PYQ'S For Fundamentals of Information Security (SECCS-02)

 PYQ'S For Fundamentals of Information Security  (SECCS-02)


PAPER - DECEMBER 2025

1. Which of the following is known as the "father of the Internet"?

Answer: Vint Cerf (A)


2. What does a domain name represent?

Answer: Human-readable name for a website (B)


3. Which of the following is a key benefit of E-Governance?

Answer: Transparency and reduced delays (B)


4. What is the primary aim of E-Governance?

Answer: Provide efficient and transparent government services (C)


5. Which of the following is NOT a model of E-Governance?

Answer: Mechanical Model (D)


6. Which of the following is the first stage of E-Governance?

Answer: Information (B)


7. Legal infrastructure readiness refers to:

Answer: Ensuring laws and policies support ICT implementation (B)


8. Institutional infrastructure readiness involves:

Answer: Establishing ICT policies and responsible agencies (A)


9. E-Commerce refers to:

Answer: Buying and selling of goods and services over the internet (A)


10. What does DNS primarily do?

Answer: Converts domain names to IP addresses (B)


11. Which stage of E-Governance involves online payments and service delivery?

Answer: Transaction (C)


12. Which protocol is mainly used for routing packets on the Internet?

Answer: IP – Internet Protocol (C)


13. What is the purpose of encryption in information security?

Answer: To make data unreadable to unauthorized users (A)


14. Which E-Governance model focuses on sharing information widely?

Answer: Broadcasting Model (A)


15. What is a major challenge in E-Governance implementation in India?

Answer: Resistance to change (C)


16. Which model helps in analyzing data to compare different options?

Answer: Comparative Analysis Model (A)


17. Which of the following is used for online payment?

Answer: All of the above (D)
(Credit Card, Digital Cash, EFT)


18. Which of the following is a major reason for committing cyber-crimes?

Answer: Curiosity and fun (B)


19. Malware stands for:

Answer: Malicious Software (B)


20. Which of the following is NOT a category of cyber-crime?

Answer: Road Rage (D)

21. Cyber Stalking refers to:

Answer: Using the internet to harass or intimidate someone repeatedly (B)


22. Which of the following is an example of a "Salami Attack"?

Answer: Stealing small amounts of money from multiple accounts (A)


23. Which section of law primarily governs cyber-crimes in India?

Answer: IT Act 2000 (amended 2008) (B)


24. Private IP addresses belong to which category?

Answer: Internal/Local Networks (A)


25. Which of the following is an application of the Internet?

Answer: All of the above (D)

  • E-commerce
  • Video conferencing
  • Online education

26. Which program was launched to transform India into a digitally empowered society?

Answer: Digital India (B)


27. Which of the following is a service under Digital India?

Answer: All of the above (D)

  • DigiLocker
  • e-Hospital
  • e-Police Services

28. What is the main motive behind cyberstalking?

Answer: Harassing someone online (A)


29. What does "E-Readiness" primarily assess?

Answer: A country's ability to use ICT for development (B)


30. What is Electronic Funds Transfer (EFT)?

Answer: Transfer of funds electronically between bank accounts (B)


31. Digital cash is:

Answer: Electronic form of currency used for online payments (D)


32. Google Wallet is an example of:

Answer: Mobile Payment System (C)


33. Cyber-crime refers to:

Answer: Crimes committed using digital devices or the internet (A)


34. Adware is primarily designed to:

Answer: Show unwanted advertisements (B)


35. A virus typically requires:

Answer: A host file to spread (C)


36. Which cyber-crime involves taking control of a website by redirecting its pages?

Answer: Web Jacking (B)


37. Spamming refers to:

Answer: Sending large amounts of unsolicited emails (A)


38. National Information Infrastructure (NII) includes:

Answer: Telecommunications and computer networks (B)


39. Which of the following is NOT an advantage of E-Commerce?

Answer: Limited access to customers (D)


40. What is the main reason for amending the IT Act in 2008?

Answer: Rising cyber-crimes and emerging technologies (B)


PAPER - JUNE 2025

1. What is the role of a payment gateway in E-Commerce?

Answer: Secure online payments (B)


2. Which device is required to connect to the Internet?

Answer: Router (A)


3. What does “E-Commerce” refer to?

Answer: Buying and selling goods or services online (B)


4. Mobile security is also known as?

Answer: Wireless Security (B)


5. Which of the following is an example of a strong password?

Answer: P@ssw0rd123! (C)


