[Secret Review] Assessment question bank for commercial password application security assessment practitioners (1)

Assessment Question Bank for Practitioners of Security Assessment of Commercial Cryptozoology Applications (1)


The 5,000 reference question bank provided by the National Secretariat is just basic questions. After the 5,000 are updated, other high-quality question banks will be added to continue learning and making progress together.

Insert image description here

1
Multiple-choice question The 20 major themes of the Party are: Hold high the great banner of socialism with Chinese characteristics, fully implement the Thought on Socialism with Chinese Characteristics for a New Era, carry forward the great party-building spirit, be confident and self-reliant, uphold integrity and innovate, (), move forward courageously, and strive for the all-round development We must work together to build a modern socialist country and comprehensively promote the great rejuvenation of the Chinese nation.

A vigorous and vigorous
B move forward bravely
C keep moving forward
D strive to be first

2
Multiple-choice question The 20th National Congress of the Communist Party of China is a very important conference held at a critical moment when the whole Party and the people of all ethnic groups are embarking on a new journey of comprehensively building a modern socialist country and marching towards the goal of ( ).

A's first hundred years
BThe second hundred years
C The third hundred years
D The fourth hundred years

3
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that in the face of the sudden COVID-19 epidemic, we adhere to the people's supremacy, ( ), insist on dynamic clearing and unswerving, carry out people's war, general war, and interception war against the epidemic, and maximize protection We have ensured the safety and health of people and achieved major positive results in coordinating epidemic prevention and control and economic and social development.

A. Spirit comes first.
B. Principle comes first.
C. Confidence comes first.
D life first

4
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that through continuous struggle, we have realized the millennium dream of a moderately prosperous society for the Chinese nation. Nearly () rural poor people have been lifted out of poverty, and more than 9.6 million poor people have been relocated.

A million
B ten million
C100 million
D billion

5
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that China’s GDP has increased from 54 trillion yuan to 114 trillion yuan, and China’s economic aggregate accounts for 18% of the world economy. Point five, an increase of 7.2 percentage points, ranking firmly in the world ( ).

A first
B second
C third
D fourth

6
Multiple choice questions
The report of the 20th National Congress of the Communist Party of China pointed out that China's basic research and original innovation have been continuously strengthened, some key core technologies have achieved breakthroughs, and strategic emerging industries have developed and expanded, entering the ranks of ( ) countries.

A practical type
B development type
C scientific research type
D innovative

7
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that China has become a major trading partner of more than 140 countries and regions, ranking first in total trade in goods, ranking first in the world in attracting foreign capital and overseas investment, forming a larger and more comprehensive A pattern of opening up to the outside world in a wide range of areas and at a deeper level.

A. No. 1 in the world
B second in the world
C third in the world
D fourth in the world

8
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that by implementing ( ) and safeguarding national sovereignty, security, and development interests with firm will and quality, national security has been comprehensively strengthened.

A New Era National Security Concept
BOverall national security concept
CNational security systemDNational
security education

9
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that the practice of "one country, two systems" should be comprehensively and accurately promoted and the principles of "one country, two systems", "Hong Kong people governing Hong Kong" and "Macao people governing Macao" should be adhered to.

A regional autonomy
B comprehensive autonomy
C High degree of autonomy
DBasic autonomy

10
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that through a multi-pronged approach of “fighting tigers”, “swatting flies”, and ( Serious hazard.

A fight against mosquitoes
BFox hunting
C除蚁
D捕狼

11
单项选择题 党的二十大报告指出,中国共产党为什么能,中国特色社会主义为什么好,归根到底是马克思主义行,是( )的马克思主义行。

A中国化时代化
B时代化理论化
C理论化现代化
D中国化现代化

12
单项选择题 党的二十大报告指出,未来( )是全面建设社会主义现代化国家开局起步的关键时期。

A三年
B五年
C十年
D二十年

13
单项选择题
党的二十大报告指出,我国发展进入战略机遇和风险挑战并存、不确定难预料因素增多的时期,各种“黑天鹅”、“( )”事件随时可能发生。

A黄犀牛
B红天鹅
C灰犀牛
D白天鹅

14
单项选择题 党的二十大报告指出,完善个人所得税制度,规范( ),规范财富积累机制,保护合法收入,调节过高收入,取缔非法收入。

A收入来源
B收入分配秩序
C法律法规
D薪资水平

15
单项选择题
党的二十大报告指出,我们要推进( ),坚持山水林田湖草沙一体化保护和系统治理,统筹产业结构调整、污染治理、生态保护、应对气候变化,协同推进降碳、减污、扩绿、增长,推进生态优先、节约集约、绿色低碳发展。

A美丽中国建设
B生态环境整治
C乡村振兴
D环境保护

16
单项选择题 党的二十大报告指出,如期实现建军一百年奋斗目标,加快把人民军队建成世界一流军队,是全面建设社会主义现代化国家的( )。

A方针政策
B战略要求
C使命
D安全保障

17
单项选择题 党的二十大报告指出,我们对新时代党和国家事业发展作出科学完整的战略部署,提出实现中华民族伟大复兴的中国梦,以( )推进中华民族伟大复兴,统揽伟大斗争、伟大工程、伟大事业
、伟大梦想,明确“五位一体”总体布局和“四个全面”战略布局。

A创新式发展
B中国式发展
C全面现代化
D中国式现代化

18
单项选择题 党的二十大报告指出,我们全面加强党的领导,明确中国特色社会主义最本质的特征是( )。

A坚持马克思主义
B坚持人民民主专政
C中国共产党领导
D密切联系群众

19
单项选择题 党的二十大报告指出,( )是社会主义民主政治的本质属性,是最广泛、最真实、最管用的民主。

A全方位人民民主
B全覆盖人民民主
C全参与人民民主
D全过程人民民主

20
单项选择题 党的二十大报告指出,着力推进( ),推动经济实现质的有效提升和量的合理增长。

A共同富裕
B全面乡村振兴
C城乡融合和区域协调发展
D基层民主建设

21
单项选择题
党的二十大报告指出,十年来,我们深入贯彻()的发展思想,在幼有所育、学有所教、劳有所得、病有所医、老有所养、住有所居、弱有所扶上持续用力,人民生活全方位改善。

A人民至上
B以人民为中心
C以发展为中心
D深化改革

22
单项选择题 党的二十大报告指出,我们党作为世界上最大的马克思主义执政党,要始终赢得人民拥护、巩固长期执政地位,必须时刻保持( )的清醒和坚定。

A解决大党独有难题
B赶考
C为民造福,执政为民
D全心全意为人民服务

23
单项选择题 党的二十大报告指出,全面从严治党永远在路上,党的自我革命永远在路上,决不能有( )的情绪,必须持之以恒推进全面从严治党,深入推进新时代党的建设新的伟大工程,以党的自我革命引领社会革命。

A疲劳厌战
B松劲歇脚
C松劲歇脚、疲劳厌战
D疲劳厌战、松劲歇脚

24
单项选择题 党的二十大报告指出,十年来,我们完善外交总体布局,积极建设覆盖全球的伙伴关系网络,推动构建( )。

A现代国际关系
B人类命运共同体
C多边外交关系
D新型国际关系

25
单项选择题 党的二十大报告指出,必须更好发挥法治固根本、稳预期、利长远的保障作用,在( )上全面建设社会主义现代化国家。

A人治轨道
B德治轨道
C法治轨道
D政治轨道

26
Multiple choice questions
The report of the 20th National Congress of the Communist Party of China pointed out that it is necessary to accelerate the development model ( ), further promote the prevention and control of environmental pollution, enhance the diversity, stability and sustainability of the ecosystem, and actively and steadily promote carbon peak and carbon neutrality.

ASmooth transformationBIntelligent
transformation
CGreen transformation
D Rapid Transformation

27
Multiple-choice question The report of the 20th National Congress of the Communist Party of China pointed out that we have launched an unprecedented anti-corruption struggle, with the mission of "offending hundreds of people and living up to 1.4 billion". Advance as one.

A cannot be corrupted
B can't rot
C don't want to rot

D is unwilling to rot

28
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that education, science and technology, and talents are the ( ) support for comprehensively building a modern socialist country.

A basic
B general leadership
C strategic
D decisive

29
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we should adhere to the position of Chinese culture, refine and display the spiritual symbols and cultural essence of Chinese civilization, accelerate the construction of Chinese discourse and Chinese narrative system, tell Chinese stories well, spread Chinese voices well, and demonstrate ( )’s image of China.

A trustworthy
B cute
C respectable

D reliable

30
multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that the "( )" policy is the best way to achieve cross-Strait reunification and is most beneficial to compatriots on both sides of the Strait and the Chinese nation.

A peaceful reunification
B one country, two systems

C peaceful coexistence
D maintain the status quo

31
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we should accelerate the construction of a strong trade country and create a first-class business environment.

A marketization
B legalization
C internationalization

D regionalization

32
Multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we must improve the party’s leadership system that oversees the overall situation and coordinate all parties, improve the implementation mechanism of the Party Central Committee’s major decisions and arrangements, and ensure that the whole party maintains a high degree of consistency with the Party Central Committee on ( ), Ensure the unity and unity of the party.

A political stance
B political direction
C political principle
D political path

33
Multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that adhere to ( ), establish a correct orientation in selecting and employing people, select high-quality professional cadres who are loyal, clean and responsible, select and strengthen leadership groups at all levels, and strengthen the fighting spirit and struggle of cadres The foundation is adopted to encourage cadres to dare to take on responsibilities and take positive actions.

