Software Security and Cryptography Basics MCQs 2026
24 questions with detailed answers · 10 from past papers · 3 quiz batches available
Choose a Quiz Batch. Each batch has 10 questions from this topic, in order. Take them one by one to work through all 24 MCQs. Login to save your scores and see your best per batch.
Read each question, think about the answer, then click Show Answer to reveal the correct option and explanation. Load 10 at a time so it stays manageable — perfect for one-topic study sessions on the bus or during a break.
- Q1 medium
defense in depth is best defined as
💡 Explanation:defense in depth is a recognized software engineering topic assessed in competitive exams.
- Q2 Past Paper · PPSC/FPSC/NTS easy
least privilege principle is best defined as
💡 Explanation:least privilege principle is a recognized software engineering topic assessed in competitive exams.
- Q3 hard
privilege escalation is best defined as
💡 Explanation:privilege escalation is a recognized software engineering topic assessed in competitive exams.
- Q4 medium
hashing passwords is best defined as
💡 Explanation:hashing passwords is a recognized software engineering topic assessed in competitive exams.
- Q5 Past Paper · PPSC/FPSC/NTS easy
TLS in transit is best defined as
💡 Explanation:TLS in transit is a recognized software engineering topic assessed in competitive exams.
- Q6 hard
encryption at rest is best defined as
💡 Explanation:encryption at rest is a recognized software engineering topic assessed in competitive exams.
- Q7 medium
authorization is best defined as
💡 Explanation:authorization is a recognized software engineering topic assessed in competitive exams.
- Q8 Past Paper · PPSC/FPSC/NTS easy
authentication is best defined as
💡 Explanation:authentication is a recognized software engineering topic assessed in competitive exams.
- Q9 Past Paper · PPSC/FPSC/NTS hard
availability CIA triad is best defined as
💡 Explanation:availability CIA triad is a recognized software engineering topic assessed in competitive exams.
- Q10 Past Paper · PPSC/FPSC/NTS medium
integrity is best defined as
💡 Explanation:integrity is a recognized software engineering topic assessed in competitive exams.
- Q11 Past Paper · PPSC/FPSC/NTS easy
confidentiality is best defined as
💡 Explanation:confidentiality is a recognized software engineering topic assessed in competitive exams.
- Q12 medium
threat modeling is best defined as
💡 Explanation:threat modeling is a recognized software engineering topic assessed in competitive exams.
- Q13 Past Paper · PPSC/FPSC/NTS easy
penetration testing is best defined as
💡 Explanation:penetration testing is a recognized software engineering topic assessed in competitive exams.
- Q14 hard
security audit is best defined as
💡 Explanation:security audit is a recognized software engineering topic assessed in competitive exams.
- Q15 medium
digital certificate is best defined as
💡 Explanation:digital certificate is a recognized software engineering topic assessed in competitive exams.
- Q16 Past Paper · PPSC/FPSC/NTS easy
risk assessment security is best defined as
💡 Explanation:risk assessment security is a recognized software engineering topic assessed in competitive exams.
- Q17 hard
STRIDE model is best defined as
💡 Explanation:STRIDE model is a recognized software engineering topic assessed in competitive exams.
- Q18 medium
buffer overflow is best defined as
💡 Explanation:buffer overflow is a recognized software engineering topic assessed in competitive exams.
- Q19 Past Paper · PPSC/FPSC/NTS easy
CSRF attack is best defined as
💡 Explanation:CSRF attack is a recognized software engineering topic assessed in competitive exams.
- Q20 hard
XSS attack is best defined as
💡 Explanation:XSS attack is a recognized software engineering topic assessed in competitive exams.
- Q21 medium
SQL injection is best defined as
💡 Explanation:SQL injection is a recognized software engineering topic assessed in competitive exams.
- Q22 Past Paper · PPSC/FPSC/NTS easy
OWASP Top Ten is best defined as
💡 Explanation:OWASP Top Ten is a recognized software engineering topic assessed in competitive exams.
- Q23 hard
salt in passwords is best defined as
💡 Explanation:salt in passwords is a recognized software engineering topic assessed in competitive exams.
- Q24 hard
Regarding public key infrastructure in software engineering, the accurate statement is
💡 Explanation:public key infrastructure is a recognized software engineering topic assessed in competitive exams.