6. What is the term for a method that verifies the identity of a user?

Answer: Authentication (A)


7. Which of the following is used to protect e-commerce websites from unauthorized access?

Answer: SSL/TLS Encryption (A)


8. Which of the following is an example of a physical layer device?

Answer: Hub (C)


9. Data ______ is used to ensure confidentiality.

Answer: Encryption (C)


10. Which of the following is an example of a cyber attack targeting e-commerce websites?

Answer: All of the above (D)

  • Phishing
  • DoS Attack
  • SQL Injection

11. Which of the following is NOT a web browser?

Answer: Windows (D)


12. Which of the following is an example of an Internet domain?

Answer: .net (A)


13. Which payment method is most commonly used in E-Commerce?

Answer: Digital Payments (B)


14. Which platform is commonly targeted by spammers?

Answer: All of the above (D)

  • Email
  • Social Media
  • Websites

15. What is the main reason organizations adopt an ISMS?

Answer: To comply with legal and regulatory requirements (A)


16. What does the term ‘whistleblowing’ refer to in information security?

Answer: Reporting unethical or illegal activities (A)


17. Which cybercrime targets financial systems to steal money?

Answer: Financial Fraud (A)


18. The term FTP stands for?

Answer: File Transfer Protocol (C)


19. What is the term for unauthorized use of someone’s computer resources for illegal activities?

Answer: Cryptojacking (B)


20. What is the primary goal of cyber security in e-commerce?

Answer: To protect customer data and transactions (B)

21. In which layer of the OSI model does IP (Internet Protocol) operate?

Answer: Network Layer (C)


22. What is the function of a firewall in securing an e-commerce platform?

Answer: To block unauthorized access (A)


23. What is the term for a malicious program disguised as legitimate software?

Answer: Trojan Horse (A)


24. Which of the following is a key factor in assessing E-Readiness?

Answer: Internet Penetration (A)


25. Which cybercrime involves encrypting a victim’s data and demanding payment?

Answer: Ransomware (A)


26. Which global organization combats organized cybercrime?

Answer: Interpol (A)


27. Which of the following is NOT a benefit of implementing ISMS?

Answer: Reduced legal requirements (D)


28. Why is it unethical to use someone else’s password without permission?

Answer: It violates privacy (A)


29. What is the purpose of spyware?

Answer: To monitor user activity without consent (B)


30. Which technology is commonly used in E-Commerce for personalized recommendations?

Answer: Artificial Intelligence (A)


31. Which term refers to illegally selling stolen data on the dark web?

Answer: Data Trading (D)


32. What is identity theft in the context of cybercrime?

Answer: Using someone’s personal data without permission (A)


33. What is an example of the G2B model?

Answer: Online tax filing by businesses (A)


34. Which of the following is a key component of an ISMS?

Answer: Risk Assessment (A)


35. What is the ethical responsibility of information security professionals?

Answer: To protect user privacy and sensitive data (B)


36. Which of the following is a method used to ensure secure online payments in e-commerce?

Answer: All of the above (D)

  • Digital Certificates
  • Passwords
  • Two-Factor Authentication

37. Which of the following is an example of a physical security measure for information protection?

Answer: Locking computers in a secure room (C)


38. What is the primary purpose of spamming?

Answer: To promote products or services (B)


39. Which of the following is an example of organized cybercrime?

Answer: Cyber Extortion (B)


40. What is Internet?

Answer: A vast collection of different networks (B)


PAPER - DECEMBER 2024

1. What is phishing?

Answer: Sending fraudulent messages to steal personal information (A)


2. What is the role of DNS in the Internet?

Answer: Translating domain names to IP addresses (B)


3. Which of the following is a common objective across all e-governance models?

Answer: Transparency and accountability (B)


4. What is the ultimate benefit of high E-Readiness?

Answer: Enhanced digital inclusion and economic growth (B)


5. What is the main motive behind cyberstalking?

Answer: Harassing someone online (A)


6. What is the purpose of encryption in information security?

Answer: To make data unreadable to unauthorized users (A)


7. What is the first step in the ISMS implementation process?

Answer: Identifying information assets (C)

Note: According to your syllabus (ISMS planning process), asset identification comes before risk assessment.


