星期二, 9月 28, 2010

Security responsibilities and responses: A user's view

1. Which of the following actions would help users to keep information safe?

Choose more than one option.

Keep important information stored separately in hard copy form
Have a strong password
Be careful about leaving your computer unattended
Report anything suspicious



2. Which of the following should be part of the effort to reduce the level of threat to security posed by an organization's own employees?

Choose more than one option.

Keep employees motivated
Ensure that employees' skills are updated on an ongoing basis
Monitor employee activity
Install appropriate technical barriers



3. Which of the following are key considerations for an information security program?

Choose more than one option.

Confidentiality
Availability
Communication
Integrity



4. Which of the following are criteria for a good password?

Choose more than one option.

It is almost impossible for others to guess
It has personal significance
You don't have to write it down
It evokes a pleasant, thus memorable, image



Topic title: Security responsibilities and responses: A user's view


Which of the following are considered potential security threats?

Computer viruses
Internet privilege
Loss of data
Unauthorized access

星期一, 9月 27, 2010

Introduction to security policies

1. Security ___________ define which of a company's resources are to be protected, whereas security _________ define how to protect them.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

procedures
policies



Security policies define which of a company's resources are to be protected, whereas security procedures define how to protect them.




2. Which of the following should be the first step in developing a security policy?

Choose an option.

Assigning risk factors
Prioritizing resources
Classifying resources
Defining acceptable and unacceptable activities



3. Which of the following statements best describes a company's information protection policy?

Choose an option.

It defines methods of remotely connecting to the main network
It provides guidelines on how users should process, store, and transmit sensitive information
It provides guidelines for reporting and managing virus infections
It defines the appropriate use of computing resources

星期日, 9月 26, 2010

Identifying Internet security measures

1. Which of the following involves users submitting their usernames and passwords in encrypted form?

Choose an option.

Anonymous access
Basic authentication
Secure authentication
Digital certificates


2. You use your ________ to decrypt messages you receive.

You send your _________ to the people from whom you expect to receive an encrypted message.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

private key
public key


You use your private key to decrypt messages you receive.

You send your public key to the people from whom you expect to receive an encrypted message.


3. A digital certificate contains which of the following?

Choose more than one option.

A certificate serial number
A certificate expiration date
Your private key
The certificate authority's digital signature

星期六, 9月 25, 2010

Threats to data on networked computers

1. A _________ is a simple destructive miniature program that infiltrates its way into computer systems.

Choose an option below to fill in the blank.

VPN
hacker
IP address
virus



2. Which of the following statements regarding hackers are true?

Choose more than one option.

They always gain access to system resources from outside
They use Internet message boards to gain information on system security holes
They impersonate authorized users to gain access to systems
They all aim to defraud the companies whose systems they penetrate



3. What do ethical hackers do?

Choose an option.

Try to break into systems so as to defraud companies
Test a system's security to see where malicious hackers could gain access
Create antivirus software
Impersonate authorized users using a spoof IP address in order to breach system security

星期五, 9月 24, 2010

Threats and security risks on the Web

1. Which web browser setting controls how a web browser receives information that is automatically saved to your hard disk?

Cookies
Security
Proxy
Mail server


2. A macro virus will typically affect the file currently open on your computer.

A boot-sector virus infects a portion of your hard disk.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

macro
boot-sector


3. Which of the following terms describes information about a user that is stored on a client machine by a web browser?

Choose an option.

A cookie
A cache
A MIME
A certificate


4. Why is it important to frequently update the virus definition files on your virus protection software?

Choose an option.

To prevent hacking attempts
To keep abreast of the newest viruses
To prevent viruses from infecting your CD-ROMs
To automatically patch your word-processing software

星期四, 9月 23, 2010

Introduction to network security threats

1. Which of the following definitions refers to data becoming corrupt due to incorrect inputting procedures?

Choose an option.

Malicious threat
Inappropriate activity
Nuisance threat
Accidental loss

2. Which of the following terms describes the event whereby a hacker installs a virus on your computer and then tries to make you inadvertently activate it?

Choose an option.

Denial of Service (DoS)
Trojan horse
Packet sniffing
E-mail spoofing

3. Which of the following should be disabled in order to discern whether a file is a virus?

Choose an option.

Hide file extensions for known file types in Windows
Java, JavaScript, and Active X in browsers
Denial of Service (DoS)
Chat sites

星期三, 9月 22, 2010

Network security components

1. In symmetrical encryption, a private key is used, whereas in asymmetrical encryption, both public and private keys are used.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

asymmetrical
symmetrical


2. Which of the following steps can be implemented to prevent virus attacks?

Choose more than one option.

Prevent unauthorized users accessing the Internet
Use access control
Use software packages to immunize your system
Use virus scanners to search for viruses each time you boot up



3. Which of the following is a collection of components that acts as a barrier between a private network and the outside world?

Choose an option.

Encrypted tunnel
Firewall
Virtual Private Network (VPN)
Virus


4. When you receive a message encrypted by the sender's private key, you decrypt it using the sender's public key.

Choose an option below to fill in the blank.

private
public



5. IDS systems work by calculating baselines for each of the parameters monitored. Your system is said to be operating normally when the parameter values recorded are within the baselines.

Choose an option below to fill in the blank.

outside
within



6. Which of the following are common user authentication systems?

Choose more than one option.

Biometrics
Digital signatures
Passwords
Personal tokens

推薦此文