ISC2 CC Practice Quizzes (2–5)
Practice Quiz #2
1. Practice Quiz #2 - Q1: Which of the following is a function of the NIST Cybersecurity
Framework?
A. Encrypt email communications
B. Manage physical security personnel
C. Identify, Protect, Detect, Respond, Recover
D. Backup databases daily
2. Practice Quiz #2 - Q2: What is a key benefit of using Role-Based Access Control (RBAC)?
A. Simplifies user management based on job roles
B. Allows users to control their access
C. Provides access based on location
D. Offers no real benefit
3. Practice Quiz #2 - Q3: Which term describes the process of removing sensitive data
from storage before disposal?
A. Shredding
B. Wiping
C. Logging
D. Encrypting
4. Practice Quiz #2 - Q4: What is the main goal of business continuity planning?
A. Reduce the company’s tax burden
B. Ensure continued operation during and after a disruption
C. Increase employee retention
D. Boost marketing campaigns
5. Practice Quiz #2 - Q5: What is the function of a proxy server?
A. Filter and cache web traffic
B. Manage user credentials
C. Patch operating systems
D. Monitor internal email
6. Practice Quiz #2 - Q6: Which of the following is a technical control?
A. Security guard
B. Firewall
C. Policy document
D. Training session
7. Practice Quiz #2 - Q7: What is the term for observing a person typing their password?
A. Brute force attack
B. Phishing
C. Shoulder surfing
D. Social engineering
8. Practice Quiz #2 - Q8: Which domain would include procedures for secure disposal of
devices?
A. Network Security
B. Access Control
C. Security Operations
D. Security Principles
9. Practice Quiz #2 - Q9: In the OSI model, which layer is responsible for reliable data
delivery?
A. Data Link
B. Network
C. Application
D. Transport
10. Practice Quiz #2 - Q10: Why is separation of duties important in cybersecurity?
A. It helps streamline tasks
B. It ensures one person has total control
C. It reduces the risk of fraud and error
D. It simplifies reporting
Practice Quiz #3
11. Practice Quiz #3 - Q1: What does 'Availability' in the CIA triad ensure?
A. Information is not accessed by unauthorized users
B. Information is accessible to authorized users when needed
C. Information remains unchanged
D. Information is encrypted at rest
12. Practice Quiz #3 - Q2: Which of the following is an example of multifactor
authentication?
A. Password and PIN
B. Fingerprint and retina scan
C. Password and smart card
D. Username and password
13. Practice Quiz #3 - Q3: Which control type includes background checks and security
awareness training?
A. Physical
B. Technical
C. Administrative
D. Logical
14. Practice Quiz #3 - Q4: Which of the following is NOT a step in the incident response
lifecycle?
A. Eradication
B. Containment
C. Maintenance
D. Recovery
15. Practice Quiz #3 - Q5: What is a full backup?
A. Backup of system files only
B. Backup of all selected data
C. Backup of changed files since last full backup
D. Backup of logs only
16. Practice Quiz #3 - Q6: What defines a MAC (Mandatory Access Control) system?
A. Access granted by user discretion
B. Based on labels and classifications
C. Based on user job function
D. Based on system uptime
17. Practice Quiz #3 - Q7: Why is logging important in security operations?
A. For tax audits
B. To monitor policy compliance and investigate issues
C. To design websites
D. For recruiting employees
18. Practice Quiz #3 - Q8: What’s the main function of a vulnerability scanner?
A. Block malware
B. Detect open ports
C. Identify security weaknesses
D. Encrypt sensitive data
19. Practice Quiz #3 - Q9: Which access model is the most restrictive?
A. DAC
B. RBAC
C. MAC
D. ABAC
20. Practice Quiz #3 - Q10: In risk management, which option aims to shift risk to another
party?
A. Risk acceptance
B. Risk transference
C. Risk avoidance
D. Risk rejection
Answer Key – Practice Quizzes 2 to 3
Practice Quiz #2 - Q1: Answer: C
Practice Quiz #2 - Q2: Answer: A
Practice Quiz #2 - Q3: Answer: B
Practice Quiz #2 - Q4: Answer: B
Practice Quiz #2 - Q5: Answer: A
Practice Quiz #2 - Q6: Answer: B
Practice Quiz #2 - Q7: Answer: C
Practice Quiz #2 - Q8: Answer: C
Practice Quiz #2 - Q9: Answer: D
Practice Quiz #2 - Q10: Answer: C
Practice Quiz #3 - Q1: Answer: B
Practice Quiz #3 - Q2: Answer: C
Practice Quiz #3 - Q3: Answer: C
Practice Quiz #3 - Q4: Answer: C
Practice Quiz #3 - Q5: Answer: B
Practice Quiz #3 - Q6: Answer: B
Practice Quiz #3 - Q7: Answer: B
Practice Quiz #3 - Q8: Answer: C
Practice Quiz #3 - Q9: Answer: C
Practice Quiz #3 - Q10: Answer: B