CyberSAFE: Securing Assets for End Users Exam Prep
Free practice questions

Free CyberSAFE Practice Questions

10 exam-style questions with answers and explanations, straight from our 1,030-question bank. Tap an answer to check yourself. When you're ready, take the scored version in the free practice test.

Start the free practice test → ★★★★★4.9/5 from 2,400+ candidates · No signup

These 10 free CyberSAFE questions are organized by exam domain, so you can see how each part of the CyberSAFE: Securing Assets for End Users blueprint is tested. Reveal the answer and explanation under each question.

Domain 1: Use Technology Responsibly 20% of exam

Question 1

Company policy permits an AI writing service for public information, but not employee records. An HR analyst wants help summarizing grievances and has removed names from the records, leaving employee numbers and detailed personal accounts. What use of the service remains within the approved scope?

Show answer & explanation

Correct answer: A - Request a generic grievance-summary template without submitting employee records or details from them.

Question 2

A retailer is reviewing systems that store, process, or transmit customers' payment-card data. The review calls for the payment industry's data-security standard, rather than a general information-security management standard. Which reference applies?

Show answer & explanation

Correct answer: A - PCI DSS

Domain 2: Resist Social-Engineering Attacks 28% of exam

Question 3

Just before the payment cutoff, an accounts-payable clerk receives a call that sounds exactly like the finance director. The caller names a genuine outstanding invoice and asks the clerk to replace the supplier's bank details. Which check provides an independent basis for acting on the request?

Show answer & explanation

Correct answer: A - Call the director on the known directory number and retain the usual payment approvals.

Question 4

Even after typing the usual payroll address correctly, an employee reaches a counterfeit sign-in page. IT traces the redirection to altered network settings that resolve the real address to an attacker's server. Which mechanism is identified by that finding?

Show answer & explanation

Correct answer: B - Pharming

Question 5

'I'm here to repair the projector,' says a contractor outside a badge-controlled door. Reception confirms the appointment, but the contractor has not checked in or received a visitor badge. The employee at the door is not authorized to escort visitors. How can the employee help without bypassing access controls?

Show answer & explanation

Correct answer: C - Direct the contractor to reception for check-in and an authorized escort.

Domain 3: Secure Devices 24% of exam

Question 6

Work email and a shopping account share a password. The email service also asks for a memorized PIN. After the shopping site reports a password breach, IT is securing both accounts. Which replacement email sign-in setup corrects both password reuse and the lack of distinct authentication factors?

Show answer & explanation

Correct answer: D - A unique password from the approved manager plus a code from a registered authenticator app.

Question 7

Files on a work laptop are being renamed rapidly, and a ransom demand appears. The laptop has active Ethernet and Wi-Fi connections; its backup drive is disconnected. The employee has reported the incident by phone and is authorized to isolate the laptop. What is the immediate containment action?

Show answer & explanation

Correct answer: C - Unplug Ethernet and turn off Wi-Fi, keeping the backup drive disconnected.

Domain 4: Use the Internet Securely 28% of exam

Question 8

The genuine payroll service is under example.com. An email's payroll link instead opens https://payroll.example.com.secure-login.example.net/review, with no HTTPS certificate warning. How should this destination be interpreted?

Show answer & explanation

Correct answer: C - It is under example.net; HTTPS does not establish that this is the payroll service.

Question 9

An expected supplier reply includes invoice.docm and the instruction, 'Enable macros to display the amount due.' The employee recognizes the sender's address but has never received a macro-enabled invoice from this supplier. Which assessment of the request is sound?

Show answer & explanation

Correct answer: D - Enabling macros can execute code; a familiar sender does not establish that this file is safe.

Question 10

Company policy authorizes a named external auditor to read a confidential report through the approved corporate cloud service. The auditor's account has been verified, and no editing is needed. Which sharing arrangement grants the required access without extending it?

Show answer & explanation

Correct answer: B - Grant view-only access to the verified auditor account and send the invitation through the service.

That's 10 of 1,030

The full bank has 1,020 more CyberSAFE questions with explanations.

Continue in the free practice test →

View plans