A Having both ability and political integrity
B Putting morality first
C Being from all over the world
D Appointing people on their merits

34
Multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we will persevere in implementing the spirit of the eight central regulations, continue to deepen the rectification of the "four styles", focus on rectifying ( ) and ( ), and resolutely eliminate privileged thoughts and behaviors.

A hedonism
B formalism
C bureaucracy

D flatness

35
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that the majority of young people must unswervingly listen to and follow the Party, embrace dreams and be down-to-earth, dare to think and do well and do well, be determined to do ( ), be able to endure hardships, and be willing to struggle Good young people in the new era, let youth bloom brilliantly in the fervent practice of building a modern socialist country in an all-round way.

A has ideals
B dares to take responsibility

C determined
D confident

36
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we should accelerate the modernization of military theory, military organizational form, military personnel, and weapons and equipment, improve the ability to defend ( ) strategies, and effectively fulfill the missions and tasks of the people's army in the new era.

A national sovereignty
B security
C development interests

DPeople's rights

37
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that the green transformation of development mode should be accelerated. Promoting economic and social development ( ) is a key link in achieving high-quality development.

A greening
B energy conservation
C conservation
D low carbonization

38
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we should persist in ( ) and continue to fight in depth to defend blue skies, clear water and pure land.

A precise pollution control
B. Reasonable pollution control
C. Control pollution scientifically.
D. Control pollution according to law.

39
Multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that the overall prevention and control of social security should be strengthened, the normalization of crackdown on crime and crime should be promoted, and various illegal and criminal activities that the masses have strongly complained about should be severely punished in accordance with the law. Develop and strengthen the power of mass prevention and governance, create a social atmosphere of courage to act for justice, and build a social governance community of ( ).

Everyone participates
BEveryone has a responsibilityCEveryone
has a responsibilityDEveryone
enjoys

40
multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we must adhere to the integrated construction of ( ), comprehensively promote scientific legislation, strict law enforcement, fair justice, and law-abiding by all people, and comprehensively promote the rule of law in all aspects of national work.
Country under the rule of
law Government under the rule
of law Society under the rule of law

rule of law people

41
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we should carry forward the spiritual pedigree of Chinese Communists originating from the great spirit of party founding, make good use of red resources, carry out in-depth publicity and education on socialist core values, deepen () education, and strive to cultivate responsible national A new man of the era with great responsibility for revival.

patriotism
collectivism
socialism

security doctrine

42
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we must realize, safeguard and develop the fundamental interests of the overwhelming majority of the people, firmly grasp the most direct and practical interests of the people, and persist in ( ).

Do our best, act within
our capabilities
, reach out to the masses ,
and go deep into the grassroots

43
Multiple-choice questions "Six must adhere to" means that we must adhere to the people's supremacy, we must adhere to ( ), we must adhere to integrity and innovation, we must adhere to ( ), we must adhere to the system concept, we must adhere to the world-minded.

Self-confidence and self-reliance
Self-confident, self-reliant,
problem-oriented

problem awareness

44
multiple-choice questions The "four comprehensives" strategic layout refers to ( ), ( ), ( ), comprehensive and strict governance of the party.

Comprehensively build a modern socialist country
Comprehensively build a modern socialist country
Comprehensively deepen reforms
and comprehensively govern the country according to law

45
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we adhere to the concept that clear waters and lush mountains are invaluable assets, and the prevention and control of pollution has been advanced in depth, () development has taken solid steps, and ecological and environmental protection has taken a historic, turning and Global changes.

green
Energy saving
Circular
low carbon

46
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that after unremitting efforts, the party has found self-revolution, which is the second answer that escapes the historical cycle of the rise and fall of chaos. The situation has been fundamentally reversed, and a clean and upright political ecology within the party has been continuously formed and developed, ensuring that the party will never deteriorate, change color, or become stale.

Self-purification,
self-improvement
, self-innovation
, self-improvement

47
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we must persist in emancipating the mind, seeking truth from facts, advancing with the times, seeking truth and being pragmatic, proceeding from reality in everything, and focusing on solving practical problems in the reform and opening up and socialist modernization in the new era, Keep answering ( ), make correct answers that conform to China's reality and the requirements of the times, derive scientific understanding that conforms to objective laws, form theoretical results that keep pace with the times, and better guide China's practice.

Questions about China, questions
about the world, questions
about the people, questions
about the times

48
Multiple Choice Questions
The report of the 20th National Congress of the Communist Party of China pointed out that we must be firm ( ), persist in serving the past for the present, weeding out the old and bringing forth the new, integrating the essence of Marxist thought with the essence of China’s excellent traditional culture, and integrating common values ​​​​with the people’s daily use. Integrate.

road confidence
Historical confidence,
cultural confidence

Institutional self-confidence

49
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we must strengthen ( ), persist in ( ), be prepared for danger in times of peace, prepare for rainy days, and be prepared to withstand major tests in high winds, waves and even stormy seas.

awareness of danger
Security awareness
Bottom line awareness
bottom line thinking

50
multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that it is necessary to strengthen the ambition, integrity and confidence of the whole Party and the people of all ethnic groups in the country, not to believe in evil, not to be afraid of ghosts, not to be afraid of pressure, to advance despite difficulties, to face difficulties, and to coordinate ( ) and (), make every effort to overcome various difficulties and challenges on the way forward, and rely on tenacious struggle to open up a new world for career development.

develop
Innovation
Safety
reform

51
Multiple-choice questions
"Four Consciousnesses" refer to political consciousness, ( ).

Awareness of the big picture
awareness of danger
Core Consciousness
Alignment Consciousness

52
multiple-choice questions The report of the 20th National Congress of the Communist Party of China pointed out that ( ) should be implemented in depth, optimize the layout of major productive forces, and build a regional economic layout and land space system with complementary advantages and high-quality development.

Regional coordinated development strategy,
regional major strategy,
main functional area strategy,
new urbanization strategy

53
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we must adhere to the priority development of education, self-reliance in science and technology, and talent leadership, accelerate the construction of (), persist in educating people for the party and the country, and comprehensively improve the quality of independent talent cultivation, Strive to cultivate top innovative talents and gather talents from all over the world.

A strong nation through education, a strong
nation through science and technology , a strong
nation through talent

digital power

54

The multiple-choice question
"Four Greats" refers to the fact that in order to realize the great rejuvenation of the Chinese nation, the Communist Party of China united and led the Chinese people to be confident, self-reliant, upright and innovative, to lead ( ), ( ), great undertakings, ( ), and create a new era. The great achievements of socialism with Chinese characteristics.

Great struggle,
great project

great ideal
great dream

55
multiple-choice questions "Three musts" mean that we must not forget our original intention and keep our mission in mind; we must be modest and prudent, (); we must dare to fight, ().

Beware of arrogance and impetuosity
Hard work,
good at struggle

Dare to fight

56
Multiple choice questions The report of the 20th National Congress of the Communist Party of China pointed out that we must improve the system of people being the masters of the country, expand the people's orderly political participation, ensure that the people implement ( ), democratic management, and democratic supervision in accordance with the law, and give full play to the enthusiasm and initiative of the people , creativity, consolidate and develop a lively, stable and united political situation.

Democratic participation in politics
Democratic elections,
democratic consultations,
democratic decision-making

57
Multiple choice questions ( ) are the most important, fundamental and core principles of our country’s cryptography work.

Adhere to the overall national security concept
and adhere to the unified leadership of the central cryptography leadership agency
Uphold the party's leadership
Adhere to centralized and unified leadership

In 1958
, the Central Institutional Establishment Committee approved the establishment of the State Cryptozoology Administration.

1999
2005
2008
2018

59
multiple-choice questions In 2018, the State Cryptozoology Administration and ( ), one agency with two brands, were included in the sequence of subordinate agencies directly under the Central Committee of the Communist Party of China.

Office of the Central Secrecy Commission
National Security Bureau
Office of the Central Cryptocurrency Leading Group
State Council Information Office

60
Multiple Choice Questions
Regarding the main responsibilities of the State Cryptozoological Administration, which of the following statements is incorrect ( ).

Organize and implement the party and state’s policies, laws and regulations on cryptography work, and
guide cryptography professional education and cryptography academic exchanges
Undertake part of the work of the Central Secrecy Committee
Draft cryptographic work regulations and be responsible for the interpretation of cryptographic regulations

In 1961
, the central government decided to vigorously develop commercial encryption in our country and strengthen the management of commercial encryption.

1980
1988
1990
1996

62
Multiple choice questions Commercial password testing and certification agencies should obtain relevant qualifications in accordance with the law. The following ones have commercial password certification qualifications ( ).

Haofu Password Detection Technology (Chengdu) Co., Ltd.
Dingxuan Commercial Password Evaluation Technology (Shenzhen) Co., Ltd.
Zhixun Password (Shanghai) Detection Technology Co., Ltd.
None of the above

63
Single-choice question According to the "List of Administrative Licensing Matters Set by Laws, Administrative Regulations, and State Council Decisions (2023 Edition)", the following ( ) are not administrative licensing matters that the State Cryptozoology Administration is responsible for reviewing and approving.

Review and appraisal of commercial cryptography scientific research results
Qualification certification of commercial cryptography product quality testing agency
Approval by commercial cryptography research institutes
E-Government Electronic Certification Service Qualification Certification

64
Multiple choice questions Since the 18th National Congress of the Communist Party of China, the State Council has canceled a number of administrative licensing matters that were implemented by the State Cryptozoology Administration. Currently, the following () are still administrative licensing matters.

Approval for production units of commercial cryptographic products.
License for sales units of commercial cryptographic products.
Approval for foreign-invested enterprises using overseas cryptographic products.
Review and Appraisal of Commercial Cryptozoological Research Achievements

65
multiple-choice questions Promoting the application of passwords requires close cooperation between the password management department and relevant departments, division of labor, and overall coordination. Specifically, it should be ().

Strengthen top-level system design
Emphasis on the power of password management departments
Improve the coordination working mechanism
and form a strong guarantee mechanism

66
multiple-choice questions The main tasks for the development of commercial encryption in China in the new era include ( ).

Deepen the reform of commercial password management
Strengthen exclusive control and management of commercial passwords
Strengthen independent innovation in commercial cryptography
and promote the correct and effective application of commercial cryptography compliance

67
multiple-choice questions The overall framework of “2522” for digital China’s construction refers to ( ).

Consolidate the "two foundations" of digital infrastructure and data resource systems;
promote the deep integration of digital technology with economic, political, cultural, social, and ecological civilization construction; strengthen
the two major capabilities of digital technology innovation system and digital security barrier;
optimize digital development domestically and internationally two environments

68
multiple-choice questions The Regional Comprehensive Economic Partnership Agreement (RCEP) will officially enter into force for China on January 1, 2022. The following statement about RCEP is correct ( ).

Reaffirm the legal validity of electronic signatures using cryptography as the main application scenario
Each State Party shall cooperate on matters related to cybersecurity.
Each State Party may have its own measures regarding the use or location of computing facilities, including requirements that seek to ensure the security and confidentiality of communications.
Data localization shall not be mandatory for other States Parties within the territory of a State. Conditions for conducting business

69
multiple-choice questions According to the "14th Five-Year Plan for National Economic and Social Development and the Outline of Long-term Goals for 2035", the following ( ) aspects involve cryptography technology and applications.

Data Security
Digital Currency

data standards
network infrastructure

The 70
multiple-choice questions are based on the "List of Administrative Licensing Matters Set by Laws, Administrative Regulations, and State Council Decisions (2023 Edition)", among which licensing matters involving the cryptography field include ( ).

Review and appraisal of commercial cryptography scientific research results Qualification accreditation
of commercial cryptography product quality inspection agencies License
to use passwords for electronic authentication services
Qualification accreditation of e-government electronic authentication services

71
Multiple-choice questions According to the "Market Access Negative List (2022 Edition)" jointly issued by the National Development and Reform Commission and the Ministry of Commerce, the following matters that require permission from the State Cryptozoology Administration are ( ).

Review and Appraisal of Commercial Cryptozoological Research Achievements
Qualification accreditation of commercial encryption product quality inspection agency
Electronic authentication service license
Electronic authentication service use password license

72
True or False Questions According to the "14th Five-Year Plan for Promoting National Government Informatization Plan", strengthening network security includes promoting the application of passwords.

correct
mistake

73
True or False Questions According to the "List of Administrative Licensing Matters Set by Laws, Administrative Regulations, and State Council Decisions (2023 Edition)", there are four administrative licensing matters that the State Cryptozoology Administration is responsible for.

correct
mistake

74
True or False Questions The five major safeguard measures in the “14th Five-Year Plan for Digital Economy Development Plan” clearly strengthen monitoring and evaluation, including security assessment of commercial password applications.

correct
mistake

75
Multiple Choice Questions The term "password" in the "Cryptozoology Law" refers to technologies, products and services that use ( ) to encrypt, protect and securely authenticate information.

Mathematical transformation method
Shift transformation method
specific transformation methods
dot multiplication method

76
Multiple Choice Questions "Cryptozoology" as mentioned in the "Cryptozoology Law" refers to technologies, products and services that use specific transformation methods to ( ) information, etc.

Encryption protection, security authentication
Encryption protection,
security authentication,
anonymity protection

77
Multiple-choice question
Which of the following is not a password regulated by the "Cryptozoology Law" ( ).

case-based password
Alipay login password
Anti-quantum cryptography
Encryption algorithm for anti-counterfeiting identifiers of tax stamps

78
multiple choice questions According to the "Cryptozoology Law", cryptography work adheres to ( ), follows the principles of unified leadership, hierarchical responsibility, innovative development, serving the overall situation, management in accordance with the law, and ensuring security.

overall national security concept
Overall national security concept
Comprehensive national security concept
Security development concept

79

Multiple choice questions

In accordance with the Cryptozoology Law, the leadership of the Communist Party of China over cryptography work is upheld. () Implement unified leadership over the national cryptography work, formulate major national cryptography work guidelines and policies, coordinate major national cryptography matters and important work, and promote the construction of national cryptography rule of law.

Central state agencies
National cryptography management department
Standing Committee of the National People's Congress
Central cryptography leading agency

80
multiple-choice questions According to the "Cryptozoology Law", ( ) is responsible for managing the country's cryptography work.

National Security Department
Public Security Department of the State Council
National Cyberspace Administration
National cryptography management department

81
Multiple choice questions
According to the "Cryptozoology Law", the state implements ( ) management of cryptography.

Unify
and coordinate
Classification
efficient

82
Multiple choice questions According to the "Cryptozoology Law", the state implements classified management of passwords and divides passwords into ( ).

Core passwords and commercial passwords
Common passwords and commercial passwords
Military passwords and civilian passwords
Core passwords, common passwords and commercial passwords

83
Multiple choice questions According to the "Cryptozoology Law", which of the following types of passwords need to be strictly and uniformly managed ( ).

core password
Commercial cryptographic products
Commercial cryptographic technology
Commercial cryptographic services

84
Multiple Choice Questions According to the "Cryptography Law", core passwords and ordinary passwords are used to protect state secret information. The highest confidentiality level of information protected by core passwords is (), and the highest confidentiality level of information protected by ordinary passwords is ().

Confidential level, top secret level
Confidential level, top secret level
Top secret, confidential level
Top secret level, secret level

85
Multiple Choice Question
Regarding "Cryptozoology", which of the following statements is wrong ( ).

The passwords referred to in this law are not login or payment passwords composed of numbers, letters and symbols.
People's governments at or above the county level shall include the funds required for cryptography work in the fiscal budget at the same level and
adopt commercial cryptography matters that combine daily supervision and random inspections. Interim and ex post supervision system
Core passwords, ordinary passwords and commercial passwords are used to protect information that is state secrets

86
Multiple Choice Questions According to the current legal regulations in China, the correct statement about commercial passwords is ( ).

Internet companies can use commercial passwords to protect important data in accordance with the law
Commercial passwords cannot be used to protect state secret-level information.
The state implements strict unified management of commercial passwords.
The state implements classified and hierarchical management of commercial passwords.

87
Multiple choice questions
According to the "Cryptozoology Law", regarding the use of commercial cryptographic products, which of the following statements is correct ( ).

Chinese citizens can use commercial encryption products in accordance with the law
The use of commercial encryption products by overseas organizations within the territory of China requires approval by the State Cryptography Administration. The
use of commercial encryption products by Chinese citizens requires approval by the State Cryptography Administration. The
use of commercial encryption by overseas individuals within the territory of China requires approval by the State Cryptography Administration.

88
Multiple choice questions
According to the "Cryptozoology Law", regarding the use of commercial passwords, which of the following statements is wrong ( ).

Citizens can use commercial passwords to protect personal information
Critical information infrastructure operators can only use commercial passwords to protect state secrets
Important data processors can use commercial passwords to protect important data
Enterprises can use commercial passwords to protect business secrets

89
Multiple choice questions According to the "Cryptozoology Law", citizens, legal persons and other organizations can use ( ) to protect network and information security in accordance with the law.

Core password
Ordinary password
Commercial password
civilian code

90
multiple-choice questions According to the "Cryptozoology Law", the state strengthens cryptography ( ) and team building, and commends and rewards organizations and individuals who have made ( ) in cryptography work in accordance with relevant national regulations.

Talent cultivation, outstanding contributions
Education and training, outstanding achievements.
Personnel quality, outstanding contributions.
Education and training, outstanding contributions.

91
Multiple choice questions According to the "Cryptozoology Law", the state adopts various forms to strengthen password security education, including password security education (), and enhance the password security awareness of citizens, legal persons and other organizations.

9-year compulsory education system and national education system
National education system and civil servant education and training system
Civil service education system and adult education system
Adult education system and nine-year compulsory education system

92
Single-choice questions According to the "Cryptozoology Law", people's governments at or above the county level shall include cryptography work in the national economic and social development plan at the same level, and the required funds shall be included in the ( ) fiscal budget.

Central
superior
This level
subordinate

93
Multiple choice questions According to the "Cryptozoology Law", no organization or individual may steal other people's encrypted protected information or illegally invade other people's ( ) systems.

encryption
Password protection
Cryptographic technology
key management

94
Multiple choice questions According to the "Cryptozoology Law", the cryptography management department shall work with relevant departments to establish collaboration mechanisms for core passwords and common passwords and emergency response according to work needs to ensure coordinated, orderly and efficient security management of core passwords and common passwords. .

Safety monitoring and early warning, safety risk assessment, information notification, and consultation on major matters
Safety monitoring and early warning, safety risk assessment, consultation on major matters
Safety monitoring and early warning, information sharing, consultation on major matters
Safety risk assessment, incident reporting, consultation on major matters

95
Multiple choice questions According to the "Cryptozoology Law", when cryptography agencies discover major issues that affect the security of core passwords and ordinary passwords, they should ( ).

Take
immediate measures. Report to the confidentiality administration department
in a timely manner. Report to the password management department in a timely manner.
All of the above

96
Multiple choice questions According to the "Cryptozoology Law", due to work needs and in accordance with relevant national regulations, the cryptography management department may request relevant departments to provide conveniences such as exemption from inspection for () related items and personnel.

Commercial password
Core password, common password
Core password
Ordinary password

97
Multiple choice questions According to the "Cryptozoology Law", due to work needs and in accordance with relevant national regulations, the cryptography management department may request ( ) and other departments to provide conveniences such as exemption from inspection for items and personnel related to core cryptography and ordinary cryptography, and relevant departments shall provide assistance.

Public Security
Transportation
Customs
All of the above are correct

98

Single-choice question According to the "Cryptozoology Law", cryptography management departments and cryptography work agencies should establish and improve strict supervision and security review systems, supervise their staff's compliance with laws and disciplines, and take necessary measures in accordance with the law, regularly or irregularly Organize and carry out ().

Comprehensive inspection
security clearance
Security Check
Security Assessment

99
Multiple Choice Questions According to the Cryptozoology Law, the state encourages the research and development, academic exchanges, achievement transformation, promotion and application of commercial cryptography technology, improves () the commercial cryptography market system, and encourages and promotes the development of the commercial cryptography industry.

Unified, open, competitive, orderly
Harmony, prosperity,
stability, efficiency, openness and inclusiveness,
low risk, high returns

100
multiple-choice questions According to the "Cryptozoology Law", people's governments at all levels and their relevant departments shall follow ( ) and treat commercial cryptography practitioners, including foreign-invested enterprises, equally in accordance with the law.

The principle of openness,
the principle of equality,
the principle of voluntariness
non-discrimination principle

101
multiple choice questions

Which of the following statements does not comply with the provisions of the Cryptozoology Law ( ).

People's governments at all levels and their relevant departments encourage and promote the development of the commercial cryptography industry.
Treat commercial cryptography practitioners, including foreign-invested enterprises, equally
in accordance with the law. Encourage commercial cryptography technology cooperation based on the principle of voluntariness and business rules in the process of foreign investment.
Administrative agencies and their staff may use administrative means to force the transfer of commercial encryption technology

102
Multiple Choice Questions According to the "Cryptozoology Law", the state supports social groups and enterprises to use independent innovative technologies to formulate () commercial encryption group standards and enterprise standards with relevant technical requirements for national standards and industry standards.

less than
more than
higher than
Equivalent to

103
Multiple Choice Questions According to the "Cryptozoology Law", the state encourages commercial cryptography practitioners to adopt commercial cryptography ( ) and industry standards to improve the protection capabilities of commercial cryptography and safeguard the legitimate rights and interests of users.

Innovation standards
Mandatory national standards
International standards
Recommended national standards

104
multiple-choice questions According to the "Cryptozoology Law", the state encourages commercial cryptography practitioners () to conduct commercial cryptography testing and certification to enhance market competitiveness.

Actively apply
voluntarily accept
Active application
Passive acceptance

105
Multiple Choice Questions According to the Cryptozoology Law, commercial cryptography testing and certification agencies shall obtain relevant qualifications in accordance with the law, and carry out commercial cryptography testing and certification in accordance with laws, administrative regulations and commercial cryptography testing and certification ( ) and rules.

specifications
Best Practices
Implementation Guide
Work Guide

106
Single-choice question According to the "Cryptozoology Law", commercial encryption testing and certification agencies shall bear the obligation to keep confidential ( ) that they know during commercial encryption testing and certification.

State secrets and commercial secrets
State secrets or trade secrets
State secrets
Trade secrets

107
Multiple Choice Question
"Cryptozoology Law" clarifies the testing and certification system for commercial passwords. Which of the following statements is correct ( ).

At present, our country adopts the approval of commercial encryption product varieties and models
. Commercial encryption services that use key network equipment shall implement voluntary certification.
Commercial encryption products involving social and public interests shall implement a voluntary testing system.
In commercial password testing and certification, voluntary testing and certification have become the main method

108
Multiple-choice question According to the "Cryptozoology Law", commercial encryption products involving ( ) shall be included in the catalog of key network equipment and network security products in accordance with the law, and must be tested and certified by a qualified institution before they can be sold or provided.

National security,
national economy and people’s livelihood
, social and public interests
All of the above

109
Single-choice question According to the "Cryptozoology Law", if a commercial cryptography service uses ( ), the commercial cryptography service must be certified by a commercial cryptography certification agency.

Key network equipment and network security-specific products
Critical information infrastructure,
key network equipment,
specialized network security products

110
Multiple choice questions According to the "Cryptozoology Law", the security assessment of commercial encryption applications should be connected with ( ) and the network security level assessment system to avoid repeated assessment and assessment.

Critical Information Infrastructure National Security Review
Cybersecurity Risk Assessment
Critical Information Infrastructure Security Detection and Assessment
Network security testing and certification

111
Multiple Choice Questions According to the "Cryptozoology Law", operators of critical information infrastructure who purchase network products and services involving commercial cryptography that may affect national security shall, in accordance with the provisions of ( ), contact the national cybersecurity and informatization department in conjunction with the national cryptography management department. and other national security reviews organized by relevant departments.

"Administrative Licensing Law of the People's Republic of China"
"Criminal Law of the People's Republic of China"
"Cybersecurity Law of the People's Republic of China"
"Production Safety Law of the People's Republic of China"

112
Multiple Choice Question The "Cryptozoology Law" stipulates a national security review system for the use of commercial encryption in critical information infrastructure. Regarding this system, the following statement is correct ( ).

This system is part of the cybersecurity review stipulated in the Cybersecurity Law
该制度由国家安全部门单独落实
该制度设计初衷主要是维护关键信息基础设施运营者的利益
该制度与《国家安全法》规定的国家安全审查制度是两个独立制度

113
单项选择题 根据《密码法》,商用密码进口许可清单和出口管制清单由国务院商务主管部门会同国家密码管理部门和( )制定并公布。

市场监管部门
海关总署
国家网信部门
国务院公安部门

114
单项选择题 根据《密码法》,大众消费类产品所采用的商用密码( )进口许可和出口管制制度。

实行
不实行
选择实行
有条件实行

115
单项选择题 根据《密码法》,实施进口许可的商用密码应符合的条件是( )。

涉及国家安全且具有安全认证功能
涉及社会公共利益且具有安全认证功能
中国承担国际义务
涉及国家安全、社会公共利益且具有加密保护功能

116
单项选择题
根据《密码法》,关于我国商用密码进口许可和出口管制,下列说法正确的是( )。

大众消费类产品所采用的商用密码进出口需要经过许可
商用密码进口许可和出口管制采用清单制
商用密码进出口有白名单制度,列入白名单的国家及地区可以免予许可审批流程
进口许可和出口管制的商用密码范围和类型一致

117
单项选择题 根据《密码法》,国家密码管理部门对采用商用密码技术从事电子政务电子认证服务的机构进行认定,会同有关部门负责政务活动中使用( )
、数据电文的管理。

电子数据
电子签名
Electronic documents
Electronic certificates

118
Multiple choice question
According to the "Cryptozoology Law", the incorrect statement about the functions and roles of industry associations in the field of commercial cryptography is ( ).

Provide information, technology, training and other services to commercial cryptography practitioners.
Guide and urge commercial cryptography practitioners to carry out commercial cryptography activities
in accordance with the law. Strengthen industry self-discipline and promote industry integrity through industry self-discipline conventions and other means.
Provide testing and certification services to commercial cryptography practitioners

119
Multiple Choice Questions The "Cryptozoology Law" stipulates that the cryptography management department and relevant departments shall establish a unified commercial cryptography supervision and management information platform to promote the connection between interim and ex-post supervision and ( ).

Punishment system for breach of trust
social credit system
National credit system
Credit reporting system

120
Multiple Choice Questions According to the "Cryptozoology Law", the cryptography management department and relevant departments have established ( ) an interim and ex-post supervision system for commercial cryptography.

Periodic inspection
Combination of daily supervision and random inspections
Special operation:
double random, not public

121
Single-choice question According to the "Cryptozoology Law", if a case of core password or ordinary password leakage occurs, ( ) recommends that the relevant state agencies and units punish or handle the directly responsible person in charge and other directly responsible personnel in accordance with the law.

Confidentiality Administration Department
Password Management Department
Confidentiality administration department, password management department
national security department

122
Single-choice questions According to the "Cryptozoology Law", if a commercial cryptography certification agency leaks the commercial secrets it learned during the commercial cryptography certification, the ( ) shall, together with the cryptography management department, order it to correct or stop the illegal behavior, give a warning, and confiscate the illegal gains.

National Cyberspace Administration
market supervision and administration department
Commerce Department of the
State Council General Administration of Customs

123
Single choice question According to the "Cryptozoology Law" and the "Regulations on the Management of Commercial Cryptozoology", regarding the administrative penalties for commercial cryptography testing agencies that illegally carry out commercial cryptography testing, which of the following statements is correct ( ).

Conducted by the password management department Conducted
by the market supervision and management department
It will be carried out by the market supervision and administration department in conjunction with the password management department.
Conducted by the market supervision and administration department or password management department

124
Multiple-choice questions
: When operators of critical information infrastructure violate the provisions of the Cryptozoology Law and use products or services that have not been reviewed or failed to pass the security review, which of the following is wrong regarding the legal liability they should bear ( ).

A. Illegal products and illegal income shall be confiscated by relevant competent authorities.
B. Ordered to stop use by the relevant competent department
C. Fined not less than one time but not more than ten times the purchase amount by the relevant competent department
D. Not less than RMB 10,000 but not more than RMB 100,000 imposed by the relevant competent department on the directly responsible person in charge and other directly responsible personnel The following fines

125
Single-choice question "The Cryptozoology Law" stipulates the legal liability for critical information infrastructure operators who fail to use commercial encryption as required. Which of the following is wrong ( ).

A. Order to correct
B. Warn
C. Fine
D.Revocation of business license

126
Multiple Choice Questions According to the Cryptozoology Law, operators of critical information infrastructure who use products or services that have not undergone security review or have failed security review shall bear legal liabilities including ( ).

A. Order to stop using
B. Warning
C. Revocation of relevant qualifications
D. None of the above are correct

127
Single-choice question Anyone who violates the provisions of the "Cryptozoology Law" in importing and exporting commercial cryptography shall be punished by () in accordance with the law.

A. The commerce department of the State Council in conjunction with the customs
B. The commerce department of the State Council or the customs
C.国务院商务主管部门会同密码管理部门
D.国务院商务主管部门或者密码管理部门

128
单项选择题 根据《密码法》,某单位未经认定从事电子政务电子认证服务,则密码管理部门有权实施的行政处罚包括( )。

A.警告
B.没收违法所得
C.罚款
D.以上都是

129
单项选择题 《密码法》的正式施行日期是( )。

A.2020年1月1日
B.2021年1月1日
C.2020年6月1日
D.2019年10月26日

130
单项选择题 《密码法》规定,我国密码管理体制自上而下分为( )级。

A.五
B.四
C.三
D.二

131
单项选择题 ( )不属于《密码法》中规定的国家机关和涉及密码工作的单位。

A.某市公安局
B.承担密码管理职责的企业
C.承担密码管理职责的事业单位
D.某市密码管理局

132
单项选择题 根据《密码法》,以下关于商用密码检测、认证体系和商用密码检测、认证机构管理的表述,正确的是( )。

A.商用密码检测认证中,自愿检测认证是主要方式
B.商用密码检测认证中,强制检测认证是主要方式
C.商用密码检测、认证机构资质由国家密码管理局单独管理
D.商用密码检测、认证机构可以取得统一的商用密码检测认证机构资质

133
Multiple choice questions According to the "Cryptozoology Law", the qualifications of commercial cryptography certification agencies are included in the certification and accreditation system stipulated in the "Certification and Accreditation" regulations, and are managed by ( ) in conjunction with the State Cryptography Administration.

A. State Administration for Market Regulation
B. Ministry of Public Security
C. National Internet Information Office
D. Ministry of Industry and Information Technology

134
Multiple choice questions Which of the following products or services does not use commercial encryption technology ().

A. Network cipher machine
B. First generation resident ID card
C. Password protection system integration
D. Social security card

135
Multiple choice question According to the "Cryptozoology Law", regarding the characteristics of commercial encryption used in mass consumer products, which of the following statements is correct ( ).

A. For use by confidential units
B. Password functions can be easily changed
C. Purchases through regular retail channels will be subject to certain restrictions
D. The risk to national security is small and controllable

136
Multiple choice question Which of the following is not a commercial password used in mass consumer products ( ).

A.Digital TV smart card
B.Bluetooth module
C. Dongle for intellectual property protection
D. Wired encrypted telephone

137

Single-choice question According to the "Cryptozoology Law", the national cryptography management department identifies institutions that use cryptography technology to engage in e-government electronic authentication services. Regarding the identification of e-government electronic authentication service institutions, which of the following statements is correct ( ).

A. To a certain extent, there are duplicate licenses with electronic certification service agencies
. B. It is consistent with the approval objects of electronic certification service agencies.
C. It can be applied to electronic certification service agencies in the field of e-commerce.
D. Administrative licensing should be used to evaluate the e-government electronic certification service capabilities of service agencies.

138
Multiple choice question According to the "Cryptozoology Law", regarding the approval objects identified by the e-government electronic certification service agency, which of the following statements is correct ( ).

A. Only commercial enterprises
B. Excluding public institutions that provide public services
C. Only including public institutions that provide public services
D. Including commercial enterprises and institutions providing public services

139
Multiple choice questions According to the "Cryptozoology Law", on the premise of protecting information involving (), business secrets, personal privacy and other information, the cryptography management department and relevant departments shall do a good job in disclosing credit information related to commercial cryptography in accordance with the law.

A. State secrets
B. Corporate information
C. Personal information
D.Intelligence information

140
Multiple Choice Questions In the "double randomization, one disclosure" method implemented in the daily supervision of commercial passwords, "double randomization" refers to ( ).

A. Randomly select inspection objects and randomly select law enforcement inspectors
B. Randomly select password management departments and randomly select law enforcement inspectors.
C. Randomly select password management departments and randomly select inspection objects.
D. Randomly select inspection objects and randomly select testing and certification institutions.

141
Single-choice question In the supervision of commercial encryption, the encryption management department shall not require commercial encryption practitioners to disclose encryption-related proprietary information to them. Which of the following does not belong to this type of information ( ).

A. Source code
B. Private key
C.Public key
D. Algorithm specifications or other design details

142
Multiple Choice Questions According to the "Cryptozoology Law", if a critical information infrastructure operator fails to use commercial passwords as required, resulting in consequences that endanger network security, the directly responsible person in charge shall be fined. The following are not "directly responsible person in charge": ( ).

A. The person who plays a decisive role in committing illegal acts
B. The person who plays a commanding role in committing illegal acts
C. The person who instructs the implementation of illegal acts
D. Persons who specifically commit illegal acts and play a greater role

143
Multiple choice question Regarding the recognition and rewards for password work, which of the following statements is wrong ().

A. The targets are mainly relevant organizations and individuals who have played an important role in serving the overall work of the party and the country and made important contributions to the progress of cryptographic science and technology. B. Adhere to the combination of spiritual rewards
and material rewards.
C. Mainly material rewards
D. Commendation and reward work follows the principles of encouraging innovation, promoting development, fairness and justice, and strict control.

144
Multiple choice question Which of the following does not fall under the circumstances where operators of critical information infrastructure as stipulated in the Cryptozoology Law violate the requirements for the use of commercial encryption ().

A. Critical information infrastructure operators fail to use commercial passwords as required.
B. Critical information infrastructure operators fail to conduct commercial password application security assessments as required.
C. Critical information infrastructure operators use commercial passwords without security review or fail to pass the security review. products or services
D. Critical information infrastructure operators failed to carry out commercial password testing and certification as required.

145
Multiple Choice Questions According to the "Commercial Cryptozoology Knowledge and Policy Cadre Reader", when applying for the "Cryptocurrency Use License for Electronic Authentication Services", you must first pass a security review, and establish and operate a certificate authentication system for the organization that plans to provide electronic authentication services ( ) proceed checking.

A. Functional performance and interconnection status
B. Functional performance and safety measures
C. Security measures and interconnection conditions
D. Security measures

146
Multiple choice questions According to the "Administrative Measures for Security Assessment of Commercial Cryptozoology Applications (Trial)", the security assessment of commercial cryptography applications refers to the evaluation of cryptographic applications of networks and information systems integrated with commercial cryptography technologies, products and services. .

A. Compliance
B. Correctness
C. Validity
D.All of the above

147
Multiple choice questions
According to the "Measures for the Administration of Security Assessment of Commercial Cryptocurrency Applications (Trial)", regarding the security assessment of commercial cryptography applications, which of the following statements is incorrect ().

A. It is an evaluation of the passwords used by networks and information systems integrated with commercial cryptography technology, products and services.
B. It is an evaluation of the compliance, correctness and effectiveness of commercial cryptography applications.
C. Confidential critical information infrastructure should conduct a security assessment of commercial cryptography applications every six months.
D. Basic information networks should conduct security assessment of commercial password applications

148
Multiple choice questions According to the "Commercial Cryptozoology Application Security Assessment and Management Measures (Trial)", which of the following are important areas of network and information systems ( ).

A. Basic information network
B. Government information system for social services
C. Important industrial control system
D.All of the above

149
Multiple choice questions According to the "Management Measures for Security Assessment of Commercial Cryptocurrency Applications (Trial)", ( ) is the responsible unit for security assessment of commercial cryptography applications.

A. Units that build and use networks and information systems in important areas involving national security
B. Units that build and use networks and information systems in important areas that involve social and public interests
C. Units that build and use networks and information systems in important areas that involve national security and social and public interests System management unit
D.All of the above

150
multiple-choice questions According to the "Measures for the Administration of Security Assessment of Commercial Cryptozoology Applications (Trial)", the security assessment of commercial cryptography applications shall be undertaken by ( ) recognized by the national cryptography management department.

A. Password evaluation agency
B. Password certification agency
C. Network security service agency
D. Data security testing and assessment agency

151
Multiple choice question According to the "Measures for the Administration of Security Assessment of Commercial Cryptocurrency Applications (Trial)", the correct statement regarding the formulation of security assessment standards for commercial cryptography applications is ( ).

A. The national standardization management department independently formulates and publishes national standards for security assessment of commercial cryptography applications.
B. The national cryptography management department formulates and publishes national standards and industry standards for security assessment of commercial cryptography applications.
C. The national standardization management department and the national cryptography management department shall formulate and release national standards and industry standards for security assessment of commercial cryptography applications in accordance with their respective responsibilities.
D. The national standardization management department shall work with the national encryption management department to formulate and publish national standards and industry standards for security assessment of commercial encryption applications.

152
Multiple choice questions According to the "Measures for the Administration of Security Assessment of Commercial Cryptocurrency Applications (Trial)", after networks and information systems in important fields are put into operation, the responsible unit shall entrust an evaluation agency ( ) to assess the security of commercial cryptography applications.

A. To be carried out within 30 working days
B. Carry out regularly
C. Irregularly
D. Within 3 working days

153
Multiple-choice question According to the "Measures for the Administration of Security Assessment of Commercial Cryptocurrency Applications (Trial)", regarding the security assessment procedures for commercial cryptography applications, which of the following statements is incorrect ( ).

A. The assessment work should follow the principles of independence, objectivity, and impartiality.
B. The responsible unit should organize the security assessment of commercial password applications during the system planning, construction, and operation stages. C.
After the evaluation agency completes the security assessment of commercial password applications, The evaluation results should be reported to the national cryptography management department for record within 30 working days.
D. After the responsible unit completes planning, construction, operation and emergency assessment, it shall report the assessment results to the national cryptography management department for record within 30 working days.

154
Multiple-choice question According to the "Measures for the Administration of Security Assessment of Commercial Cryptocurrency Applications (Trial)", regarding the statement of the security assessment procedures for commercial cryptography applications, which of the following is correct ( ).

A. Critical information infrastructure and network security protection level 3 and above information systems must be evaluated at least once every six months.
B. If a commercial encryption application fails to pass the security assessment, the responsible unit shall make rectifications within a time limit and reorganize the assessment.
C. After the evaluation agency completes the security assessment of commercial cryptography applications, it should report the assessment results to the national cryptography management department for filing within 15 working days. D. The responsible
unit for network security protection level 3 and above information systems does not need to submit the assessment The results are reported to the public security department for record

155

Single-choice question According to the "Measures for the Administration of Security Assessment of Commercial Cryptozoology Applications (Trial)", if a company's big data system is recognized as the third level of network security level protection, the company's commercial cryptography application security assessment results will be reported to the region in which it is located. The password management department should file it for record, and should also report it to the region ( ) for record at the same time.

A. People's Government
B. Internet Information Department
C. Industry and Information Technology Department
D.Public security department

156
Multiple-choice questions According to the "Measures for the Administration of Security Assessment of Commercial Cryptocurrency Applications (Trial)", the national cryptography management department () conducts inspections on the security assessment of commercial cryptography applications in various regions (departments) based on work needs.

A. Periodic
B.Irregularly
C. Every year
D. Every six months

157
Multiple-choice questions According to the "Measures for the Administration of Security Assessment of Commercial Cryptozoology Applications (Trial)", the national cryptography management department supervises and inspects the evaluation institutions, and conducts () on the evaluation results of the evaluation institutions as necessary.

A. Regular inspection
B. Special inspection
C. Irregular inspection
D.Spot check

158
multiple choice questions

According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", which of the following companies may have the basic conditions to apply for a commercial cryptography application security assessment agency ( ).

A. A certain public institution has professional technical personnel and management personnel, and the number of evaluators who passed the "Commercial Cryptocurrency Application Security Evaluator Assessment" is 8 in total.
B. A technology company has clear property rights and a registered capital of 6 million yuan.
C. A technology company has been established for 2 years, and has been engaged in information system security related work for half a year, with no illegal records.
D. A public institution has an independent, centralized and controllable working environment suitable for system evaluation, with an evaluation work area of ​​150 square meters.

159
Multiple-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Evaluation Institutions (Trial)", regarding the requirements for registered capital for units that apply to become commercial cryptography application security evaluation institutions, which of the following statements is correct ( ).

A. Registered capital of more than 2 million yuan
B. Registered capital of more than 5 million yuan
C. Registered capital of more than 8 million yuan
D. Registered capital of more than 10 million yuan

160
Multiple Choice Questions According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", units that apply to become commercial cryptography application security assessment organizations have requirements for assessment work sites. Which of the following statements is correct ( ).

A. Should be no less than 50 square meters
B. Should be no less than 100 square meters
C. Should be no less than 200 square meters
D. Should be no less than 300 square meters

161
Multiple-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Evaluation Agencies (Trial)", the requirements for the establishment years of units applying to become commercial cryptography application security evaluation institutions are: Which of the following statements is correct ( ).

A. Established for more than 1 year, and engaged in information system security related work for more than 1 year
B. Established for more than 2 years and engaged in information system security related work for more than 1 year
C. Established for more than 2 years, engaged in information system security-related work for more than half a year
D. Established for more than 3 years, engaged in information system security-related work for more than 1 year

162
Multiple choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Evaluation Agencies (Trial)", the requirements for evaluation personnel of units applying to become commercial cryptography application security evaluation institutions, which of the following statements is correct ( ).

A. Have a bachelor's degree or above and password-related experience
B. The review of evaluators is based on the list of evaluators who have passed the training.
C. The evaluators can be third-party long-term outsourcing personnel of the applicant unit
. D. Have a master's degree or above and password-related experience.

163

单项选择题 根据《商用密码应用安全性评估管理办法(试行)》,对申请成为商用密码应用安全性测评机构的单位在测评技术负责人方面的要求,下列说法正确的是( )。

A.从事商用密码或质量管理相关工作5年以上
B.从事商用密码或质量管理相关工作3年以上
C.从事商用密码或质量管理相关工作2年以上
D.从事商用密码或质量管理相关工作1年以上

164
单项选择题 根据《商用密码应用安全性测评机构管理办法(试行)》,对申请成为商用密码应用安全性测评机构的单位在测评人员方面的要求,下列说法正确的是( )。

A.配备测评技术负责人1名,不需要质量负责人
B.配备质量负责人1名,不需要测评技术负责人
C.配备测评技术负责人与质量负责人各1人
D.配备测评技术负责人与质量负责人各2人

165
单项选择题 根据《商用密码应用安全性测评机构管理办法(试行)》,申请成为商用密码应用安全性测评机构的单位,有校准要求的仪器设备需按时送至校准实验室进行专门校准,并确保所进行的校准可溯源到( )。

A.公制
B.国际单位制
C.米制
D.英制

166
单项选择题 根据《商用密码应用安全性测评机构管理办法(试行)》,国家密码管理部门会同( )制定测评机构的有关技术与管理规范,组织测评机构业务培训。

A.国务院公安部门
B.国务院电信主管部门
C.国家网信部门
D.国家密码管理部门

167
Single-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Evaluation Agencies (Trial)", in the planning stage of network and information systems in important fields, ( ) should formulate a commercial cryptography application construction plan based on relevant standards for commercial cryptography application security.

A. Operating unit
B. Responsible unit
C. Technical support unit
D. Construction unit

168
Single-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", the materials that units applying to become a commercial cryptography application security assessment agency should submit do not include ( ).

A. Description of work related to general passwords
B. The configuration of software, hardware and other service support facilities required to carry out the assessment work
C. The construction of the management system
D. "Application Form for Commercial Cryptocurrency Application Security Assessment Agency"

169
Multiple choice questions According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", applicants for commercial cryptography application security assessment agencies that have passed the preliminary review of the State Cryptozoology Administration shall participate in training, assessment and competency assessment within ( ) working days Review.

A.30 pieces
B.45 pieces
C.60 pieces
D.90 pieces

170
single-choice questions According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", the commercial cryptography application security assessment results of ( ) should be used as necessary materials for project construction acceptance.

A. After the construction of networks and information systems in important areas is completed
B. Involving top-secret e-government systems
C. Involving secret-level national government systems
D. Involving secret-level e-government systems

171

Single-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", if any of the following changes to a commercial cryptography application security assessment agency, there is no need to report to the State Cryptozoology Administration ( ).

A. The name of evaluation institution A was changed from xx Information Technology Co., Ltd. to xxx Technology Co., Ltd.
B. The legal person of evaluation institution B was changed from Wang to Li.
C. The shareholder of evaluation institution C transferred his shares to other shareholders due to serious illness.
D. Ding Evaluation Agency laid off 5 technical staff due to reform and layoffs, turning the original technical team of 20 people into 15 people

172
Single-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", regarding the supervision and inspection activities carried out by cryptography management agencies on commercial cryptography application security assessment agencies, the following are in compliance with legal requirements ( ).

AF City Encryption Management Bureau conducts supervision and inspection on the evaluation institutions in City E.
BE Province Encryption Management Bureau conducts supervision and inspection on the evaluation institutions in Province C.
CD Provincial Encryption Management Bureau conducts supervision and inspection of evaluation institutions in Province D
DE City Encryption Management Bureau carries out supervision and inspection of the evaluation institutions in E City

173
Single-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", the training and assessment of personnel of commercial cryptography application security assessment agencies are undertaken by ( ).

A. The commercial cryptography application security evaluation agency itself
B. The State Cryptography Administration
C. The specialized expert group selected by the State Cryptography Administration
D. Institutions entrusted by the State Cryptozoology Administration

174
Single-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Assessment Agencies (Trial)", commercial cryptography application security assessment agencies shall ( ) prepare a commercial cryptography application security assessment work report and submit it to the State Cryptography Administration.

A.At the end of the year
B. Before January 31st
C. Before June 30th
D. Before September 30th

175
Single-choice question According to the "Administrative Measures for Commercial Cryptocurrency Application Security Testing and Evaluation Institutions (Trial)", if any of the following circumstances is met, the State Cryptozoology Administration shall cancel its pilot qualification for commercial cryptography application security testing and evaluation institutions ( ).

A.测评机构在一次测评行为中出现失 误,对测评结果产生影响
B.测评机构故意泄露被测评单位工作秘密
C.测评机构出具测评报告忘记盖章
D.以上都不对

176
单项选择题 根据《商用密码应用安全性测评机构能力评审实施细则(试行)》,国家密码管理局成立由()专家组成的评审专家组,组织商用密码应用安全性测评机构能力的专家评审。

A.2名
B.3-5名
C.5-7名
D.10名以上

177
单项选择题 根据《关于开展商用密码检测认证工作的实施意见》,商用密码认证目录由( ) 发布。

A.市场监管总局
B.国家密码管理局
C.市场监管总局、国家密码管理局共同
D.以上都不对

178
单项选择题 根据《关于开展商用密码检测认证工作的实施意见》,市场监管总局、国家密码管理局联合组建( ),协调解决认证实施过程中出现的技术问题,为管理部门提供技术支撑、提出工作建议等。

A.商用密码认证监督委员会
B.商用密码认证技术委员会
C.专门机构
D.商用密码认证协调委员会

179
单项选择题 《关于开展商用密码检测认证工作的实施意见》的制定依据不包括( )。

A.《中华人民共和国产品质量法》
B.《中华人民共和国密码法》
C.《中华人民共和国认证认可条例》
D.《中华人民共和国商用密码管理条例

180
单项选择题 根据《关于开展商用密码检测认证工作的实施意见》,下列有关商用密码检测、认证机构的说法,错误的是( )。

A. Commercial cryptography certification agencies should entrust testing agencies that have obtained relevant qualifications for commercial cryptography testing in accordance with the law to carry out testing activities related to certification.
B. Commercial cryptography testing and certification agencies shall report the implementation status of commercial cryptography testing and certification as well as testing and certification certificate information in accordance with relevant regulations.
C. Commercial cryptography testing and certification agencies shall assume confidentiality obligations for the state secrets and commercial secrets they learn during commercial cryptography testing and certification. D.
Commercial cryptography testing and certification agencies shall assume the confidentiality obligations for the state secrets and commercial secrets they learn during commercial cryptography testing and certification. and business secrets are subject to confidentiality obligations

181
Multiple choice question The date of promulgation of the "Commercial Password Management Regulations" is ( ).

A. April 27, 2023
B. May 27, 2023
C. October 7, 1999
D.November 7, 1999

182
Multiple choice questions In order to implement the "Cryptozoology Law", the State Cryptozoology Administration has drafted the "Regulations on the Management of Commercial Cryptozoology (Draft for Solicitation of Comments on the Revised Draft)", and the time for soliciting opinions begins in ( ).

A.August 20, 2017
B.August 20, 2020
C. August 20, 2021
D. August 20, 2022

183
Multiple-choice question The factors to consider in the revision of the "Commercial Password Management Regulations" do not include ().

A. Since the 18th National Congress of the Communist Party of China, the Party Central Committee and the State Council have put forward a series of requirements for the innovative development of commercial encryption and the reform of the administrative approval system. B. The
Cryptozoology Law promulgated in 2019 has structurally reshaped the commercial encryption management system.
C. In 1996, the central government decided to vigorously develop commercial encryption in our country and strengthen the management of commercial encryption.
D. Adapt to the development needs of the commercial encryption industry in the new era, and solve new situations and new problems that arise in the advancement of commercial encryption technology and the development of the commercial encryption industry in accordance with the law.

184
Multiple-choice questions In December 2017, the State Cryptography Administration announced the "Decision of the State Cryptography Administration on Abolition and Modification of Some Management Regulations". The abolished management regulations do not include ( ).

A.《商用密码产品销售管理规定》
B.《商用密码产品使用管理规定》
C.《境外组织和个人在华使用密码产品管理办法》
D.《商用密码科研管理规定》

185
单项选择题 根据《电子认证服务密码管理办法》,采用密码技术为社会公众提供第三方电子认证服务的系统使用( )。

A.核心密码
B.普通密码
C.商用密码
D.核心密码和普通密码

186

单项选择题 根据《电子认证服务密码管理办法》,申请《电子认证服务使用密码许可证》的材料由省、自治区、直辖市密码管理机构受理的,应当自受理申请之日起( )将全部申请材料报送国家密码管理局。

A.5个工作日内
B.10个工作日内
C.20个工作日内
D.30个工作日内

187
单项选择题 根据《电子认证服务密码管理办法》,国家密码管理局应当对《电子认证服务使用密码许可证》申请人提交的申请材料进行审查,组织对电子认证服务系统进行( )。

A.安全性审查或互联互通测试
B.安全性审查和互联互通测试
C.技术性审查和互联互通测试
D.技术性审查或互联互通测试

188
单项选择题 根据《电子认证服务密码管理办法》,电子认证服务提供者变更名称的,应当自变更之日起(),持变更证明文件到所在地的省、自治区、直辖市密码管理机构办理《电子认证服务使用密码许可证》更换手续。

A.10日内
B.20日内
C.30日内
D.45日内

189
单项选择题 根据《电子认证服务密码管理办法》,对电子认证服务提供者使用密码情况进行监督检查的方式,下列说法正确的是( )。

A.书面审查和现场核查相结合
B.只能书面审查
C.只能现场核查
D.远程检查

190
单项选择题 根据《关于 发布商用密码进口许可清单、出口管制清单和相关管理措施的公告》,商用密码进口许可清单、出口管制清单制定的法律依据不包括( )。

A.《中华人民共和国密码法》
B.《中华人民共和国出口管制法》
C.《中华人民共和国海关法》
D.《中华人民共和国保守国家秘密法》

191
单项选择题 根据《关于 发布商用密码进口许可清单、出口管制清单和相关管理措施的公告》,我国实行出口管制的加密VPN设备以IPSec/SSL VPN为主要功能的设备,其特征之一是加密通信速率( )以上。

A.10Gbps
B.20Gbps
C.50Gbps
D.100Gbps

192
单项选择题 根据《关于 发布商用密码进口许可清单、出口管制清单和相关管理措施的公告》,我国实行出口管制的密钥管理产品是用于对称密钥或非对称密钥的生成、分 发、存储等管理功能的服务端设备,其特征之一是支持管理对象数量( )以上。

A.5000
B.10000
C.15000
D.20000

193
Multiple choice questions According to the "Announcement on the Release of Commercial Cryptocurrency Import License List, Export Control List and Related Management Measures", China uses cryptography technology to achieve data transmission encryption protection and other functions, including () key length based on elliptic curve asymmetry Fax machines with cryptographic algorithms are subject to import licensing.

A.32 bits or more
B.64 bits or more
C.128 bits or more
D.768 or more

194
Single choice question According to the "Announcement on the Release of the Commercial Cryptocurrency Import License List, Export Control List and Related Management Measures", the Ministry of Commerce shall review the commercial cryptography import and export license application documents together with () and other relevant departments from the date of receipt of the commercial cryptography import and export license application documents.

A. State Cryptozoology Administration
B. Customs
C. State Internet Information Office
D. State Administration of Secrecy

195
Single-choice question According to the "Announcement on the Release of Commercial Cryptometry Import License List, Export Control List and Related Management Measures", if the application is reviewed and approved, the import and export license for dual-use items and technologies will be issued by ( ).

A. Ministry of Commerce
B. Customs
C. State Cryptozoology Administration
D. Ministry of Public Security

196
Single-choice question According to the "Announcement on the Release of Commercial Cryptozoology Import License List, Export Control List and Related Management Measures", ( ) shall, from the date of receipt of the import and export application form and related documents for dual-use items and technologies, together with the national cryptography The administrative department and other relevant departments will conduct an examination and make a decision on whether to grant permission or not within the statutory time limit.

A. Ministry of Commerce
B. General Administration of Customs
C. State Administration for Market Regulation
D. State Internet Information Office

197
Multiple choice question China's "Regulations on the Management of Commercial Cryptography" pays special attention to the scientific and technological innovation of commercial cryptography. According to relevant regulations, the correct expression in the following options is ( ).

A. Commercial encryption cannot be protected through intellectual property rights.
B. Foreign investment should carry out commercial encryption technology cooperation based on administrative requirements rather than commercial rules.
C. Commercial encryption scientific and technological achievements are state secrets and must not be released.
D. Administrative agencies and their staff shall not use administrative means to force the transfer of commercial encryption technology

198
Multiple choice question According to the "Commercial Password Management Regulations", regarding the standardization of commercial passwords, the correct statement among the following options is ( ).

