2024 Cyber Awareness Challenge

Which of the following statements about Protected Health Information (PHI) is false?

It is a type of Controlled Unclassified Information (CUI)

Which of the following is an example of a strong password?

d+Uf_4RimUz

What is the goal of an insider Threat Program?

Deter, detect, mitigate the risks associated with insider threats

Which of the following is a best practice for using government email?

Do not send mass e-mails

Which of the following is NOT a best practice for protecting your home wireless network for telework?

Use your routers pre-set service set identifier (SSID) and password

Beth taps her phone at a payment terminal to pay for a purchase. Does this pose a security risk?

Yes, there is a risk that the signal could be intercepted and altered.

Which of the following contributes to your online identity?

All of these

How can you prevent virus and malicious code?

Scan all external files before uploading to your computer

When is the safest time to post on social media about your vacation plans?

After the trip

Which of the following is a best practice for managing connection requests on social networking sites?

Validate connection requests from people with whom you share mutual connections.

What conditions are necessary to be granted access to sensitive compartmented information (SCI)?

Top Secret clearance and indoctrination into the SCI program.

After a classified document is leaked online, it makes national headlines. Which of the following statements is true of the leaked information that is now accessible by the public?

You should still treat it as classified even though it has been compromised.

How can you protect your home computer?

Turn on the password feature.

Which of the following is not appropriate use for your common access card?

Using it as a photo identification with a commercial entity

Which of the following is not a best practice for protecting data on a mobile device?

Disable automatic screen, locking after a period of inactivity

Mabel is a government employee who needs to share a document containing contractor proprietary information with his supervisor. Which of the following describes the most appropriate way from able to do this?

Encrypt it and send it via digitally signed Government e-mail.

Which of the following is permitted when using an unclassified laptop within a collateral classified space?

A Government-issued wired headset with microphone

Which of the following is a best practice when browsing the internet?

Only accept cookies from reputable, trusted websites

Which of the following is an example of behavior that you should report?

Taking sensitive information home for telework without authorization.

Which of the following uses of removable media is appropriate?

Encrypting data stored on removable media.

Which of these is not a potential indicator that your device may be under a malicious code attack?

A notification for a system update that has been publicized

Terri sees a post on her social media feed that says there is a smoke billowing from the Pentagon. The post includes a video that shows smoke billowing from a building that is not readily identifiable as the Pentagon Jerry is not familiar with the source of the post which of the following describes what Terry has likely seen?

This is probably a post designed to attract Terri's attention to click on a link and steal her information

Which of the following is permitted within a Sensitive Compartmented Information Facility (SCIF)?

An authorized Government-owned Portable Electronic Device (PED)

You receive an email with a link to schedule a time to update software on your government furnished laptop. Your IT department has not scheduled software updates like this in the past and has not announced this software update. The e-mail is not digitally signed. What action should you take?

Report the e-mail to your security POC or help desk.

Which of the following is true of transmitting or transporting SCI?

Printed SCI must be retrieved promptly from the printer

Your meeting notes are unclassified. This means that your notes:

Do not have the potential to damage national security.

What type of information does this personnel roster represent?

Controlled Unclassified Information (CUI)

When e-mailing this personnel roster, which of the following should you do?

All 3 – Encrypt, Digitally, Use