Page | 1
ITN 260 Midterm Questions with
Detailed Verified Answers
Question: The Security Administrator reports directly to the CIO.
Ans: False
Question: The CompTIA Security+ certification is a vendor-neutral credential.
Ans: True
Question: Successful attacks are usually not from software that is poorly
designed and has architecture/design weaknesses.
Ans: False
Question: Smart phones give the owner of the device the ability to download
security updates.
Ans: False
Question: As security is increased, convenience is often increased.
Ans: False
Question: A vulnerability is a flaw or weakness that allows a threat to bypass
security.
, Page | 2
Ans: True
Question: To mitigate risk is the attempt to address risk by making the
riskless serious.
Ans: True
Question: The Sarbanes-Oxley Act restricts electronic and paper data
containing personally identifiable financial information.
Ans: False
Question: One of the challenges in combating cyberterrorism is that many of
the prime targets are not owned and managed by the federal government.
Ans: True
Question: Brokers steal new product research or a list of current customers to
gain a competitive advantage.
Ans: False
Question: What information security position reports to the CISO and
supervises technicians, administrators, and security staff?
Ans: Security Manager
, Page | 3
Question: According to the U.S. Bureau of Labor Statistics, what percentage
of growth for information security analysts is the available job outlook
supposed to reach through 2024?
Ans: 18
Question: Which position below is considered an entry-level position for a
person who has the necessary technical skills?
Ans: Security Technician
Question: What term refers to an action that provides an immediate solution
to a problem by cutting through the complexity that surrounds it?
Ans: Silver Bullet
Question: In what kind of attack can attackers make use of millions of
computers under their control in an attack against a single server or network?
Ans: Distributed
Question: Which term below is frequently used to describe the tasks of
securing that is in a digital format?
Ans: Information Security
Question: Which of the three protections ensures that only authorized parties
can view information?
, Page | 4
Ans: Confidentiality
Question: Select the information protection item that ensures that
information is correct and that no unauthorized person or malicious software
has altered that data
Ans: Integrity
Question: Which of the following ensures that data is accessible to authorized
users?
Ans: Availability
Question: In information security, what can constitute a loss?
Ans: All of the above
Question: In information security, which of the following is an example of a
threat actor?
Ans: All of the above
Question: What type of theft involves stealing another person's personal
information, such as a Social Security number, and then using the information
to impersonate the victim, generally for financial gain?
Ans: Identity Theft
ITN 260 Midterm Questions with
Detailed Verified Answers
Question: The Security Administrator reports directly to the CIO.
Ans: False
Question: The CompTIA Security+ certification is a vendor-neutral credential.
Ans: True
Question: Successful attacks are usually not from software that is poorly
designed and has architecture/design weaknesses.
Ans: False
Question: Smart phones give the owner of the device the ability to download
security updates.
Ans: False
Question: As security is increased, convenience is often increased.
Ans: False
Question: A vulnerability is a flaw or weakness that allows a threat to bypass
security.
, Page | 2
Ans: True
Question: To mitigate risk is the attempt to address risk by making the
riskless serious.
Ans: True
Question: The Sarbanes-Oxley Act restricts electronic and paper data
containing personally identifiable financial information.
Ans: False
Question: One of the challenges in combating cyberterrorism is that many of
the prime targets are not owned and managed by the federal government.
Ans: True
Question: Brokers steal new product research or a list of current customers to
gain a competitive advantage.
Ans: False
Question: What information security position reports to the CISO and
supervises technicians, administrators, and security staff?
Ans: Security Manager
, Page | 3
Question: According to the U.S. Bureau of Labor Statistics, what percentage
of growth for information security analysts is the available job outlook
supposed to reach through 2024?
Ans: 18
Question: Which position below is considered an entry-level position for a
person who has the necessary technical skills?
Ans: Security Technician
Question: What term refers to an action that provides an immediate solution
to a problem by cutting through the complexity that surrounds it?
Ans: Silver Bullet
Question: In what kind of attack can attackers make use of millions of
computers under their control in an attack against a single server or network?
Ans: Distributed
Question: Which term below is frequently used to describe the tasks of
securing that is in a digital format?
Ans: Information Security
Question: Which of the three protections ensures that only authorized parties
can view information?
, Page | 4
Ans: Confidentiality
Question: Select the information protection item that ensures that
information is correct and that no unauthorized person or malicious software
has altered that data
Ans: Integrity
Question: Which of the following ensures that data is accessible to authorized
users?
Ans: Availability
Question: In information security, what can constitute a loss?
Ans: All of the above
Question: In information security, which of the following is an example of a
threat actor?
Ans: All of the above
Question: What type of theft involves stealing another person's personal
information, such as a Social Security number, and then using the information
to impersonate the victim, generally for financial gain?
Ans: Identity Theft