COMPUTER SECURITY FUNDAMENTALS 2026
PRACTICE TEST SHEET FULL SOLUTIONS
CORRECT ANSWERS GUARANTEED PASS
◉ What is computer security according to NIST?
Answer: Measures and controls that ensure confidentiality, integrity,
and availability of information processed and stored by a computer.
◉ What are the three objectives of the CIA triad?
Answer: Confidentiality, Integrity, and Availability.
◉ What is confidentiality?
Answer: Protecting information from unauthorized disclosure.
◉ What is integrity?
Answer: Ensuring information is modified only in authorized ways.
◉ What is availability?
Answer: Ensuring systems and data are accessible to authorized
users when needed.
◉ What is authenticity?
,Answer: The property of being genuine and verifiable.
◉ What is accountability?
Answer: The ability to trace actions uniquely to an entity.
◉ What is a security risk assessment?
Answer: The process of identifying threats, vulnerabilities, impacts,
and likelihoods to determine risk levels.
◉ What are the four approaches to risk assessment?
Answer: Baseline approach, informal approach, detailed risk
analysis, and combined approach.
◉ What is the baseline approach?
Answer: Applying standard security controls uniformly across
systems.
◉ Advantage of the baseline approach?
Answer: Quick and inexpensive.
◉ Disadvantage of the baseline approach?
Answer: May not address unique risks.
, ◉ What is the informal approach?
Answer: A qualitative assessment based on experience and
judgment.
◉ Advantage of the informal approach?
Answer: Flexible and simple.
◉ Disadvantage of the informal approach?
Answer: Subjective and less accurate.
◉ What is detailed risk analysis?
Answer: A comprehensive evaluation of assets, threats,
vulnerabilities, likelihood, and consequences.
◉ Advantage of detailed risk analysis?
Answer: Very accurate and thorough.
◉ Disadvantage of detailed risk analysis?
Answer: Expensive and time-consuming.
◉ What is the combined approach?
PRACTICE TEST SHEET FULL SOLUTIONS
CORRECT ANSWERS GUARANTEED PASS
◉ What is computer security according to NIST?
Answer: Measures and controls that ensure confidentiality, integrity,
and availability of information processed and stored by a computer.
◉ What are the three objectives of the CIA triad?
Answer: Confidentiality, Integrity, and Availability.
◉ What is confidentiality?
Answer: Protecting information from unauthorized disclosure.
◉ What is integrity?
Answer: Ensuring information is modified only in authorized ways.
◉ What is availability?
Answer: Ensuring systems and data are accessible to authorized
users when needed.
◉ What is authenticity?
,Answer: The property of being genuine and verifiable.
◉ What is accountability?
Answer: The ability to trace actions uniquely to an entity.
◉ What is a security risk assessment?
Answer: The process of identifying threats, vulnerabilities, impacts,
and likelihoods to determine risk levels.
◉ What are the four approaches to risk assessment?
Answer: Baseline approach, informal approach, detailed risk
analysis, and combined approach.
◉ What is the baseline approach?
Answer: Applying standard security controls uniformly across
systems.
◉ Advantage of the baseline approach?
Answer: Quick and inexpensive.
◉ Disadvantage of the baseline approach?
Answer: May not address unique risks.
, ◉ What is the informal approach?
Answer: A qualitative assessment based on experience and
judgment.
◉ Advantage of the informal approach?
Answer: Flexible and simple.
◉ Disadvantage of the informal approach?
Answer: Subjective and less accurate.
◉ What is detailed risk analysis?
Answer: A comprehensive evaluation of assets, threats,
vulnerabilities, likelihood, and consequences.
◉ Advantage of detailed risk analysis?
Answer: Very accurate and thorough.
◉ Disadvantage of detailed risk analysis?
Answer: Expensive and time-consuming.
◉ What is the combined approach?