Maryland Cybersecurity Analyst
Certification Exam Practice Questions
And Correct Answers (Verified Answers)
Plus Rationale 2026 Q&A| Instant
Download Pdf
1. In the context of cybersecurity governance, what is the primary
objective of the CIA triad?
A. Increasing system performance, reducing cost, and improving usability
B. Confidentiality, Integrity, and Availability of information
C. Cloud integration, Internet access, and automation
D. Compliance, Inspection, and Authorization
Answer: B
The CIA triad defines the foundational security objectives ensuring that
data remains confidential, accurate, and accessible when needed.
2. Which of the following best describes a phishing attack?
A. Physical theft of hardware devices
B. Unauthorized access through password cracking tools
C. Fraudulent communication designed to trick users into revealing sensitive
information
D. Malware installed through USB devices only
,Answer: C
Phishing relies on deceptive messages to manipulate individuals into
disclosing confidential data such as passwords or financial details.
3. What is the primary function of a firewall in network security?
A. Encrypt all stored data automatically
B. Monitor and control incoming and outgoing network traffic based on
security rules
C. Detect physical intrusions into server rooms
D. Create backups of organizational data
Answer: B
Firewalls enforce predefined rules to allow or block network traffic,
protecting systems from unauthorized access.
4. Which term describes malicious software designed to replicate and
spread independently?
A. Trojan
B. Worm
C. Spyware
D. Adware
Answer: B
A worm self-replicates and spreads across networks without needing to
attach to a host program.
5. What is the purpose of multi-factor authentication (MFA)?
A. To reduce network bandwidth usage
B. To require multiple forms of verification before granting access
C. To replace all passwords with biometric data only
D. To eliminate the need for encryption
,Answer: B
MFA strengthens security by requiring two or more verification methods
such as passwords and biometric factors.
6. What does a SIEM system primarily do?
A. Encrypt cloud storage automatically
B. Centralize and analyze security event logs
C. Replace firewalls in enterprise networks
D. Manage employee access permissions only
Answer: B
Security Information and Event Management systems aggregate and
analyze logs to detect threats and anomalies.
7. Which attack involves overwhelming a system with excessive traffic to
make it unavailable?
A. SQL Injection
B. Man-in-the-Middle
C. Denial of Service (DoS)
D. Phishing
Answer: C
A DoS attack floods a system with traffic, preventing legitimate users from
accessing services.
8. What is encryption primarily used for?
A. Increasing processing speed
B. Converting data into unreadable form to protect confidentiality
C. Deleting old data automatically
D. Monitoring user behavior
, Answer: B
Encryption transforms readable data into coded form that can only be
accessed with the correct decryption key.
9. Which of the following is an example of social engineering?
A. Installing antivirus software
B. Trickling users into revealing passwords through manipulation
C. Updating firewall rules
D. Encrypting hard drives
Answer: B
Social engineering exploits human psychology rather than technical
vulnerabilities to gain unauthorized access.
10. What is the primary purpose of an intrusion detection system
(IDS)?
A. Block all incoming traffic
B. Detect and alert on suspicious network activity
C. Encrypt network packets
D. Assign IP addresses automatically
Answer: B
An IDS monitors network traffic and generates alerts when suspicious or
malicious activity is detected.
11. Which of the following best defines a vulnerability in
cybersecurity?
A. A secure encryption algorithm
B. A weakness that can be exploited by threats
C. A firewall configuration rule
D. A backup storage system
Certification Exam Practice Questions
And Correct Answers (Verified Answers)
Plus Rationale 2026 Q&A| Instant
Download Pdf
1. In the context of cybersecurity governance, what is the primary
objective of the CIA triad?
A. Increasing system performance, reducing cost, and improving usability
B. Confidentiality, Integrity, and Availability of information
C. Cloud integration, Internet access, and automation
D. Compliance, Inspection, and Authorization
Answer: B
The CIA triad defines the foundational security objectives ensuring that
data remains confidential, accurate, and accessible when needed.
2. Which of the following best describes a phishing attack?
A. Physical theft of hardware devices
B. Unauthorized access through password cracking tools
C. Fraudulent communication designed to trick users into revealing sensitive
information
D. Malware installed through USB devices only
,Answer: C
Phishing relies on deceptive messages to manipulate individuals into
disclosing confidential data such as passwords or financial details.
3. What is the primary function of a firewall in network security?
A. Encrypt all stored data automatically
B. Monitor and control incoming and outgoing network traffic based on
security rules
C. Detect physical intrusions into server rooms
D. Create backups of organizational data
Answer: B
Firewalls enforce predefined rules to allow or block network traffic,
protecting systems from unauthorized access.
4. Which term describes malicious software designed to replicate and
spread independently?
A. Trojan
B. Worm
C. Spyware
D. Adware
Answer: B
A worm self-replicates and spreads across networks without needing to
attach to a host program.
5. What is the purpose of multi-factor authentication (MFA)?
A. To reduce network bandwidth usage
B. To require multiple forms of verification before granting access
C. To replace all passwords with biometric data only
D. To eliminate the need for encryption
,Answer: B
MFA strengthens security by requiring two or more verification methods
such as passwords and biometric factors.
6. What does a SIEM system primarily do?
A. Encrypt cloud storage automatically
B. Centralize and analyze security event logs
C. Replace firewalls in enterprise networks
D. Manage employee access permissions only
Answer: B
Security Information and Event Management systems aggregate and
analyze logs to detect threats and anomalies.
7. Which attack involves overwhelming a system with excessive traffic to
make it unavailable?
A. SQL Injection
B. Man-in-the-Middle
C. Denial of Service (DoS)
D. Phishing
Answer: C
A DoS attack floods a system with traffic, preventing legitimate users from
accessing services.
8. What is encryption primarily used for?
A. Increasing processing speed
B. Converting data into unreadable form to protect confidentiality
C. Deleting old data automatically
D. Monitoring user behavior
, Answer: B
Encryption transforms readable data into coded form that can only be
accessed with the correct decryption key.
9. Which of the following is an example of social engineering?
A. Installing antivirus software
B. Trickling users into revealing passwords through manipulation
C. Updating firewall rules
D. Encrypting hard drives
Answer: B
Social engineering exploits human psychology rather than technical
vulnerabilities to gain unauthorized access.
10. What is the primary purpose of an intrusion detection system
(IDS)?
A. Block all incoming traffic
B. Detect and alert on suspicious network activity
C. Encrypt network packets
D. Assign IP addresses automatically
Answer: B
An IDS monitors network traffic and generates alerts when suspicious or
malicious activity is detected.
11. Which of the following best defines a vulnerability in
cybersecurity?
A. A secure encryption algorithm
B. A weakness that can be exploited by threats
C. A firewall configuration rule
D. A backup storage system