The feature(s) of cyber security is/are :
- (a)Compliance
- (b)Defence against internal threats
- (c)Threat prevention
- (d)All of the above
Correct — D, All of the above. A comprehensive cyber-security posture is not any single feature but a combination: compliance with security standards/regulations, defence against internal (insider) threats, and prevention of external threats (malware, phishing, intrusion) — together.
- (a)Compliance — True in itself, but only one of the three characteristics being tested — the question wants the complete set, not a single feature.
- (b)Defence against internal threats — True in itself, but only covers insider threats — leaves out compliance and prevention of external threats.
- (c)Threat prevention — True in itself, but only covers stopping external attacks — leaves out compliance and defence against internal threats.
Cyber security is a composite discipline that combines several complementary features: regulatory compliance (meeting legal/security standards), defence against internal or insider threats (misuse by employees or trusted users), and prevention of external threats (malware, hacking, phishing, intrusion). None of these alone constitutes 'cyber security' — a robust security posture needs all of them together.
MPPSC frequently sets up 'all of the above' questions by listing several genuinely true but individually incomplete features, so the composite option becomes the correct answer.
- Compliance: adherence to security regulations, standards and organisational policies
- Defence against internal threats: guarding against insider misuse, negligence or malicious access
- Threat prevention: blocking external attacks such as malware, phishing and intrusion attempts
- A comprehensive cyber-security posture integrates all three together, not any single one alone
Each of A, B and C is a genuine but partial feature of cyber security — together they make D, 'All of the above', the complete answer.
- Picking only one feature (compliance, or threat prevention, or internal-threat defence) when the question tests that cyber security is a composite of all of them
- Equating cyber security purely with 'hacking prevention', ignoring compliance and insider-threat dimensions
Often framed as an 'all of the above' composite-feature question — MPPSC lists 2-3 genuinely true but partial features and makes the complete set the answer.
No directly related past PYQ was found.
- practice — not a real PYQ
Insider threats — such as a disgruntled employee misusing access privileges — are addressed by which feature of a comprehensive cyber-security framework?
- (a)Defence/protection against internal threats
- (b)Threat prevention (external)
- (c)Regulatory compliance only
- (d)None of the above
Answer(a) Defence against internal threats.
- practice — not a real PYQ
A comprehensive cyber-security programme typically integrates all of the following EXCEPT:
- (a)Compliance with security regulations/standards
- (b)Prevention of external threats (malware, phishing, intrusion)
- (c)Defence against internal/insider threats
- (d)Guaranteed elimination of all future cyber risk
Answer(d) No security regime can guarantee elimination of all risk — a, b and c are the genuine features.