8. What is the primary goal of the G2E model?

Answer: Facilitate employee training and welfare (A)


9. What is the role of encryption in e-commerce security?

Answer: To prevent unauthorized access to sensitive data (A)


10. Which sector is most affected by low E-Readiness?

Answer: Education (C)


11. Which protocol is used to transfer data securely over the Internet?

Answer: HTTPS (B)


12. Why is transparency important in information security ethics?

Answer: It builds trust and accountability (A)


13. What is a key element of continuous improvement in an ISMS?

Answer: All of the above (D)

  • Periodic risk assessments
  • Regular audits
  • Employee training

14. Which law in India deals with cybercrime?

Answer: IT Act, 2000 (B)


15. Which e-governance model focuses on enhancing the business environment?

Answer: G2B (Government-to-Business) (C)


16. Which cybercrime involves tricking someone to reveal personal information through fake websites?

Answer: Phishing (A)


17. Which cybercrime involved hackers spreading the “WannaCry” ransomware across the globe in 2017?

Answer: WannaCry Ransomware Attack (A)


18. What does ISMS stand for?

Answer: Information Security Management System (B)


19. What is cyber espionage?

Answer: Gathering confidential data from governments or organizations (B)


20. What is the act of sending unwanted bulk emails known as?

Answer: Spamming (A)

21. Which platform is an example of a marketplace model in E-Commerce?

Answer: Amazon (A)


22. Which e-governance model emphasizes providing services directly to citizens?

Answer: Government-to-Citizen (G2C) (C)


23. In which case did hackers steal personal information of 143 million people in 2017?

Answer: Equifax Data Breach (A)


24. What is the term used for a malicious software that damages or disrupts a computer system?

Answer: Malware (A)


25. Which action is considered unethical in information security?

Answer: Unauthorized access to sensitive information (B)


26. What is the full form of ISP?

Answer: Internet Service Provider (C)


27. Which component is NOT directly related to E-Readiness?

Answer: Cultural Heritage Preservation (C)


28. What is the role of a botnet in organized cybercrime?

Answer: Performing coordinated attacks (B)


29. Which device is used to prevent unauthorized access to a network?

Answer: Firewall (B)


30. What is Two-Factor Authentication (2FA) in e-commerce security?

Answer: All of the above (D)

  • Password + Security Question
  • Password + Temporary Code
  • Password + Biometric Data

31. What should be done if a security flaw is discovered?

Answer: Reporting the flaw to the relevant authorities (C)


32. What is malware designed to monitor and steal information from a system called?

Answer: Spyware (A)


33. Which of the following is NOT a type of E-Commerce?

Answer: C2C2B (Consumer-to-Consumer-to-Business) (D)


34. What is the primary goal of information security?

Answer: To protect data from unauthorized access (B)


35. Which of the following is NOT a type of cyber attack?

Answer: Hardware Failure (D)


36. What is the primary goal of organized cybercrime groups?

Answer: Financial Gain (B)


37. Which of the following is a key feature of E-Commerce?

Answer: 24/7 Availability (B)


38. What does SSL stand for in e-commerce security?

Answer: Secure Socket Layer (A)


39. Which of the following is an example of a cybercrime?

Answer: Online Fraud (A)


40. What is the primary purpose of information security ethics?

Answer: To ensure data privacy (A)


High-Probability MCQs for Exam

Q. DNS converts?

Ans: Domain Names → IP Addresses

Q. ISP stands for?

Ans: Internet Service Provider

Q. SSL stands for?

Ans: Secure Socket Layer

Q. Malware stands for?

Ans: Malicious Software

Q. Spyware does what?

Ans: Monitors user activity

Q. Main objective of G2C?

Ans: Citizen services

Q. Main objective of G2B?

Ans: Business services

Q. Main objective of G2E?

Ans: Employee services

Q. Main objective of Information Security?

Ans: Protect data

Q. Main goal of Organized Cybercrime?

Ans: Financial gain


PAPER - JUNE 2024

1. SMTP stands for

Answer: Simple Mail Transfer Protocol (A)


2. How many versions are available of IP?

Answer: 2 Versions (IPv4 and IPv6) (C)


3. The term LAN stands for?

Answer: Local Area Network (B)


4. If systems use separate protocols, which device is used to link two systems?

Answer: Gateway (B)


5. The private key in asymmetric key cryptography is kept by:

Answer: Receiver (B)


6. In which switching method is the message divided into small packets?

Answer: Packet Switching (B)


7. DNS stands for:

Answer: Domain Name System (C)


8. What is a Firewall in Computer Network?

Answer: A system designed to prevent unauthorized access (C)


9. DHCP is the abbreviation of:

Answer: Dynamic Host Configuration Protocol (B)


10. What is the meaning of Bandwidth in Network?

Answer: Transmission capacity of a communication channel (A)


11. Each IP packet must contain:

Answer: Source and Destination Address (C)


12. _____ provides a connection-oriented reliable service for sending messages.

