Cybersecurity

cybersecurity L2
August 1, 2025

A Cybersecurity internship is a great opportunity to gain hands-on experience in protecting systems, networks, and data from cyber threats. It prepares you for roles like Security Analyst, Penetration Tester, SOC Analyst, or Cybersecurity Engineer.

What You Learn in a Cybersecurity Internship

  • Fundamentals: CIA Triad (Confidentiality, Integrity, Availability), threat types, risk management
  • Network Security: Firewalls, intrusion detection/prevention systems (IDS/IPS), packet sniffing
  • System Hardening: Securing Linux/Windows environments, patch management
  • Ethical Hacking: Penetration testing, vulnerability assessment, Kali Linux tools
  • Tools:
    • Wireshark (network analysis)
    • Metasploit (exploitation framework)
    • Nmap (network scanner)
    • Burp Suite (web security testing)
    • SIEM tools (Splunk, ELK stack)
  • Incident Response: Monitoring alerts, responding to breaches, reporting
  • Compliance & Governance: GDPR, ISO 27001, HIPAA, SOC2
0%
12

Important Notice:
Once you start the quiz, you will not be able to pause, exit, or restart it. Please ensure you are ready before beginning.


cybersecurity

Cybersecurity D1

1 / 44

1)

Main objective of cybersecurity is to prevent:

2 / 44

2)

Which CIA principle is most affected if hospital patient records are tampered with?

3 / 44

3)

Sending phishing emails to a target is:

4 / 44

4)

Attackers establishing communication with compromised systems is:

5 / 44

5)

Which organization would need cybersecurity the most?

6 / 44

6)

Which of the following is NOT in the scope of cybersecurity?

7 / 44

7)

Confidentiality ensures that:

8 / 44

8)

Ransomware blocking access to data affects:

9 / 44

9)

Encrypting customer data ensures:

10 / 44

10)

In 2024, LockBit ransomware affected approximately:

11 / 44

11)

Main role of an ethical hacker is:

12 / 44

12)

DDoS attacks primarily impact which CIA component?

13 / 44

13)

The biggest ethical rule in penetration testing is:

14 / 44

14)

How many phishing emails are estimated to be sent daily?

15 / 44

15)

In a 2024 attack, phishing was used in which kill chain stage?

16 / 44

16)

The cyber kill chain was developed by:

17 / 44

17)

Creating a malicious payload is part of which stage?

18 / 44

18)

Installing backdoors on victim systems is:

19 / 44

19)

Phishing emails are an example of:

20 / 44

20)

The “C” in CIA triad stands for:

21 / 44

21) A bank protecting customers from phishing is an example of:

22 / 44

22)

Integrity is violated when:

23 / 44

23) In 2025, how many internet users are estimated globally?

24 / 44

24)

The first stage of cyber kill chain is:

25 / 44

25)

Data breaches in 2024 exposed how many personal records approximately?

26 / 44

26) Cybersecurity primarily focuses on protecting:

27 / 44

27)

Which of the following is a popular ethical hacking certification?

28 / 44

28)

A checksum is used to protect which principle of the CIA triad?

29 / 44

29)

Who benefits from ethical hacking?

30 / 44

30)

Malware includes:

31 / 44

31)

APT stands for:

32 / 44

32)

Which role involves detecting and responding to cyber incidents in real time?

33 / 44

33)

Primary goal of malware is:

34 / 44

34)

Which attack demanded $10 million in 2024 from a retail chain?

35 / 44

35)

Exploiting unpatched software vulnerabilities occurs in:

36 / 44

36)

Phishing attacks target primarily:

37 / 44

37)

Penetration testing is also known as:

38 / 44

38)

Ethical hacking must always be performed with:

39 / 44

39)

Example of ethical hacking is:

40 / 44

40)

Which is an insider threat example?

41 / 44

41)

Which of these is an example of confidentiality protection?

42 / 44

42)

Which is the MOST dangerous due to persistence and sophistication?

43 / 44

43)

A financial analyst's salary is often dependent on:

44 / 44

44)

Installing ransomware on company servers relates to which kill chain stage?

Your score is

0%

Exit

Important Notice:
Once you start the quiz, you will not be able to pause, exit, or restart it. Please ensure you are ready before beginning.


cybersecurity L2

Cybersecurity L2

1 / 100

1) What is “container orchestration” and which tool is most popular for it?

2 / 100

2) What is the primary goal of a disaster recovery plan?

3 / 100

3) What is a zero-day vulnerability?

4 / 100

4) Which system service in Windows is responsible for managing security policies?

5 / 100

5) Which of the following is a network layer attack?

6 / 100

6) Which protocol uses cryptographic methods to secure web communication?

7 / 100

7) What does the term 'cybersecurity' mean?

8 / 100

8) What does the “principle of defense in depth” advocate in cloud security?

9 / 100

9) What does “data carving” help recover?

10 / 100

10) What does “immutable infrastructure” mean in DevSecOps?

11 / 100

11) Which organization publishes the NIST Cybersecurity Framework?

12 / 100

12) What is “secrets management” in cloud security?

13 / 100

13) Which protocol is used to securely transfer files over the Internet?

14 / 100

14) Which of the following tools is used for penetration testing automation?

15 / 100

15) What is the best defense against SQL Injection attacks?

16 / 100

16) What is the role of “post-exploitation” in penetration testing?

17 / 100

17) Which encryption technique splits data into fixed-size blocks for processing?

18 / 100

18) What is the role of an Endpoint Detection and Response (EDR) system?

19 / 100

19) What is the first step in creating an incident response plan?

20 / 100

20) What does the term “red team” refer to in cybersecurity?

21 / 100

21) What is the primary function of SELinux?

