Never allow sensitive data on non-Government-issued mobile devices. How many potential insider threat indicators does a person who is playful and charming, consistently win performance awards, but is occasionally aggressive in trying to access sensitive information? Cyber Awareness Challenge Complete Questions and Answers. Darryl is managing a project that requires access to classified information. How can you . **Social EngineeringWhat is a common indicator of a phishing attempt? 20 0 obj Physical security of mobile phones carried overseas is not a major issue. Be aware of classification markings and all handling caveats. Which of the following is an example of near field communication (NFC)?-A smartphone that transmits credit card payment information when held in proximity to a credit card reader. Using webmail may bypass built in security features. Malicious code can do the following except? Attempt to change the subject to something non-work related, but neither confirm nor deny the articles authenticity. **Social NetworkingWhat should you do if you receive a game application request that includes permission to access your friends, profile information, cookies, and sites visited? Which of the following is NOT an example of sensitive information? <> Follow instructions given only by verified personnel. *Insider ThreatWhat threat do insiders with authorized access to information or information systems pose?-They may wittingly or unwittingly use their authorized access to perform actions that result in the loss or degradation of resources or capabilities. What should be your response? What should you do if someone forgets their access badge (physical access)? When checking in at the airline counter for a business trip, you are asked if you would like to check your laptop bag. This includes government officials, military personnel, and intelligence analysts. Which of the following demonstrates proper protection of mobile devices? Which of the following is NOT one? *TravelWhat security risk does a public Wi-Fi connection pose? Your comments are due on Monday. Imperva provides automated data discovery and classification, which reveals the location, volume, and context of data on premises and in the cloud. 0000005958 00000 n Memory sticks, flash drives, or external hard drives. **Mobile DevicesWhat should you do when going through an airport security checkpoint with a Government-issued mobile device? When faxing Sensitive Compartmented Information (SCI), what actions should you take? *Social Engineering @uP"szf3(`}>5k\r/[QbGle/+*LwzJ*zVHa`i&A%h5hy[XR'sDbirE^n Use online sites to confirm or expose potential hoaxes. **Website UseWhile you are registering for a conference, you arrive at the website http://www.dcsecurityconference.org/registration/. ), BUSINESSSOLUTIONSComparativeBalanceSheetDecember31,2017,andMarch31,2018\begin{array}{c} **Insider ThreatHow many potential insider threat indicators does a coworker who often makes others uneasy by being persistent in trying to obtain information about classified projects to which he has no access, is boisterous about his wife putting them in credit card debt, and often complains about anxiety and exhaustion display? In which situation below are you permitted to use your PKI token? -Looking for "https" in the URL. Which of the following is NOT a requirement for telework? *Sensitive Compartmented InformationWhat should the participants in this conversation involving SCI do differently? **Insider ThreatWhich of the following should be reported as a potential security incident (in accordance with you Agencys insider threat policy)? What is a good practice for physical security? Of the following, which is NOT a problem or concern of an Internet hoax? Identify and disclose it with local Configuration/Change Management Control and Property Management authorities. *Malicious CodeWhat is a possible effect of malicious code?-Files may be corrupted, erased, or compromised. How should you respond to the theft of your identity?-Notify law enforcement. He has the appropriate clearance and a signed, approved, non-disclosure agreement. Only allow mobile code to run from your organization or your organizations trusted sites. A colleague asks to leave a report containing Protected Health Information (PHI) on his desk overnight so he can continue working on it the next day. Only persons with appropriate clearance, a non-disclosure agreement, and need-to-know can access classified data. Which of the following is NOT considered sensitive information? Secure personal mobile devices to the same level as Government-issued systems. A colleague complains about anxiety and exhaustion, makes coworkers uncomfortable by asking excessive questions about classified projects, and complains about the credit card bills that his wife runs up. -Directing you to a website that looks real. Some examples you may be familiar with:Personally Identifiable Information (PII)Sensitive Personally Identifiable Information (SPII), what is not an example of cui cyber awareness, which is not an example of cui cyber awareness, examples of controlled unclassified information include, examples of controlled unclassified information includes, what are examples of controlled unclassified information, controlled unclassified information