INFORMATION SECURITY EXAM
INFORMATION SECURITY EXAM
TIME: 3 HOURS
Page 1
QUESTION TWO (20 MARKS)
a) State three reasons why physical security is needed in relation to PC Security and privacy
(3 Marks)
b) Biometric measurements or personal attributes are used for authentication. These attributes
are unique to the individual seeking to authenticate identification.
i. List any four types of biometrics that are used for authentication (4 Marks)
ii. Discuss the two types of errors that occur when biometrics are used for authentication.
(4 Marks)
c) Pre-emptive techniques have been widely deployed to reduce chances of successful attack.
Briefly describe intrusion deflection, infiltration and intrusion deterrence techniques.
(3 Marks)
d) Discuss any three threats that operating systems are facing and suggest the defense method
for each threat discussed (6 Marks)
Page 2
QUESTION FOUR (20 MARKS)
a) Discuss the following access control models
i. DAC (2 Marks)
ii. MAC (2 Marks)
iii. RBAC (2 Marks)
b) You have been introduced to the security goals within the context of computer and network
security that each organization strives to achieve. Describe any five of these security goals.
(10 Marks)
c) Explain how honeypot and honeynets helps in dealing with security attacks (4 Marks)
Page 3