Common Security Concepts Quiz Flashcards
The term “CIA” triad us used to describe the basic principles of information security.
True
Which of the following terms refer to the concept of confidentiality? (Select 2 answers)
Encryption
Access Control Methods
Steganography
Which of the following terms refer(s) to the concept of integrity? (Select all that apply)
Hashing
Digital Signatures
Digital Certificates
Non-Repudiation
Which of the following terms refer(s) to the concept of availability? (Select all that apply)
Redundancy
Fault tolerance
Load balancing
patch management
Which term best describes a disgruntled emplyee abusing legitimate access to company’s internal resources?
Insider threat
Which of the following statements does not match a typical description of nation states or state-funded groups identified as thread actors?
Typically classified as an internal threat
Which of the following ansers refers to a vulnerability database?
CVE (Common Vulnerabilities and Exposures)
A type of attack aimed at exploiting vulnerability that is present in already released software but unknown to the software developer is called:
Zero-day attack
Which of the following violates the principle of least privilege?
Improperly configured accounts
Which of the security measure listed below would be effective against the malicious insider threat? (Select 3 answers)
DLP system (Data Loss Prevention)
Principle of least privilege
Usage auditing and review
The term “Zero Trust” in the context of network security means that none of the devices operating within the boundaries of a given network can be trusted by default even if they were previously verified.
True
A concept of effective security posture employing multiple tools and different techniques to slow down an attacker is known as: (Select 2 answers)
Layers Security
Defense in depth
A lightly protected subnet (previously known as a DMZ) consisting of publicly available servers placed on the outside of the company’s firewall is called:
Screened Subnet
Which of the ansers listed below refers to a concept of having more than one person required to complete a given task?
Separation of duties