Page 1 of 1

Module 1 — Security Awareness Foundations assessment

Knowledge check based on Module 1 of the Okimia training program — Security Awareness Foundations. Required for all employees and contractors after the training session. 20 questions, ~10 minutes.

1. Which best describes Okimia's regulatory status?

1. Which best describes Okimia's regulatory status?
A
B
C
D

2. Within how many hours must a confirmed personal data breach be notified to the CNIL under GDPR?

2. Within how many hours must a confirmed personal data breach be notified to the CNIL under GDPR?
A
B
C
D

3. Who is the Data Protection Officer (DPO) at Okimia?

3. Who is the Data Protection Officer (DPO) at Okimia?
A
B
C
D

4. Which documents do you sign upon joining Okimia? (Select all that apply)

4. Which documents do you sign upon joining Okimia? (Select all that apply)

5. Your confidentiality obligation under the NDA ends when:

5. Your confidentiality obligation under the NDA ends when:
A
B
C
D

6. What does the principle of least privilege mean?

6. What does the principle of least privilege mean?
A
B
C
D

7. Who has direct access to Okimia's production database?

7. Who has direct access to Okimia's production database?
A
B
C
D

8. What is the minimum recommended length for a password at Okimia?

8. What is the minimum recommended length for a password at Okimia?
A
B
C
D

9. Which of these are required password practices at Okimia? (Select all that apply)

9. Which of these are required password practices at Okimia? (Select all that apply)

10. On which Okimia tools is 2FA mandatory?

10. On which Okimia tools is 2FA mandatory?
A
B
C
D

11. When working from a café or hotel, what is the correct practice?

11. When working from a café or hotel, what is the correct practice?
A
B
C
D

12. Which of the following are red flags for a phishing email? (Select all that apply)

12. Which of the following are red flags for a phishing email? (Select all that apply)

13. You receive a suspicious email. What is the FIRST thing to do?

13. You receive a suspicious email. What is the FIRST thing to do?
A
B
C
D

14. You realize you clicked a malicious link. What is the right reaction?

14. You realize you clicked a malicious link. What is the right reaction?
A
B
C
D

15. A 'CEO' urgently asks you by email to wire funds to a new account, confidentially. What do you do?

15. A 'CEO' urgently asks you by email to wire funds to a new account, confidentially. What do you do?
A
B
C
D

16. A client asks you to send a copy of their data. What is the right channel?

16. A client asks you to send a copy of their data. What is the right channel?
A
B
C
D

17. Which of the following must be reported as a security incident? (Select all that apply)

17. Which of the following must be reported as a security incident? (Select all that apply)

18. Where should you report a security incident?

18. Where should you report a security incident?
A
B
C
D

19. A teammate asks you for your password 'just for 5 minutes' to finish a demo. The right answer is:

19. A teammate asks you for your password 'just for 5 minutes' to finish a demo. The right answer is:
A
B
C
D

20. Which of the following best summarizes your responsibility after this training?

20. Which of the following best summarizes your responsibility after this training?
A
B
C
D