CFS136 · Principles of Information Security

Chapter 1 Review: Foundations of Cybersecurity and Security Controls

A hands-on review station for the CIA triad, foundational principles, risk management, and the control taxonomy from Chapter 1.

Start Here

Six review stations, each a different way to practice Chapter 1. Work through them in any order. Nothing here is graded or stored, so use it as many times as you like before the quiz or the exam.

What this chapter asked you to be able to do

  • Define confidentiality, integrity, and availability and explain how each applies to a real security decision.
  • Describe the risk management lifecycle: identify assets, threats, and vulnerabilities; assess likelihood and impact; document in a risk register; and select a treatment.
  • Tell apart control categories (technical, managerial, physical, operational) from control types (preventive, detective, corrective, compensating, deterring, directive).
  • Explain AAA, non-repudiation, defense in depth, Zero Trust, and least privilege as foundational principles.
  • Apply the framework to a scenario by identifying assets, assessing threats, and recommending controls.

Your progress this session

These counters update as you check answers on each station. They reset when you reload the page.

0/18Terms viewed
0/7CIA answers correct
0/16Control answers correct
0/7Treatments correct
0/8Principles matched
0/10Quiz correct
How to use each station Make a choice, then select Check to see whether it holds up and why. Every answer includes the reasoning, so a wrong pick is a chance to reread the logic rather than just the label. Keyboard users can move between tabs with the arrow keys.