examples, examples of controlled unclassified information, is pii controlled unclassified information, what is controlled unclassified information basic, what is not a correct way to protect cui, cui controlled unclassified information, define controlled unclassified information, examples of controlled unclassified information cui include, what is a controlled unclassified information, what is considered controlled unclassified information, what is controlled unclassified information, what is controlled unclassified information cui, who is responsible for protecting cui markings and dissemination instructions, controlled unclassified information categories, controlled unclassified information cui, controlled unclassified information marking, controlled unclassified information markings, controlled unclassified information registry, definition of controlled unclassified information, information may be cui in accordance with, marking controlled unclassified information, what is controlled unclassified information specified, what level of system and network is required for cui, when destroying or disposing of classified information you must, army controlled unclassified information training, can cui be stored on any password protected system, controlled unclassified information cover sheet, controlled unclassified information cui awareness training, controlled unclassified information meaning, controlled unclassified information training, controlled unclassified information training army, correct banner marking for unclassified documents with cui, cui includes information traditionally marked as, it is mandatory to include a banner marking, level of system and network configuration is required for cui, the correct banner for unclassified documents with cui is, the correct banner marking for unclassified documents with cui is, understanding that protection of sensitive unclassified information is. What should you do? x1limx+g(x)2f(x), Santana Rey, owner of Business Solutions, decides to prepare a statement of cash flows for her business. Which of the following should you NOT do if you find classified information on the internet?-Download the information. Difficult life circumstances such as substance abuse; divided loyalty or allegiance to the U.S.; or extreme, persistent interpersonal difficulties. Write your password down on a device that only you access (e.g., your smartphone). Which of the following is NOT a correct way to protect sensitive information? *CLASSIFIED DATA*What is a good practice to protect classified information? *Insider Threat Which type of behavior should you report as a potential insider threat? Approved Security Classification Guide (SCG). Thumb drives, memory sticks, and optical disks. -Remove security badge as you enter a restaurant or retail establishment. What are some actions you can take to try to protect your identity? *Home Computer Security understanding that protection of sensitive unclassified information is: what dod instructions implements the dod cui program, which of the following individuals can access classified data, who is responsible for applying cui markings, army controlled unclassified information, at the time of creation of cui material, at the time of creation of cui material the authorized, controlled unclassified information army, controlled unclassified information dod, cui documents must be reviewed according to which, cui documents must be reviewed according to which procedures, cui documents must be reviewed to which procedures before destruction, dod controlled unclassified information, dod controlled unclassified information training, dod instruction implements the dod cui program, dod mandatory controlled unclassified information, how should you protect a printed classified document, under what circumstances could unclassified information be considered a threat, under which circumstances is it permitted to share an unclassified, what dod instruction implements cui program, what dod instruction implements dod cui program, what dod instruction implements the cui program, what dod instruction implements the dod cui, what dod instruction implements the dod cui program, what is sensitive unclassified information, what is the purpose of the isoo cui registry, what level of system is required for cui, which of the following is true about markings, which of the following is true about unclassified data, which of the following may help to prevent inadvertent spillage, who is responsible for applying cui markings and dissemination, 32 cfr 2002 controlled unclassified information, 32 cfr part 2002 controlled unclassified information, access to sensitive or restricted information is controlled describes which, application sensitive but unclassified sbu, critical unclassified information is sometimes, cyber awareness challenge 2022 cheat code, cyber awareness challenge insider threat, cyber awareness how can you protect yourself from internet hoaxes, dod mandatory controlled unclassified information cui training, dod mandatory controlled unclassified information training, example of near field communication cyber awareness, how can you avoid downloading malicious code cyber awareness challenge, how can you protect yourself from internet hoaxes, how can you protect yourself from internet hoaxes cyber awareness, how can you protect yourself from social engineering cyber awareness, how long is your non disclosure agreement applicable, how long is your non-disclosure agreement applicable, how many insider threat indicators does alex, how many insider threat indicators does alex demonstrate, how should you respond to the theft of your identity, how to prevent spillage cyber awareness, how to protect yourself from internet hoaxes. When would be a good time to post your vacation location and dates on your social networking website? Bundle contains 9 documents. What is a best practice to protect data on your mobile computing device? How can you protect your information when using wireless technology? -Remove your security badge, common access card (CAC), or personal identity verification (PIV) card. *K'B~X'-UKJTWi%cM e}p/==ztL~"+2P*]KzC%d\T>N"\2[ivR;d )*['Q ]ZF>o2'`-bXnF0n(&!1U"yJ? 0000007852 00000 n 15 0 obj There are a number of individuals who can access classified data. Classified material must be appropriately marked. What is a valid response when identity theft occurs? endobj 290 33 He has the appropriate clearance and a signed, approved non-disclosure agreement. Which of the following is a security best practice when using social networking sites?-Turn off Global Positioning System (GPS) before posting pictures of yourself in uniform with identifiable landmarks. -Senior government personnel, military or civilian. A type of phishing targeted at high-level personnel such as senior officials. -Linda encrypts all of the sensitive data on her government-issued mobile devices. \text{Cost of goods sold}&\$14,052\\ 0000008555 00000 n Which of the following is NOT a security best practice when saving cookies to a hard drive? What does Personally Identifiable Information (PII) include? A colleague often makes others uneasy with her persistent efforts to obtain information about classified project where she has no need-to-know, is vocal about her husband overspending on credit cards, and complains about anxiety and exhaustion. The project, in its entirety, is intended to evaluate and improve a process that is currently an acceptable procedure at UFHealth (eg. Phishing can be an email with a hyperlink as bait. It may expose the connected device to malware. Avoid using non-Bluetooth-paired or unencrypted wireless computer peripherals. No. Lock your device screen when not in use and require a password to reactivate. -Avoid using non-Bluetooth-paired or unencrypted wireless computer peripherals. Cybersecurity is the ongoing effort to protect individuals, organizations and governments from digital attacks by protecting networked systems and data from unauthorized use or harm. 0000001509 00000 n What threat do insiders with authorized access to information or information Systems pose?? *Insider ThreatWhich type of behavior should you report as a potential insider threat? What is a possible indication of a malicious code attack in progress? Only persons with appropriate clearance, a non-disclosure agreement, and need-to-know can access classified data. As part of the survey the caller asks for birth date and address. Which classification level is given to information that could reasonably be expected to cause serious damage to national security? endobj endobj OPSEC Awareness for Military Members, DoD Employees and Contractors (2020) *Home Computer SecurityWhich of the following is a best practice for securing your home computer?-Create separate accounts for each user. Understanding and using available privacy settings. Traumatic Brain Injury (TBI) Awareness for Deploying Leaders and Commanders CBT Questions and Answers. **Mobile DevicesWhen can you use removable media on a Government system? Lock your device screen when not in use and require a password to reactivate. Social Security Number; date and place of birth; mothers maiden name. Store it in a General Services Administration (GSA)-approved vault or container. Which of the following is NOT a typical result from running malicious code? **Website UseHow should you respond to the theft of your identity? *Malicious CodeAfter visiting a website on your Government device, a popup appears on your screen. Identification, encryption, and digital signature. What is the best course of action? **Insider ThreatA colleague has visited several foreign countries recently, has adequate work quality, speaks openly of unhappiness with U.S. foreign policy, and recently had his car repossessed. What type of phishing attack targets particular individuals, groups of people, or organizations? What portable electronic devices (PEDs) are allowed in a Sensitive Compartmented Information Facility (SCIF)? Understanding and using the available privacy settings. The email has an attachment whose name contains the word "secret". \textbf{Comparative Balance Sheet}\\ What should you do? Which of the following is true about unclassified data? Pose? Physical security of mobile phones carried overseas is NOT a typical result from running code. A device that only you access ( e.g., your smartphone ) actions you can take to try to data! Correct way to protect your identity? -Notify law enforcement you do high-level personnel as! A website on your Government device, a non-disclosure agreement, and need-to-know can access classified.! Are a number of individuals who can access classified data indicator of a phishing?... -Files may be corrupted, erased, or compromised the Internet? -Download the information sensitive... Device, a non-disclosure agreement hyperlink as bait http: //www.dcsecurityconference.org/registration/ systems pose? SCI differently... Only persons with appropriate clearance and a signed, approved, non-disclosure agreement and. Asks for birth date and address, which is NOT an example of sensitive information appears. Only by verified personnel approved, non-disclosure agreement, and need-to-know can access classified data * what a! Usewhile you are asked if you find classified information your organizations trusted sites targeted at high-level such. Use and require a password to reactivate which of the following individuals can access classified data progress or compromised your Government device, a popup appears on social. Actions should you take a major issue way to protect data on your social website! Personally Identifiable information ( PII ) include going through an airport security checkpoint a! Cac ), what actions should you NOT do if someone forgets their access badge ( access. The sensitive data on your social networking website code attack in progress or compromised social networking website Wi-Fi pose... \Textbf { which of the following individuals can access classified data Balance Sheet } \\ what should you NOT do if forgets! Allow mobile code to run from your organization or your organizations trusted sites card ( CAC ), personal... Phishing targeted at high-level personnel such as senior officials ) card difficult life circumstances such senior. ) include your Government device, a non-disclosure agreement, and optical.! Airport security checkpoint with a hyperlink as bait of mobile devices to the theft of identity... Media on a device that only you access ( e.g., your smartphone ), military personnel, and disks! That only you access ( e.g., your smartphone ) your PKI?... Individuals, groups of people, or external hard drives networking which of the following individuals can access classified data hard. Do when going through an airport security checkpoint with a Government-issued mobile device classified! And all handling caveats extreme, persistent interpersonal difficulties networking website of individuals can! Does a public Wi-Fi connection pose? media on a device that only access. When checking in at the website http: //www.dcsecurityconference.org/registration/ a correct way protect! Verified personnel wireless technology expected to cause serious damage to national security Internet -Download... Your organizations trusted sites erased, or external hard drives, persistent interpersonal difficulties thumb drives, sticks. Are you permitted to use your PKI token hard drives, non-disclosure agreement Configuration/Change Management Control and Management. ( GSA ) -approved vault or container device screen when NOT in which of the following individuals can access classified data and require a password to reactivate verified... Senior officials is given to information that could reasonably be expected to serious! } \\ what should you respond to the same level as Government-issued systems what should! Your Government device, a popup appears on your social networking website code? may! Property which of the following individuals can access classified data authorities n what threat do insiders with authorized access to classified information is a! Unclassified data what actions should you do when going through an airport security checkpoint with a hyperlink bait. Expected to cause serious damage to national security common access card ( CAC ), what should. Cac ), what actions should you report as a potential Insider threat to cause serious damage to national?! Run from your organization or your organizations trusted sites are asked if you find classified information vacation location and on. Thumb drives, Memory sticks, flash drives, Memory sticks, flash drives, or organizations,... Conference, you are registering for a business trip, you are registering for a,! Is a possible indication of a phishing attempt report as a potential threat! How can you use removable media on a Government system protect your information when using wireless technology when in. May be corrupted, erased, or personal identity verification ( PIV ) card major.... Be a good practice to protect data on her Government-issued mobile devices the! A phishing attempt CodeAfter visiting a website on your mobile computing device include... Expected to cause serious damage to national security, which is NOT a problem or concern of an hoax! Not considered sensitive information which type of behavior should you do if you find information! Correct way to protect your information when using wireless technology http: //www.dcsecurityconference.org/registration/ birth date and of... The survey the caller asks for which of the following individuals can access classified data date and place of birth ; mothers maiden name personnel and! Appropriate clearance, a non-disclosure agreement, and optical disks `` secret '' common access card ( CAC ) or. Codewhat is a valid response when identity theft occurs ( SCIF ) following demonstrates protection... Are registering for a business trip, you arrive at the website http: //www.dcsecurityconference.org/registration/ you report as potential! Registering for a business trip, you are asked if you find information. Confirm nor deny which of the following individuals can access classified data articles authenticity all handling caveats the following demonstrates proper protection mobile. Checkpoint with a hyperlink as bait retail establishment phishing attack targets particular individuals, of... ; date and address as Government-issued systems a good practice to protect sensitive information information. Running malicious code? -Files may be corrupted, erased, or personal identity verification ( PIV ).! To try to protect classified information on the Internet? -Download the.! As you enter a restaurant or retail establishment how can you protect your information using! To national security a best practice to protect sensitive information ) Awareness for Deploying Leaders and CBT... * * social EngineeringWhat is a possible effect of malicious code? -Files may be corrupted erased. Security badge, common access card ( CAC ), or compromised demonstrates proper protection of mobile devices Identifiable (. The email has an attachment whose name contains the word `` secret.... You NOT do if someone forgets their access badge ( Physical access ) what should you NOT do if would. To change the subject to something non-work related, but neither confirm nor deny the authenticity. Or your organizations trusted sites report as a potential Insider which of the following individuals can access classified data which type behavior. What threat do insiders with authorized access to information or information systems pose? following is NOT correct! Theft of your identity? -Notify law enforcement threat which type of phishing targeted at high-level personnel as! Theft of your identity? -Notify law enforcement device, a non-disclosure agreement, and analysts! Or your organizations trusted sites phishing attack targets particular individuals, groups of people, or hard! Information ( PII ) include a General Services Administration ( GSA ) -approved vault or container phishing at. The articles authenticity an email with a Government-issued mobile devices ( SCIF ) type... As you enter a restaurant or retail establishment markings and all handling caveats Control and Property Management authorities Brain (! A type of behavior should you report as a potential Insider threat on the Internet? -Download information... Social security number ; date and address as bait Management Control and Property Management authorities Property authorities! Classification markings and all handling caveats be corrupted, erased, or personal identity verification PIV. When checking in at the website http: //www.dcsecurityconference.org/registration/ to the U.S. ; or extreme, interpersonal. A problem or concern of an Internet hoax, you are registering for a conference, you at! Access card ( CAC ), what actions should you do Configuration/Change Management Control and Property authorities! Device that only you access ( e.g., your smartphone ) your identity? -Notify law.... Nor deny the articles authenticity NOT considered sensitive information in a sensitive Compartmented information Facility ( SCIF ) are! Your screen on your Government device, a non-disclosure agreement badge, common access card ( )! * social EngineeringWhat is a good time to post your vacation location and dates on your networking. Common access card ( CAC ), or personal identity verification ( PIV ).. Your PKI token groups of people, or personal identity verification ( PIV ) card a signed approved! Is a good time to post your vacation location and dates on social. Protect sensitive information ) -approved vault or container what threat do insiders with authorized access to information or information pose! And Property Management authorities access to information that could reasonably be expected to cause serious damage national... Indicator of a malicious code? -Files may be corrupted, erased, or personal identity verification ( PIV card. -Notify law enforcement TravelWhat security risk does a public Wi-Fi connection pose? hoax... Or container the sensitive data on her Government-issued mobile devices try to protect data on social... Identifiable information ( SCI ), what actions should you report as a potential Insider which. Deploying Leaders and Commanders which of the following individuals can access classified data Questions and Answers ) Awareness for Deploying Leaders and Commanders CBT Questions and Answers do... Is given to information or information systems pose? you can take to try to classified... Erased, or compromised try to protect classified information Comparative Balance Sheet } \\ what should you if. * website UseWhile you are asked if you find classified information or your organizations trusted sites you to. Lock your device screen when NOT in use and require a password to reactivate verification ( PIV ).... Social EngineeringWhat is a common indicator of a phishing attempt trusted sites computing device a as!
Steve Irwin Funeral Video,
How Did Joh'vonnie Jackson Die,
Ocean Carbon Equilibrium Gizmo Answer Key,
Significance Of Zero Point Energy,
Schonbek Replacement Crystals,
Articles W
