Accounting /DOD Cyber Awareness Challenge Knowledge Part 2

DOD Cyber Awareness Challenge Knowledge Part 2

Accounting20 CardsCreated 3 months ago

This deck covers key concepts from the DOD Cyber Awareness Challenge, focusing on security practices for handling sensitive information and technologies.

Which of the following is NOT an appropriate use of your Common Access Card (CAC)?

Using it as photo identification with a commercial entity.
Tap or swipe ↕ to flip
Swipe ←→Navigate
SSpeak
FFocus
1/20

Key Terms

Term
Definition
Which of the following is NOT an appropriate use of your Common Access Card (CAC)?
Using it as photo identification with a commercial entity.
Which of the following is NOT a best practice for teleworking in an environment where Internet of Things (IoT) devices are present?
Use the devices' default security settings.
Annabeth becomes aware that a conversation with a co-worker that involved Sensitive Compartmented Information (SCI) may have been overheard by someone who does not have the required clearance. What action should Annabeth take?
Contact her security POC with detailed information about the incident.
How can you protect your home computer?
Regularly back up your files.
How can you prevent viruses and malicious code?
Scan all external files before uploading to your computer.
Mabel is a government employee who needs to share a document containing contractor proprietary information with her supervisor. Which of the following describes the most appropriate way for Mabel to do this?
Encrypt it and send it via digitally signed Government e-mail.

Related Flashcard Decks

Study Tips

  • Press F to enter focus mode for distraction-free studying
  • Review cards regularly to improve retention
  • Try to recall the answer before flipping the card
  • Share this deck with friends to study together
TermDefinition
Which of the following is NOT an appropriate use of your Common Access Card (CAC)?
Using it as photo identification with a commercial entity.
Which of the following is NOT a best practice for teleworking in an environment where Internet of Things (IoT) devices are present?
Use the devices' default security settings.
Annabeth becomes aware that a conversation with a co-worker that involved Sensitive Compartmented Information (SCI) may have been overheard by someone who does not have the required clearance. What action should Annabeth take?
Contact her security POC with detailed information about the incident.
How can you protect your home computer?
Regularly back up your files.
How can you prevent viruses and malicious code?
Scan all external files before uploading to your computer.
Mabel is a government employee who needs to share a document containing contractor proprietary information with her supervisor. Which of the following describes the most appropriate way for Mabel to do this?
Encrypt it and send it via digitally signed Government e-mail.
Which of the following is a best practice for managing connection requests on social networking sites?
Validate connection requests through another source if possible
Which of the following uses of removable media is appropriate?
Transferring unclassified, approved data between two authorized and secured systems.
Which of the following is permitted when using an unclassified laptop within a collateral classified space?
A Government-issue wired headset with microphone
After a classified document is leaked online, it makes national headlines. Which if the following statement is true of the leaked information that is now accessible by the public?
You should still treat it as classified even though it has been compromised.
Which of the following contributes to your online identity?
All of these
Beth taps her phone at a payment terminal to pay for a purchase. Does this pose a security risk?
Yes, there is a risk that signal could be intercepted and altered.
Which of the following is permitted within a Sensitive Compartmented Information Facility (SCIF)?
An authorized Government-owned PED
You receive a phone call offering you a $50 gift card if you participate in a survey. Which course of action should you take?
Decline to participate in the survey. This may be a social engineering attempt.
What is the goal of an Insider Threat Program?
Deter, detect, and mitigate the risks associated with insider threats
Which of the following is true of spillage?
It refers specifically to classified information that becomes publicly available.
Which of the following is true of telework?
You must have permission from your organization to telework.
Which of the following is a step you should NOT take to protect against spillage?
Purge any device's memory before connecting it to a classified network
You receive an e-mail with a link to schedule a time to update software on your government furnished laptop. Your IT department has not scheduled software updates like this in the past and has not announced this software update. The e-mail is not digitally signed. What action should you take?
Report the e-mail to your security POC or help desk
Which of the following describes Sensitive Compartmented Information (SCI)? SCI is a program that ________ various types of classified information for ________ protection and dissemination or distribution control.
segregates; added