Bachelors Level/Third Year/Fifth Semester/Science bit/fifth semester/information security/syllabus wise questions

Bachelors In Information Technology

Institute of Science and Technology, TU

Information Security (BIT303)

Year Asked: 2082, syllabus wise question

Access Control
1.
Differentiate between role based and attribute based access controls. [5]
2.
What do you mean by subjects, objects and access rights? Discuss about ethical issues in cyber security. [2.5+2.5]
Introduction
1.
Explain about threats, attacks and assets. [5]
IT Security Management, Risk Assessment and Security Auditing
1.
Explain the security auditing architecture. [5]
2.
Define security policy. How do you implement logging function? [5]
Legal and Ethical Issues
1.
Define cybercrime and computer crime. Discuss about intellectual property. [5]
Malicious Software
1.
Define malicious software. Explain the different types of malicious softwares. [10]
Message Authentication
1.
What are the purposes of message authentication? Explain the working mechanism of MD5. [10]
Symmetric and Asymmetric Encryption Algorithms
1.
Distinguish between substitution and transposition cipher. How 16 sub keys are generated in DES? Describe in brief. Define finite field with its implications. [10]
2.
Perform polynomial addition, subtraction and multiplication of 2x2+4x+22x^2 + 4x + 2 and 5x+65x + 6 over GF(7)GF(7). [5]
User Authentication
1.
Why do we need two factor authentication? Discuss about security issues for user authentication. [5]
2.
What is attack tree? Describe about password based authentication. [5]