1. What is the primary function of a security audit?
A. To assess the effectiveness of security policies and controls
B. To perform regular penetration testing
C. To monitor user activities in real time
D. To detect network-based attacks
Answer: A) To assess the effectiveness of security policies and controls
Rationale: A security audit evaluates an organization's security policies,
procedures, and controls to ensure they are effective and compliant
with industry standards and regulations
2. Which of the following tools is commonly used for continuous
monitoring of security events and logs?
A. Antivirus software
B. Security Information and Event Management (SIEM)
C. Network Intrusion Prevention System (IPS)
D. Web Application Firewall (WAF)
Answer: B) Security Information and Event Management (SIEM)
Rationale: SIEM systems are used for continuous monitoring and
analysis of security events, providing real-time alerts and insights to
help identify potential security threats.
,3. What is the primary focus of a Business Continuity Plan (BCP)?
A. To monitor the effectiveness of security policies
B. To ensure essential business operations can continue during or after
a disaster
C. To prevent malware infections
D. To audit user access privileges
Answer: B) To ensure essential business operations can continue
during or after a disaster
Rationale: A Business Continuity Plan ensures that an organization can
maintain critical business operations even in the event of a disaster or
disruptive incident.
4. In security operations, what is the primary function of a firewall?
A. To provide secure access to applications
B. To block unauthorized access to or from a network
C. To monitor network traffic for malware
D. To encrypt data in transit
Answer: B) To block unauthorized access to or from a network
Rationale: A firewall is a network security device designed to monitor
and control incoming and outgoing network traffic based on
predetermined security rules, thus blocking unauthorized access.
, 5. Which of the following is a key aspect of security awareness training
for employees?
A. Ensuring all employees are granted administrative access
B. Teaching employees how to identify phishing emails
C. Disabling all antivirus software on user systems
D. Allowing unrestricted access to external websites
Answer: B) Teaching employees how to identify phishing emails
Rationale: Security awareness training educates employees on how to
recognize common threats, such as phishing, and encourages safe
practices to reduce the risk of a security breach.
6. What is the main purpose of conducting a business impact analysis
(BIA)?
A. To assess the cost of cybersecurity tools and technologies
B. To identify the potential impact of a disaster on critical business
functions
C. To monitor network traffic for vulnerabilities
D. To test incident response procedures
Answer: B) To identify the potential impact of a disaster on critical
business functions
Rationale: A BIA helps organizations identify and prioritize business
functions, assess the potential impact of disruptions, and develop
strategies for maintaining essential operations during and after a
disaster.
A. To assess the effectiveness of security policies and controls
B. To perform regular penetration testing
C. To monitor user activities in real time
D. To detect network-based attacks
Answer: A) To assess the effectiveness of security policies and controls
Rationale: A security audit evaluates an organization's security policies,
procedures, and controls to ensure they are effective and compliant
with industry standards and regulations
2. Which of the following tools is commonly used for continuous
monitoring of security events and logs?
A. Antivirus software
B. Security Information and Event Management (SIEM)
C. Network Intrusion Prevention System (IPS)
D. Web Application Firewall (WAF)
Answer: B) Security Information and Event Management (SIEM)
Rationale: SIEM systems are used for continuous monitoring and
analysis of security events, providing real-time alerts and insights to
help identify potential security threats.
,3. What is the primary focus of a Business Continuity Plan (BCP)?
A. To monitor the effectiveness of security policies
B. To ensure essential business operations can continue during or after
a disaster
C. To prevent malware infections
D. To audit user access privileges
Answer: B) To ensure essential business operations can continue
during or after a disaster
Rationale: A Business Continuity Plan ensures that an organization can
maintain critical business operations even in the event of a disaster or
disruptive incident.
4. In security operations, what is the primary function of a firewall?
A. To provide secure access to applications
B. To block unauthorized access to or from a network
C. To monitor network traffic for malware
D. To encrypt data in transit
Answer: B) To block unauthorized access to or from a network
Rationale: A firewall is a network security device designed to monitor
and control incoming and outgoing network traffic based on
predetermined security rules, thus blocking unauthorized access.
, 5. Which of the following is a key aspect of security awareness training
for employees?
A. Ensuring all employees are granted administrative access
B. Teaching employees how to identify phishing emails
C. Disabling all antivirus software on user systems
D. Allowing unrestricted access to external websites
Answer: B) Teaching employees how to identify phishing emails
Rationale: Security awareness training educates employees on how to
recognize common threats, such as phishing, and encourages safe
practices to reduce the risk of a security breach.
6. What is the main purpose of conducting a business impact analysis
(BIA)?
A. To assess the cost of cybersecurity tools and technologies
B. To identify the potential impact of a disaster on critical business
functions
C. To monitor network traffic for vulnerabilities
D. To test incident response procedures
Answer: B) To identify the potential impact of a disaster on critical
business functions
Rationale: A BIA helps organizations identify and prioritize business
functions, assess the potential impact of disruptions, and develop
strategies for maintaining essential operations during and after a
disaster.