Software Security and Cryptography Basics MCQs 2026

24 questions with detailed answers · 10 from past papers · 3 quiz batches available

📚 Software Engineering 📄 10 Past-Paper Qs ✓ Free · No Login Needed
🎯 Mock Test

Read each question, think about the answer, then click Show Answer to reveal the correct option and explanation. Load 10 at a time so it stays manageable — perfect for one-topic study sessions on the bus or during a break.

Page 1 of 1 Questions 110 of 24
  1. Q1 medium

    defense in depth is best defined as

    1. A a software security principle, threat or control
    2. B an unrelated hardware manufacturing step
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    defense in depth is a recognized software engineering topic assessed in competitive exams.

  2. Q2 Past Paper · PPSC/FPSC/NTS easy

    least privilege principle is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a software security principle, threat or control
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    least privilege principle is a recognized software engineering topic assessed in competitive exams.

  3. Q3 hard

    privilege escalation is best defined as

    1. A a software security principle, threat or control
    2. B an unrelated hardware manufacturing step
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    privilege escalation is a recognized software engineering topic assessed in competitive exams.

  4. Q4 medium

    hashing passwords is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a software security principle, threat or control
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    hashing passwords is a recognized software engineering topic assessed in competitive exams.

  5. Q5 Past Paper · PPSC/FPSC/NTS easy

    TLS in transit is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    TLS in transit is a recognized software engineering topic assessed in competitive exams.

  6. Q6 hard

    encryption at rest is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    encryption at rest is a recognized software engineering topic assessed in competitive exams.

  7. Q7 medium

    authorization is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a software security principle, threat or control
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    authorization is a recognized software engineering topic assessed in competitive exams.

  8. Q8 Past Paper · PPSC/FPSC/NTS easy

    authentication is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a software security principle, threat or control
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    authentication is a recognized software engineering topic assessed in competitive exams.

  9. Q9 Past Paper · PPSC/FPSC/NTS hard

    availability CIA triad is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a software security principle, threat or control
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    availability CIA triad is a recognized software engineering topic assessed in competitive exams.

  10. Q10 Past Paper · PPSC/FPSC/NTS medium

    integrity is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    integrity is a recognized software engineering topic assessed in competitive exams.

  11. Q11 Past Paper · PPSC/FPSC/NTS easy

    confidentiality is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a software security principle, threat or control
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    confidentiality is a recognized software engineering topic assessed in competitive exams.

  12. Q12 medium

    threat modeling is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a software security principle, threat or control
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    threat modeling is a recognized software engineering topic assessed in competitive exams.

  13. Q13 Past Paper · PPSC/FPSC/NTS easy

    penetration testing is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    penetration testing is a recognized software engineering topic assessed in competitive exams.

  14. Q14 hard

    security audit is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    security audit is a recognized software engineering topic assessed in competitive exams.

  15. Q15 medium

    digital certificate is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a software security principle, threat or control
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    digital certificate is a recognized software engineering topic assessed in competitive exams.

  16. Q16 Past Paper · PPSC/FPSC/NTS easy

    risk assessment security is best defined as

    1. A a software security principle, threat or control
    2. B an unrelated hardware manufacturing step
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    risk assessment security is a recognized software engineering topic assessed in competitive exams.

  17. Q17 hard

    STRIDE model is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a software security principle, threat or control
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    STRIDE model is a recognized software engineering topic assessed in competitive exams.

  18. Q18 medium

    buffer overflow is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    buffer overflow is a recognized software engineering topic assessed in competitive exams.

  19. Q19 Past Paper · PPSC/FPSC/NTS easy

    CSRF attack is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    CSRF attack is a recognized software engineering topic assessed in competitive exams.

  20. Q20 hard

    XSS attack is best defined as

    1. A a software security principle, threat or control
    2. B an unrelated hardware manufacturing step
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    XSS attack is a recognized software engineering topic assessed in competitive exams.

  21. Q21 medium

    SQL injection is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a marketing slogan without technical meaning
    4. D a software security principle, threat or control
    💡 Explanation:

    SQL injection is a recognized software engineering topic assessed in competitive exams.

  22. Q22 Past Paper · PPSC/FPSC/NTS easy

    OWASP Top Ten is best defined as

    1. A an unrelated hardware manufacturing step
    2. B a software security principle, threat or control
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    OWASP Top Ten is a recognized software engineering topic assessed in competitive exams.

  23. Q23 hard

    salt in passwords is best defined as

    1. A a software security principle, threat or control
    2. B an unrelated hardware manufacturing step
    3. C a purely financial accounting entry only
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    salt in passwords is a recognized software engineering topic assessed in competitive exams.

  24. Q24 hard

    Regarding public key infrastructure in software engineering, the accurate statement is

    1. A an unrelated hardware manufacturing step
    2. B a purely financial accounting entry only
    3. C a software security principle, threat or control
    4. D a marketing slogan without technical meaning
    💡 Explanation:

    public key infrastructure is a recognized software engineering topic assessed in competitive exams.