• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 4 out of 38 pages
Exam (elaborations)

Fundamentals of Information Systems Security Chapter 1 Assessment Study Guide 2026/2027 | Cybersecurity Fundamentals | Practice Questions and Answers

Document preview thumbnail
Preview 4 out of 38 pages

Fundamentals of Information Systems Security Chapter 1 Assessment Study Guide 2026/2027 | Cybersecurity Fundamentals | Practice Questions and Answers Description: This comprehensive study guide contains 200 multiple-choice questions (MCQs) covering Chapter 1 of Fundamentals of Information Systems Security. Topics include the CIA Triad, security frameworks, risk management, threat actors, attack types, cryptography basics, access control, and security policies. Keywords: Information Systems Security, CIA Triad, Risk Management, Threats, Vulnerabilities, Access Control, Cryptography, Security Policies, Compliance, Incident Response. 1. What does the CIA Triad stand for in information security? A) Confidentiality, Integrity, Availability B) Control, Intelligence, Authentication C) Confidentiality, Identity, Authorization D) Compliance, Integrity, Auditing 2. Which principle ensures data is not disclosed to unauthorized individuals? A) Integrity B) Confidentiality C) Availability D) Non-repudiation 3. Which principle ensures data remains accurate and unaltered? A) Confidentiality B) Availability C) Integrity D) Authentication 4. Which principle ensures authorized users can access resources when needed? A) Confidentiality B) Integrity C) Availability D) Privacy 5. What is a vulnerability? A) A weakness that can be exploited B) A potential cause of harm C) An implemented control D) A security policy 6. What is a threat? A) A weakness in a system B) Any potential danger to an asset C) A security control D) A compliance requirement 7. What is risk in information security? A) The likelihood and impact of a threat exploiting a vulnerability B) The cost of security tools C) The number of users in a system D) The speed of data transmission 8. What is the primary goal of information security? A) To eliminate all risks B) To protect information assets C) To increase network speed D) To reduce hardware costs 9. Which of the following is a physical control? A) Encryption B) Firewall C) Locked doors D) Password policy 10. Which of the following is a technical control? A) Security guards B) Encryption C) Background checks D) Security awareness training 11. Which of the following is an administrative control? A) Firewalls B) Security policies C) Biometric locks D) Intrusion detection systems 12. What is the purpose of a security policy? A) To define rules and guidelines for protecting assets B) To increase network bandwidth C) To replace technical controls D) To eliminate the need for training 13. What is risk management? A) The process of identifying, assessing, and mitigating risks B) The process of installing antivirus software C) The process of hiring security guards D) The process of encrypting all data 14. What is risk avoidance? A) Accepting the risk B) Eliminating the activity that causes the risk C) Transferring the risk to a third party D) Reducing the risk through controls 15. What is risk transfer? A) Accepting the risk B) Eliminating the risk C) Shifting the risk to another party (e.g., insurance) D) Ignoring the risk 16. What is risk acceptance? A) Acknowledging the risk and taking no action B) Eliminating the risk C) Transferring the risk D) Mitigating the risk

Content preview

Fundamentals of Information Systems
Security
Chapter 1 Assessment Study Guide
2026/2027 | Cybersecurity Fundamentals
| Practice Questions and Answers
Description: This comprehensive study guide contains 200 multiple-choice questions
(MCQs) covering Chapter 1 of Fundamentals of Information Systems Security. Topics
include the CIA Triad, security frameworks, risk management, threat actors, attack types,
cryptography basics, access control, and security policies.

Keywords: Information Systems Security, CIA Triad, Risk Management, Threats,
Vulnerabilities, Access Control, Cryptography, Security Policies, Compliance, Incident
Response.




1. What does the CIA Triad stand for in information security?
A) Confidentiality, Integrity, Availability ✅
B) Control, Intelligence, Authentication
C) Confidentiality, Identity, Authorization
D) Compliance, Integrity, Auditing

2. Which principle ensures data is not disclosed to unauthorized individuals?
A) Integrity
B) Confidentiality ✅
C) Availability
D) Non-repudiation

,3. Which principle ensures data remains accurate and unaltered?
A) Confidentiality
B) Availability
C) Integrity ✅
D) Authentication

4. Which principle ensures authorized users can access resources when needed?
A) Confidentiality
B) Integrity
C) Availability ✅
D) Privacy

5. What is a vulnerability?
A) A weakness that can be exploited ✅
B) A potential cause of harm
C) An implemented control
D) A security policy

6. What is a threat?
A) A weakness in a system
B) Any potential danger to an asset ✅
C) A security control
D) A compliance requirement

7. What is risk in information security?
A) The likelihood and impact of a threat exploiting a vulnerability ✅
B) The cost of security tools
C) The number of users in a system
D) The speed of data transmission

8. What is the primary goal of information security?
A) To eliminate all risks
B) To protect information assets ✅

,C) To increase network speed
D) To reduce hardware costs

9. Which of the following is a physical control?
A) Encryption
B) Firewall
C) Locked doors ✅
D) Password policy

10. Which of the following is a technical control?
A) Security guards
B) Encryption ✅
C) Background checks
D) Security awareness training

11. Which of the following is an administrative control?
A) Firewalls
B) Security policies ✅
C) Biometric locks
D) Intrusion detection systems

12. What is the purpose of a security policy?
A) To define rules and guidelines for protecting assets ✅
B) To increase network bandwidth
C) To replace technical controls
D) To eliminate the need for training

13. What is risk management?
A) The process of identifying, assessing, and mitigating risks ✅
B) The process of installing antivirus software
C) The process of hiring security guards
D) The process of encrypting all data

, 14. What is risk avoidance?
A) Accepting the risk
B) Eliminating the activity that causes the risk ✅
C) Transferring the risk to a third party
D) Reducing the risk through controls

15. What is risk transfer?
A) Accepting the risk
B) Eliminating the risk
C) Shifting the risk to another party (e.g., insurance) ✅
D) Ignoring the risk

16. What is risk acceptance?
A) Acknowledging the risk and taking no action ✅
B) Eliminating the risk
C) Transferring the risk
D) Mitigating the risk

17. What is risk mitigation?
A) Accepting the risk
B) Reducing the risk through controls ✅
C) Transferring the risk
D) Avoiding the risk

18. What is a threat actor?
A) A security control
B) An individual or group that poses a threat ✅
C) A vulnerability
D) A policy

19. Which type of threat actor is motivated by financial gain?
A) Hacktivist
B) Cybercriminal ✅

Document information

Uploaded on
September 21, 2026
Number of pages
38
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$11.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Sold
7
Followers
0
Items
957
Last sold
2 weeks ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions