fh fh fh
Fundamentals of Information Security
fh fh fh fh f
Quizlet by Brian MacFarlane
h fh fh fh
Whichfhcybersecurityfhtermfhisfhdefinedfhasfhthefhpotentialfhforfhanfhattackfhonfhafhresource?
AfhImpact
BfhVulnerability
CfhRisk
DfhThreatfh-fhcorrectfhanswerfh✔✔D
Whichfhsecurityfhtypefhdeliberatelyfhexposesfhafhsystem'sfhvulnerabilitiesfhorfhresourcesfhtofh
anfhattacker?
AfhIntrusionfhdetection
BfhFirewalls
CfhHoneypots
DfhIntrusionfhpreventionfh-fhcorrectfhanswerfh✔✔C
Whichfhtoolfhcanfhbefhusedfhtofhmapfhdevicesfhonfhafhnetwork,fhalongfhwithfhtheirfhoperatingfh
systemfhtypesfhandfhversions?
AfhPacketfhsniffer
BfhPacketfhfilter
CfhPortfhscanner
DfhStatefulfhfirewallfh-fhcorrectfhanswerfh✔✔C
Whichfhwebfhattackfhisfhafhserver-sidefhattack?
AfhClickjacking
BfhCross-sitefhscripting
CfhSQLfhinjection
DfhCross-sitefhrequestfhforgeryfh-fhcorrectfhanswerfh✔✔C
AnfhorganizationfhemploysfhafhVPNfhtofhsafeguardfhitsfhinformation.fh
WhichfhsecurityfhprinciplefhisfhprotectedfhbyfhafhVPN?
AfhDatafhinfhmotion
BfhDatafhatfhrest
CfhDatafhinfhuse
DfhDatafhinfhstoragefh-fhcorrectfhanswerfh✔✔A
,Afhmaliciousfhhackerfhwasfhsuccessfulfhinfhafhdenialfhoffhservicefh(DoS)fhattackfhagainstfhanfhi
nstitution'sfhmailfhserver.fhFortunately,fhnofhdatafhwasfhlostfhorfhalteredfhwhilefhthefhserverfhw
asfhoffline.
fh
Whichfhtypefhoffhattackfhisfhthis?
fh
AfhModification
BfhFabrication
CfhInterception
DfhInterruptionfh-fhcorrectfhanswerfh✔✔D
Afhcompanyfhhasfhhadfhseveralfhsuccessfulfhdenialfhoffhservicefh(DoS)fhattacksfhonfhitsfhemai
lfhserver.
fh
Whichfhsecurityfhprinciplefhisfhbeingfhattacked?
AfhPossession
BfhIntegrity
CfhConfidentiality
DfhAvailabilityfh-fhcorrectfhanswerfh✔✔D
Afhnewfhstart-
upfhcompanyfhhasfhstartedfhworkingfhonfhafhsocialfhnetworkingfhwebsite.fhThefhcompanyfhha
sfhmovedfhallfhitsfhsourcefhcodefhtofhafhcloudfhproviderfhandfhwantsfhtofhprotectfhthisfhsourcefh
codefhfromfhunauthorizedfhaccess.
fh
Whichfhcyberfhdefensefhconceptfhshouldfhthefhstart-
upfhcompanyfhusefhtofhmaintainfhthefhconfidentialityfhoffhitsfhsourcefhcode?
fh
AfhAlarmfhsystems
BfhAccountfhpermissions
CfhAntivirusfhsoftware
DfhFilefhencryptionfh-fhcorrectfhanswerfh✔✔D
Afhcompanyfhhasfhanfhannualfhauditfhoffhinstalledfhsoftwarefhandfhdatafhstoragefhsystems.fhD
uringfhthefhaudit,fhthefhauditorfhasksfhhowfhthefhcompany'sfhmostfhcriticalfhdatafhisfhused.fhThi
sfhdeterminationfhhelpsfhthefhauditorfhensurefhthatfhthefhproperfhdefensefhmechanismsfharefh
infhplacefhtofhprotectfhcriticalfhdata.
fh
WhichfhprinciplefhoffhthefhParkerianfhhexadfhisfhthefhauditorfhaddressing?
AfhPossession
BfhIntegrity
CfhAuthenticity
DfhUtilityfh-fhcorrectfhanswerfh✔✔D
Whichfhwebfhattackfhisfhpossiblefhduefhtofhafhlackfhoffhinputfhvalidation?
fh
AfhExtraneousfhfiles
,BfhClickjacking
CfhSQLfhinjection
DfhCross-sitefhrequestfhforgeryfh-fhcorrectfhanswerfh✔✔C
WhichfhfilefhactionfhimplementsfhthefhprinciplefhoffhconfidentialityfhfromfhthefhCIAfhtriad?
fh
AfhCompression
BfhHash
CfhBackup
DfhEncryptionfh-fhcorrectfhanswerfh✔✔D
Whichfhcyberfhdefensefhconceptfhsuggestsfhlimitingfhpermissionsfhtofhonlyfhwhatfhisfhnecess
aryfhtofhperformfhafhparticularfhtask?
fh
AfhAuthentication
BfhAuthorization
CfhDefensefhinfhdepth
DfhPrinciplefhoffhleastfhprivilegefh-fhcorrectfhanswerfh✔✔D
Afhcompanyfhinstitutesfhafhnewfhpolicyfhthatfh"Allfhofficefhcomputerfhmonitorsfhmustfhfacefhto
wardfhemployeesfhandfhmustfhfacefhawayfhfromfhdoorways.fhThefhmonitorfhscreensfhmustfhn
otfhbefhvisiblefhtofhpeoplefhvisitingfhthefhoffice."
fh
WhichfhprinciplefhoffhthefhCIAfhtriadfhisfhthisfhcompanyfhapplying?
AfhAvailability
BfhConfidentiality
CfhUtility
DfhIntegrityfh-fhcorrectfhanswerfh✔✔B
Atfhafhsmallfhcompany,fhanfhemployeefhmakesfhanfhunauthorizedfhdatafhalteration.
fh
WhichfhcomponentfhoffhthefhCIAfhtriadfhhasfhbeenfhcompromised?
AfhConfidentiality
BfhAuthenticity
CfhIntegrity
DfhAvailabilityfh-fhcorrectfhanswerfh✔✔C
Anfhorganizationfhplansfhtofhencryptfhdatafhinfhtransitfhonfhafhnetwork.
fh
Whichfhaspectfhoffhdatafhisfhthefhorganizationfhattemptingfhtofhprotect?
AfhIntegrity
BfhPossession
CfhAvailability
DfhAuthenticityfh-fhcorrectfhanswerfh✔✔A
, WhichfhaspectfhoffhthefhCIAfhtriadfhisfhviolatedfhbyfhanfhunauthorizedfhdatabasefhrollbackfhorfh
undo?
AfhAvailability
BfhIdentification
CfhIntegrity
DfhConfidentialityfh-fhcorrectfhanswerfh✔✔C
Afhcompany'sfhwebsitefhhasfhsufferedfhseveralfhdenialfhoffhservicefh(DoS)fhattacksfhandfhwis
hesfhtofhthwartfhfuturefhattacks.
fh
Whichfhsecurityfhprinciplefhisfhthefhcompanyfhaddressing?
AfhAvailability
BfhAuthenticity
CfhConfidentiality
DfhPossessionfh-fhcorrectfhanswerfh✔✔A
Anfhorganizationfhhasfhafhrequirementfhthatfhallfhdatabasefhserversfhandfhfilefhserversfhbefhco
nfiguredfhtofhmaintainfhoperationsfhinfhthefhpresencefhoffhafhfailure.fh
fh
WhichfhprinciplefhoffhthefhCIAfhtriadfhisfhthisfhrequirementfhimplementing?
AfhUtility
BfhIntegrity
CfhAvailability
DfhConfidentialityfh-fhcorrectfhanswerfh✔✔C
Afhcompany'sfhITfhpolicyfhmanualfhstatesfhthatfh"Allfhcompanyfhcomputers,fhworkstations,fha
pplicationfhservers,fhandfhmobilefhdevicesfhmustfhhavefhcurrentfhversionsfhoffhantivirusfhsoft
ware."
fh
Whichfhprinciplefhorfhconceptfhoffhcybersecurityfhdoesfhthisfhpolicyfhstatementfhimpact?
AfhAccountingfhpolicy
BfhOperatingfhsystemfhsecurity
CfhAccessfhcontrolfhpolicy
DfhPhysicalfhsecurityfh-fhcorrectfhanswerfh✔✔B
Anfhorganization'sfhproceduresfhdocumentfhstatesfhthatfh"Allfhelectronicfhcommunicationsfhs
houldfhbefhencryptedfhduringfhtransmissionfhacrossfhnetworksfhusingfhencryptionfhstandard
sfhspecifiedfhinfhthefhdatafhencryptionfhpolicy."
fh
Whichfhsecurityfhprinciplefhisfhthisfhpolicyfhaddressing?
AfhInterruption
BfhConfidentiality
CfhControl