2026 Real Exam Questions with Verified Correct Answers
1. De�ne the con�- Our ability to protect data from those who are not authorized to view it. (Hiding
dentiality in the atm pin, covering comp screen, keep track of devices)
CIA triad.
2. De�ne integrity The ability to prevent people from changing your data and the ability to reverse
in the CIA triad. unwanted changes. (Access control, read and write permissions, info correct)
3. De�ne the avail- Our data needs to be accessible when we need it.(because of power loss and
ability in the CIA such)
triad.
4. De�ne informa- The protection of information and information systems from unauthorized access,
tion security. use, disclosure, disruption, modi�cation, or destruction in order to provide con-
�dentiality, integrity, and availability.
5. De�ne the Park- The Parkerian Hexad includes con�dentiality, integrity, and availability from the
erian Hexad and CIA triad. It also includes possession (or control), authenticity, and utility.
its principles.
6. Authenticity Whether the data in question comes from who or where it says it comes from (i.e.
did this person actually send this email?)
7. Con�dentiality is Interception (eaves dropping)
a ected by what
type of attack?
8. Interruption (assets are unusable), modi�cation (tampering with an asset), fab-
rication (generating false data)
, Integrity is a ect-
ed by what type
of attacks?
Authenticity is af- Interruption (assets are unusable), modi�cation (tampering with an asset), fab-
9.
fected by what rication (generating false data)
type of attacks?
10. Utility How useful the data is to you (can be a spectrum, not just yes or no)
11. Possession Do you physically have the data in question? Used to describe the scope of a loss
12. Identify the four interception, interruption, modi�cation, and fabrication
types of attacks
13. Interception at- Make your assets unusable or unavailable
tacks
14. Interruption at- cause assets to become unusable or unavailable for our use, on a temporary or
tacks permanent basis
15. Modi�cation at- Tampering with an asset
tacks
16. Fabrication at- Generating data, process, and communications
tacks
17. De�ne the risk 1. Identify assets
management 2. Identify threats
process(car) 3. Assess vulnerabilities
4. Assess risks
5. Mitigate risks