulnerability mean the same thing
  • 62. How can organizations reduce human-related security vulnerabilities?
A) Avoid using passwords
B) Provide regular cybersecurity awareness training
C) Ignore employee cybersecurity habits
D) Rely only on antivirus software
  • 63. Which security principle requires users to only have the necessary access to perform their tasks?
A) Network segmentation
B) Open Access
C) Multi-factor authentication
D) Network segmentation
  • 64. What is the primary role of antivirus software?
A) Speed up internet browsing
B) Detect and remove malware
C) Monitor online activity
D) Speed up internet browsing
  • 65. What is a common defense against brute-force attacks?
A) Disabling firewalls
B) Weak passwords
C) Limiting login attempts
D) Keeping software outdated
  • 66. Which factor increases an organization's security risk?
A) Encrypted data storage
B) Regular employee cybersecurity training
C) Outdated software and weak passwords
D) Strong authentication measures
  • 67. What does HTTPS in a web address indicate?
A) A government-authorized website
B) A local network connection
C) A secure, encrypted data transmission
D) A faster connection speed
  • 68. What is the purpose of a firewall in network security?
A) Detect viruses
B) Block unauthorized access
C) Enhance internet speed
D) Encrypt data files
  • 69. What does multi-factor authentication (MFA) require?
A) A firewall setup
B) Multiple authentication factors, such as biometrics and codes
C) Only a username
D) Password only
  • 70. Which cybersecurity practice involves testing a system for vulnerabilities before an attack occurs?
A) Social Engineering
B) Ethical hacking
C) Malware analysis
D) Phishing
  • 71. How can users protect against cyber threats?
A) Ignore security updates
B) Use strong passwords and update software regularly
C) Disable antivirus protection
D) Click on unknown email links
  • 72. Which essential component should a Business Continuity Plan include?
A) Company logo designs
B) Daily employee schedules
C) Disaster recovery procedures
D) Marketing strategies
  • 73. What is the main function of a firewall?
A) Enhance browsing speed
B) Detect hardware failures
C) Prevent unauthorized access to a network
D) Create backup copies of data
  • 74. What is the best way to mitigate security vulnerabilities?
A) Perform regular security updates and patches
B) Ignore small risks
C) Use simple and easy-to-guess passwords
D) Avoid monitoring user activities
Created with That Quiz — a math test site for students of all grade levels.