Info. Assurance and Security Quiz
Quiz by LUIS PURAL
Tag the questions with any skills you have. Your dashboard will track each student's mastery of each skill.
______________ was store in servers in multiple areas, leaving us open risk
_________ is a process of maintaining an acceptable level of perceived risk
______ is a field that safeguards the integrity of data used by individuals or organization
The following are part of the three metrics of Information Security, EXCEPT
This security measure is designed to establish the validity of a transmission, message, or originator, means of verifying an individual's authorization to receive specific information
_________________ are compound network attacks that utilize multiple stages and different attack techniques.
The following are program used by attackers to exploit a system
Following are the unique characteristics of Advanced Persistent Threats. EXCEPT
Info. Assurance combines information security with the business aspects while Info. Security is more on penetration testing
APT threats use a variety of techniques to gain initial access to a network.
The following one of the five attack stages of APT. EXCEPT
This attack use DDos or Denial of Services Attack
This APT attack is known to used worm and attack the nuclear program of IRAN
This APT malware attack is known as Fancy Bear, Pawn Storm and Sednit.
This APT attack is also known as Reaper and StarCruft, and originates from North Korea
This APT detection and protection measure attacks like spear phishing.
It modifies strong authentication measures and close management of user accounts
It is an attacks from china uses spear phishing emails containing malware.
DOD / DoD stands for?
There are 5 challenges in realizing and sustaining the vision in cyberspace.
There are three goals of CIIA
Prevents sensitive information from reaching wrong people while making sure that the right people can use it.
Maintain information consistency, accuracy, and trustworthiness of information over it life cycle.
Ensures that the information is available when it is needed.
________ refers to a new or newly discovered incident that has the potential to harm a system or your company overall.
_______ refers to a known weakness of an asset (resource) that can be exploited by one or more attackers. In other words, it is a known issue that allows an attack to succeed.
__________ is defined as the potential for loss or damage when a threat exploits a vulnerability.
To reduce potential risk, we must create and implement a risk management plan.
We must designate a central group of employees
It is a social engineering infiltrations whose goal is to wrongfully obtain sensitive data: passwords and credit card numbers.