Answer: TCP (A)


13. What is the minimum header size of an IP packet?

Answer: 20 Bytes (C)


14. Which of the following can be Software?

Answer: Firewalls (B)


15. Computer Network is:

Answer: All of the above (D)

  • Collection of hardware and computers
  • Interconnected by communication channels
  • Sharing resources and information

16. A set of rules that govern all aspects of information communication is called:

Answer: Protocol (C)


17. Which set of protocols defines all transmission exchanges across the Internet?

Answer: TCP/IP (B)


18. What is Internet?

Answer: A vast collection of different networks (B)


19. How many layers are present in the Internet Protocol Stack (TCP/IP Model)?

Answer: 5 Layers (A)


20. A program that is used to view websites is called a:

Answer: Browser (A)

21. A collection of hyperlinked documents on the Internet forms the:

Answer: World Wide Web (WWW) (A)


22. The location of a resource on the Internet is given by its:

Answer: URL (B)


23. The term HTTP stands for:

Answer: Hypertext Transfer Protocol (C)


24. Which software prevents external access to a system?

Answer: Firewall (A)


25. Which one of the following is the most common Internet protocol?

Answer: TCP/IP (C)


26. The term FTP stands for:

Answer: File Transfer Protocol (C)


27. Who deploys malware to a system or network?

Answer: Criminal organizations, Black Hat Hackers, Malware Developers, Cyber-Terrorists (B)


28. The full form of Malware is:

Answer: Malicious Software (D)


29. Which of the following is used to protect data and passwords?

Answer: Encryption (A)


30. _____ is NOT a proper method for email security.

Answer: Click on unknown links to explore (A)


31. Authentication is:

Answer: To assure identity of a user on a remote system (B)


32. A virus that migrates freely within a large population of unauthorized email users is called a:

Answer: Worm (D)


33. Data _____ is used to ensure confidentiality.

Answer: Encryption (C)


34. Packet filtering firewalls are deployed on:

Answer: Routers (C)


35. Cybersecurity is also referred to as:

Answer: Information Technology Security (C)


36. Which of the following can be considered as elements of cyber security?

Answer: All of the above (D)

  • Network Security
  • Operational Security
  • Application Security

37. Which type of text is transformed with the help of a cipher algorithm?

Answer: Plain Text (A)


38. In Digital Signature, there is a _____ relationship between signature and message.

Answer: One to One (A)


39. _____ refers to sending email to thousands and thousands of users similar to a chain letter.

Answer: Email Spamming (C)


40. Mobile Security is also known as:

Answer: Wireless Security (B)


MOST IMPORTANT QUESTIONS

Networking

Q. DNS stands for?
Ans: Domain Name System

Q. DHCP stands for?
Ans: Dynamic Host Configuration Protocol

Q. SMTP stands for?
Ans: Simple Mail Transfer Protocol

Q. FTP stands for?
Ans: File Transfer Protocol

Q. HTTP stands for?
Ans: Hypertext Transfer Protocol

Q. TCP/IP is?
Ans: Internet Protocol Suite


Security

Q. Malware stands for?
Ans: Malicious Software

Q. Authentication means?
Ans: Identity Verification

Q. Encryption provides?
Ans: Confidentiality

Q. Firewall does what?
Ans: Prevents Unauthorized Access

Q. Cybersecurity is also called?
Ans: Information Technology Security


Internet Basics

Q. WWW stands for?
Ans: World Wide Web

Q. URL identifies?
Ans: Location of a resource on the Internet

Q. Browser is used for?
Ans: Viewing websites

Q. LAN stands for?
Ans: Local Area Network


PYQ Trend Analysis

After looking at all 4 papers, these topics are repeated the most:

Extremely Important (Almost Guaranteed)

  1. DNS
  2. Firewall
  3. Encryption
  4. Authentication
  5. Malware
  6. Phishing
  7. Cyber Stalking
  8. E-Commerce
  9. E-Governance Models (G2C, G2B, G2E)
  10. E-Readiness
  11. ISMS
  12. IT Act 2000
  13. Digital India
  14. FTP / HTTP / SMTP
  15. TCP/IP
  16. Ransomware
  17. Spyware
  18. Digital Signature
  19. Internet & WWW
  20. ISP

Comments