iSACA Cybersecurity Fundamentals Certification Practice Exam

Disable ads (and more) with a membership for a one time $2.99 payment

Enhance your cybersecurity knowledge for the iSACA Cybersecurity Fundamentals Exam with exam-style quizzes. Access flashcards and detailed explanations to ensure success on your certification journey. Prepare with confidence!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


What describes attrition in the context of cybersecurity?

  1. A method to enhance system defenses

  2. A passive attack that gathers data

  3. An attack that uses brute force techniques

  4. A routine security update process

The correct answer is: An attack that uses brute force techniques

Attrition, in the context of cybersecurity, refers to the gradual reduction in the availability of a service or resources, often due to repeated attacks or the loss of key personnel. In a cybersecurity setting, attrition often involves attackers attempting to penetrate defenses using techniques that exploit weaknesses over time. This can include sustained efforts to guess passwords and gain unauthorized access, commonly understood as brute force techniques, where an attacker continuously attempts various combinations until they succeed. Focusing on why brute force techniques relate to attrition: these strategies can be persistent and methodical, often leading to the erosion of defenses as systems struggle to cope with the volume and pressure of repeated login attempts. Thus, the correct answer aligns closely with the concept of attrition as it underscores the impact of repeated, aggressive attempts to gain access to a system. The other answer choices do not capture the essence of attrition in cybersecurity. Methods to enhance system defenses or routine security update processes work against attrition rather than describe it. Similarly, a passive attack that gathers data focuses on information collection without the active, persistent engagement that characterizes attrition.