22 / 100

22) What is the purpose of a “security baseline” in cloud environments?

23 / 100

23) Which of the following is an example of social engineering?

24 / 100

24) The OWASP Top 10 is updated approximately every:

25 / 100

25) What is the difference between a vulnerability scan and a penetration test?

26 / 100

26) Which cybersecurity principle ensures that data is not modified by unauthorized users?

27 / 100

27) What is the function of the tool “Snort”?

28 / 100

28) Which type of firewall filters traffic at the network layer?

29 / 100

29) Which one of the following is a sign of a broken authentication flaw?

30 / 100

30) What is a brute force attack in cryptography?

31 / 100

31) Which vulnerability involves the attacker forcing a logged-in user to perform unwanted actions?

32 / 100

32)  Which security technology helps protect against Distributed Denial of Service (DDoS) attacks?

33 / 100

33) What does the term “key length” influence in encryption?

34 / 100

34) Which tool is widely used for network traffic analysis during incident investigations?

35 / 100

35) What is the primary purpose of a firewall on an endpoint device?

36 / 100

36) What is the purpose of a honeypot in cybersecurity?

37 / 100

37) Which Windows feature isolates programs to prevent them from affecting the OS?

38 / 100

38) What type of security policy defines how an organization responds to security incidents?

39 / 100

39) Which of the following is an example of asymmetric key encryption?

40 / 100

40) Why is “documentation” crucial during incident response and digital forensics?

41 / 100

41) Which of the following is an example of a passive reconnaissance technique?

42 / 100

42) A ______ is an attack where the attacker tricks users into clicking malicious links.

43 / 100

43) Which Linux tool helps detect rootkits on a system?

44 / 100

44) Which type of evidence is considered volatile?

45 / 100

45) Which tool is commonly used for log management and analysis?

46 / 100

46) What does IDS stand for in network security?

47 / 100

47) What is the first step in the cyber kill chain model?

48 / 100

48) What is the purpose of penetration testing?

49 / 100

49) Which penetration testing phase includes validating security controls by exploiting vulnerabilities?

50 / 100

50) Which protocol is used to securely transfer files over the Internet?

51 / 100

51) What is the purpose of a digital certificate in cryptography?

52 / 100

52) What does a firewall do in a network?

53 / 100

53) What is the main purpose of a Public Key Infrastructure (PKI)?

54 / 100

54) What is “footprinting” in ethical hacking?

55 / 100

55) Which compliance requirement mandates breach notification within 72 hours?

56 / 100

56) Which service is commonly used to automate compliance checks in cloud environments?

57 / 100

57) What does “timeline analysis” refer to in digital forensics?

58 / 100

58) What is a “pivot” in penetration testing?

59 / 100

59) Which of the following is a layer 2 device in the OSI model?

60 / 100

60) Which cryptographic technique uses different keys for encryption and decryption?

61 / 100

61) What does the “containment” phase focus on during incident response?

62 / 100

62) Which one of these is considered a cyber threat?

63 / 100

63) What is a “buffer overflow” attack?

64 / 100

64) What does a Data Loss Prevention (DLP) system do?

65 / 100

65) What does the “principle of least privilege” help prevent?

66 / 100

66) Which legal document often grants permission to perform penetration testing?

67 / 100

67) What is the role of a security standard?

68 / 100

68) Which tool is used to exploit known vulnerabilities and automate attacks?

69 / 100

69) Which of the following helps mitigate sensitive data exposure?

70 / 100

70) Which OWASP vulnerability occurs when the system fails to protect API endpoints properly?

71 / 100

71) Which process involves verifying the identity of a user or system?

72 / 100

72) Which security feature protects cloud workloads from unauthorized network access?

73 / 100

73) What is “forensic triage”?

74 / 100

74) Which of the following prevents unauthorized access but does not detect it?

75 / 100

75) Which standard provides guidelines for IT governance and management?

76 / 100

76) What is the main drawback of symmetric encryption?

77 / 100

77) What is the purpose of “file carving” in digital forensics?

78 / 100

78) What is the function of a Network Access Control (NAC) system?

79 / 100

79) What does "sandboxing" refer to in endpoint security?

80 / 100

80) Which DevSecOps tool is used for static application security testing (SAST)?

81 / 100

81) Which OWASP vulnerability involves allowing attackers to access functions or data they shouldn’t be able to?

82 / 100

82) Which tool is primarily used for password cracking?

83 / 100

83) Which cloud service model provides the highest level of user control over the infrastructure?

84 / 100

84) Which one of these algorithms is a cryptographic hash function?

85 / 100

85) What kind of attack involves exploiting unpatched software vulnerabilities?

86 / 100

86) In the OWASP Top 10, what does A07:2021 refer to?

87 / 100

87) Which OWASP category includes flaws like missing security headers and misconfigured permissions?

88 / 100

88) What does “least privilege” mean in access control?

89 / 100

89) Which digital forensic tool can analyze Windows registry files?

90 / 100

90) Which device is used to segment a network and reduce traffic?

91 / 100

91) Which of these protocols operates over port 443?

92 / 100

92) What is a “data retention policy”?

93 / 100

93) Question

94 / 100

94)  What is a “policy exception” in cybersecurity?

95 / 100

95) What is the role of antivirus “heuristics”?

96 / 100

96) Which organization primarily develops standards for cybersecurity in the U.S.?

97 / 100

97) What is the difference between a virus and a worm?

98 / 100

98) What is the main focus of the Sarbanes-Oxley Act (SOX) in relation to cybersecurity?

99 / 100

99) What is the key benefit of using containers in DevSecOps?

100 / 100

100) Which of the following is used to ensure data integrity?

Your score is

The average score is 71%

0%

Leave a Reply

Your email address will not be published. Required fields are marked *