• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 2 out of 14 pages
Exam (elaborations)

ISSC 451 Week 4 Quiz – Information Systems Security Study Guide and Practice Questions (2026)

Document preview thumbnail
Preview 2 out of 14 pages

This document contains study material and practice questions for the ISSC 451 Week 4 Quiz, covering key concepts in information systems security and cybersecurity. Topics include network security, authentication and authorization, access control models, cryptography fundamentals, threat detection, vulnerability management, security policies, risk assessment, and defensive security practices. It is designed to help students prepare for weekly quizzes and strengthen their understanding of core cybersecurity principles. The material includes review questions and quiz-focused content aligned with ISSC 451 course learning objectives and commonly assessed information security concepts. It is useful for self-study, quiz preparation, and reinforcing the technical knowledge, analytical thinking, and security best practices required for protecting information systems.

Content preview

ISSC 451 Week 4 Quiz — 2026 Curriculum
Total Questions: 25 | Time Recommended: 45 minutes

SECTION A: MULTIPLE CHOICE (Questions 1–20)

Difficulty Tier 1: Foundational Recall & Terminology (Questions 1–10)

Q1: Which firewall type inspects entire packets and maintains connection state in a dynamic
table to determine whether traffic is part of an established, legitimate session?

A) Packet-filtering firewall

B) Stateful inspection firewall

C) Circuit-level proxy firewall

D) Application-layer proxy firewall

Answer: B

Explanation: A stateful inspection firewall tracks the state of active connections and makes
decisions based on the context of traffic flows, not just static rules. It maintains a state table
to remember legitimate outgoing requests and allows only corresponding return traffic.

Q2: What is the primary security purpose of a Demilitarized Zone (DMZ) in network
architecture?

A) To encrypt all internal traffic using IPsec

B) To isolate public-facing servers from the internal trusted network

C) To replace the need for a firewall entirely

D) To provide wireless guest access without authentication

Answer: B

Explanation: A DMZ is a buffer subnet that hosts public-facing services (web servers, mail
servers, DNS) between the untrusted internet and the trusted internal network. If a DMZ
server is compromised, the attacker still faces the inner firewall protecting critical internal
assets.

Q3: Which wireless security protocol uses the Advanced Encryption Standard (AES) with a
128-bit key and introduces Simultaneous Authentication of Equals (SAE) to replace the
vulnerable four-way handshake?

A) WEP

B) WPA

, C) WPA2

D) WPA3

Answer: D

Explanation: WPA3, finalized in 2018 and now the recommended standard, uses AES-128-
GCMP and SAE (also known as Dragonfly handshake) to protect against offline dictionary
attacks and provides forward secrecy, even if the network password is compromised later.

Q4: In an Intrusion Detection System (IDS), what is the key difference between signature-
based detection and anomaly-based detection?

A) Signature-based requires machine learning; anomaly-based does not

B) Signature-based detects known attack patterns; anomaly-based detects deviations from
normal baselines

C) Signature-based only works on host systems; anomaly-based only works on networks

D) Signature-based is slower but catches zero-days; anomaly-based is faster but misses
known attacks

Answer: B

Explanation: Signature-based IDS compares traffic against a database of known attack
signatures (high accuracy for known threats, misses zero-days). Anomaly-based IDS first
establishes a baseline of normal behavior, then flags deviations (can catch unknown attacks
but may generate false positives).

Q5: Which VPN protocol operates at Layer 3 of the OSI model and provides both
authentication and encryption through the Authentication Header (AH) and Encapsulating
Security Payload (ESP) protocols?

A) SSL VPN

B) TLS VPN

C) IPsec

D) PPTP

Answer: C

Explanation: IPsec is a suite of protocols operating at the network layer (Layer 3) that
secures IP communications. AH provides connectionless integrity and data origin
authentication, while ESP provides confidentiality, integrity, and anti-replay protection.

Q6: What is the primary security benefit of Network Address Translation (NAT) in a typical
enterprise environment?

Document information

Uploaded on
July 6, 2026
Number of pages
14
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$16.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
ExamAceStuvia
3.7
(12)
Sold
60
Followers
0
Items
1260
Last sold
1 week ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions