Back to Chapter 19 - Security
1. In the Air Force, security applies to
A. all NCOs when on-duty
B. only supervisors and managers
C. civilian employees with clearances
*D. all members of the Air Force at all times
19.1.
2. Information Assurance is the responsibility of
*A. everyone
B. unit security managers
C. unit information managers
D. trained and certified NCOs
19.2.1.
3. In the Air Force, Information Assurance is the responsibility of everyone. Information Assurance is defined as
A. determining the trustworthiness of individuals before they have access to classified information or are assigned to sensitive duties
B. the identification of specific information and sensitive resources that must be protected against compromise or loss while entrusted to industry
C. actions taken to prevent or mitigate hostile actions against DoD personnel (to include family members), resources, facilities, and critical information
*D. measures that protect and defend information and information systems by ensuring their availability, integrity, confidentiality, authentication, and nonrepudiation
19.2.2.
4. The Air Force implements the Information Assurance Program to secure its information and information technology (IT) assets. The Air Force achieves this by using three core information assurance disciplines:
A. industrial security, force protection, and espionage
B. transportation security, operations security (OPSEC), crypto security
C. operations security (OPSEC), information security, and personnel security
*D. communications security (COMSEC), computer security (COMPUSEC), and emissions security (EMSEC)
19.2.3.
5. The Air Force Information Assurance Program is comprised of three programs: Communications Security (COMSEC), Computer Security (COMPUSEC), and Emissions Security (EMSEC). COMPUSEC consists of
A. measures that deny access to information by unauthorized persons and ensure its authenticity
B. determining the trustworthiness of individuals before they have access to classified information
C. measures that deny access to information through interception and analysis of compromising emanations
*D. measures that protect hardware, software, firmware, and information being processed, stored, and communicated
19.3.1.
6. Definition: Any telecommunications or computer-related equipment or interconnected system or subsystems of equipment used in the acquisition, storage, manipulation, management, movement, control, display, transmission, or reception of voice or data and includes software, firmware, and hardware.
A. threat
B. countermeasure
*C. information system
D. Removable Media Control
19.3.2.
7. Definition: An action, device, procedure, technique, or other measure that reduces a vulnerability to an acceptable and manageable level (mitigating the overall threat).
*A. countermeasure
B. malicious logic
C. information system
D. Removable Media Control
19.3.3.
8. Adversaries increasingly rely on unconventional tactics to offset our superiority in conventional forces and technology. What activities pose the greatest threats to communications and information systems?
A. unsecured telephones
B. improper classification of sensitive documents
*C. Information Operations (IO) and Information Warfare (IW)
D. the use of chemical, biological, radiological, nuclear, or high-yield explosives
19.3.4.
9. The Air Force protects information systems from malicious logic (virus, worm, Trojan horse, and Botnets) attacks by applying an appropriate mix of preventive measures to include
A. local policies
B. user awareness training
C. configuration management and antivirus software
*D. all of these answers
19.3.4.1.
10. The Air Force Information Assurance Program is comprised of three programs: Communications Security (COMSEC), Computer Security (COMPUSEC), and Emissions Security (EMSEC). COMSEC consists of
*A. measures that deny access to information by unauthorized persons and ensure its authenticity
B. determining the trustworthiness of individuals before they have access to classified information
C. measures that deny access to information through interception and analysis of compromising emanations
D. measures that protect hardware, software, firmware, and information being processed, stored, and communicated
19.4.
11. The Air Force Information Assurance program is comprised of three programs: Communications Security (COMSEC), Computer Security (COMPUSEC), and Emissions Security (EMSEC). COMSEC itself is comprised of three programs:
*A. Cryptosecurity, Transmission Security, and Physical Security
B. Operations Security, Personnel Security, and Industrial Security
C. Information Security, Personnel Security, and Industrial Security
D. Computer Security, Communications Security, and Emissions Security
19.4.1.
12. The Communications Security (COMSEC) program is comprised of three components: Cryptosecurity, Transmission Security, and Physical Security. Cryptosecurity is a component that
*A. focuses on the provision and proper use of technically sound cryptosystems
B. protects transmissions from interception and exploitation by means other than cryptoanalysis
C. determines the trustworthiness of individuals before they have access to classified information
D. uses all physical measures necessary to safeguard COMSEC material from access by unauthorized persons
19.4.1.
13. The Communications Security (COMSEC) program is comprised of three components: Cryptosecurity, Transmission Security, and Physical Security. Transmission Security is a component that
A. focuses on the provision and proper use of technically sound cryptosystems
*B. protects transmissions from interception and exploitation by means other than cryptoanalysis
C. determines the trustworthiness of individuals before they have access to classified information
D. uses all physical measures necessary to safeguard COMSEC material from access by unauthorized persons
19.4.2.
14. The Communications Security (COMSEC) program is comprised of three components: Cryptosecurity, Transmission Security, and Physical Security. Physical Security is a component that
A. focuses on the provision and proper use of technically sound cryptosystems
B. protects transmissions from interception and exploitation by means other than cryptoanalysis
C. determines the trustworthiness of individuals before they have access to classified information
*D. uses all physical measures necessary to safeguard COMSEC material from access by unauthorized persons
19.4.3.
15. The Air Force Information Assurance Program is comprised of three elements: Communications Security (COMSEC), Computer Security (COMPUSEC), and Emissions Security (EMSEC). Emissions Security consists of
A. measures that deny access to information by unauthorized persons and ensure its authenticity
B. determining the trustworthiness of individuals before they have access to classified information
*C. measures that deny access to information through interception and analysis of compromising emanations
D. measures that protect hardware, software, firmware, and information being processed, stored, and communicated
19.5.