A. Chinese standards for commercial encryption cannot be converted into foreign standards.
B. The national encryption management department is independently responsible for formulating national standards for commercial encryption.
C. The national encryption management department should supervise and inspect the implementation of commercial encryption standards.
D. In order to promote the development of commercial encryption technology, standards in other fields need not be coordinated with the commercial encryption industry standards if they involve commercial encryption.

199
Multiple Choice Questions According to the "Commercial Password Management Regulations", regarding commercial password testing and certification, which of the following options is correct ( ).

A. Commercial cryptography involves network security, and commercial cryptography activities must undergo commercial cryptography testing and certification.
B. After passing commercial cryptography testing and certification, engaging in commercial cryptography-related activities will no longer require a license.
C. Commercial cryptography testing and certification institutions should be recognized by the national cryptography management department.
D. Commercial cryptography testing and certification agencies should obtain corresponding qualifications

200
multiple-choice questions According to the "Commercial Cryptocurrency Management Regulations", to obtain the qualification of a commercial cryptography certification agency, you must comply with the corresponding procedures. The correct expression in the following options is ( ).

A. A written application should be submitted to the national cryptography management department.
B. When the national cryptography management department examines the qualification application, it should seek the opinions of the market supervision and management department of the State Council.
C. A written application should be submitted to the market supervision and administration department of the State Council
D. The market supervision and administration department of the State Council should independently review qualification applications

201
Multiple Choice Question According to the "Regulations on the Management of Commercial Cryptozoology", in the process of providing commercial cryptography services, Company A uses commercial cryptography products that are included in the catalog of key network equipment and network security products. Which of the following options is correct ( ).

A. The commercial encryption product should be tested and certified to be qualified.
B. The commercial encryption service itself does not need to be certified.
C. You can choose to test and certify the commercial encryption product or certify the encryption service itself.
D. No form of testing and certification is required.

202
Multiple choice question According to the "Commercial Password Management Regulations", Company A is a wholly foreign-owned enterprise and wants to carry out e-government electronic authentication services in China. The correct expression in the following options is ( ).

A. Company A cannot engage in e-government electronic certification services in my country
B. Can conduct foreign investment security review on Company A
C. Company A should apply to the market supervision and administration department of the State Council.
D. E-government electronic certification services are also electronic certification services, and Company A does not need to be identified by the competent authority.

203
Multiple Choice Question According to the "Commercial Password Management Regulations", in order to improve service efficiency and ensure data security, the Administrative Approval Bureau of a certain city's high-tech zone began to use a large number of electronic signatures in the approval process. Regarding the management of electronic signatures, the following options are correct is ( ).

A. The cryptography management department has no authority to manage the electronic signature.
B. The administrative approval bureau should use the electronic signature provided by the cryptography management department.
C. The Administrative Approval Bureau shall use electronic signatures provided by e-government electronic certification service agencies established in accordance with the law.
D. The Administrative Approval Bureau can use any electronic signature

204
Multiple Choice Question According to the "Regulations on the Management of Commercial Cryptozoology", Company A wants to import overseas commercial cryptography technology for use in its independently developed products. Which of the following options is correct ( ).

A. Company A needs to obtain an import license under any circumstances.
B. Even if overseas commercial encryption technology only has authentication functions, Company A still needs to obtain an import license.
C. Company A only needs to obtain an import license if overseas commercial cryptography technology is included in the commercial cryptography import license list.
D. Even if Company A’s products are mass consumer products, they still need to obtain an import license.

205
Multiple Choice Questions According to the "Commercial Encryption Management Regulations", Company A is a commercial encryption research institution in China. After obtaining an export license, it sold a commercial encryption product to Company B in Country A. After using it, Company B believes that the commercial encryption product is powerful and wants to sell it to Company C, an affiliated company in Country B. The correct expression in the following options is ( ).

A. Company A has obtained the export license in accordance with the law, so Company B can freely sell to Company C
B. When Company B sells to Company C, it should still obtain an export license from my country.
C. Whether Company B needs to obtain an export license when selling to Company C should be subject to the laws of country A. D.
Even if Company A’s commercial encryption products are mass consumer products, it still needs to obtain an export license from China.

206
Multiple Choice Question According to the "Regulations on the Management of Commercial Encryption", Company A imported a certain overseas commercial encryption product, but did not submit an import license to the customs. During the inspection process, the customs believed that the commercial encryption products imported by Company A should fall within the scope of my country's commercial encryption import license list, and should apply for a commercial encryption import license. Which of the following options is correct ( ).

A. Regardless of whether Company A approves it or not, the customs shall confiscate it on the spot.
B. The customs may submit an organizational identification request to the national cryptography management department.
C. Customs should first question Company A
D. During the identification or questioning period, since Company A cannot be determined to have violated the import and export management regulations of commercial encryption, the customs should first release the products imported by Company A.

207
Multiple Choice Questions According to the "Commercial Cryptocurrency Management Regulations", critical information infrastructure can only be put into use after passing the commercial cryptography application security assessment, and it still needs to be evaluated after operation. Which of the following options is correct ( ).

A. Evaluate at least once every six months after operation
B. Evaluate at least once a year after operation
C. Assess at least twice a year after operation
D. Assess at least once every two years after operation

208
单项选择题 根据《商用密码管理条例》规定,关于密码管理部门和有关部门开展商用密码监督检查,下列选项中表述正确的是( )。

A.查封商用密码活动场所
B.要求违法单位披露源代码
C.冻结涉案账户
D.查阅、复制有关合同、票据、账簿以及其他有关资料

209

单项选择题 根据《商用密码管理条例》规定,某商用密码检测机构为扩展业务影响,其通过出具虚假检测数据和结果的方法吸引客户,违法所得25万元,密码管理部门拟对其进行处罚,下列选项中表述正确的是( )。

A.在没收违法所得同时,可以并处违法所得1倍以上3倍以下罚款
B.在没收违法所得同时,可以并处10万元以上30万元以下罚款
C.在没收违法所得外不能再处以罚款
D.可以禁止该商用密码检测机构负责人在一定时期内不得再从事相关职业

210
单项选择题
根据《商用密码管理条例》规定,某市政府在使用某电子政务电子认证服务机构提供的电子签名过程中,出现电子签名失效的情况,导致相关政务信息产生泄露风险下列选项中表述正确的是()。

A.市政府需要证明电子签名存在瑕疵,方可获得赔偿
B.市政府无需任何证明,就可获得赔偿
C.电子政务电子认证机构需要证明自己无过错,否则就需要进行赔偿
D.即使该电子签名存在瑕疵,但只要电子政务电子认证机构证明市政府同样存在操作不当,就可以免于赔偿

211
单项选择题 根据《商用密码管理条例》规定,某关键信息基础设施运营者明知其采购的商用密码产品未通过网络安全审查,但出于成本考虑,仍然继续使 用,下列选项中表述正确的是( )。

A.应当处1万元以上10万元以下罚款
B.应当处采购金额1倍以上10倍以下罚款
C. No fines can be imposed on the person in charge.
D. The relevant competent authorities have no right to directly order to stop using the commercial encryption product.

212
Multiple Choice Questions According to the "Cryptozoology Law", the correct statement about the classification of passwords is ( ).

A. Passwords are divided into core passwords, ordinary passwords and commercial passwords.
B. Core passwords, ordinary passwords and commercial passwords all use specific transformation methods to encrypt, protect and authenticate information.

C. Core passwords and commercial passwords belong to the same category
D. Ordinary passwords and commercial passwords belong to the same category

213
Multiple Choice Questions Which of the following statements about "Cryptozoology" are correct ( ).

A. The "Cryptozoology Law" regulates the application and management of cryptography.
B. Cryptocurrency work should adhere to the overall national security concept.
C. Cryptocurrency work should adhere to the leadership of the Communist Party of China.
D. The national cryptography management department is responsible for managing cryptography work.

214
multiple-choice questions According to the "Cryptozoology Law", the correct statement about core passwords, ordinary passwords and commercial passwords is ( ).

A. Core passwords and ordinary passwords are used to protect state secret information.
B. Core passwords and ordinary passwords are state secrets.
C. Commercial passwords can be used to protect information on the Internet.
D. Commercial passwords are used to protect information that is not state secrets.

215
multiple-choice questions According to the "Cryptozoology Law", in which of the following aspects does the adherence to the party's absolute leadership in cryptography work manifest ().

A. Major matters concerning cryptography work are reported to the central government.
B. Major decisions on cryptography work are decided by the central government.
C. Resolutely implement the central government’s guidelines and policies on cryptography work, and implement the leadership and management system for cryptography work determined by the central government.
D. Give full play to the leadership of the party. Party committees (party groups) and cryptography work leading bodies at all levels must conscientiously fulfill the political responsibility of the party to manage cryptography.

216
Multiple Choice Questions "Cryptozoology Law" is a comprehensive and basic law in the field of cryptography. The purposes of formulating this law include ( ).

A. Standardize the application and management of cryptography
B. Promote the development of cryptography
C. Ensure network and information security
D. Maintain national security and social public interests

217
Multiple Choice Questions According to the "Cryptozoology Law", which of the correct understandings of encryption protection and security authentication in the definition of password are ( ).

A. Passwords can be used to implement encryption protection functions
B. Passwords can be used to implement security authentication functions
C. The Commerce Department of the State Council and the National Encryption Management Department shall import commercial passwords that involve national security, social and public interests and have encryption protection functions in accordance with the law. license

D. The commerce department of the State Council and the national encryption management department shall implement import licenses in accordance with the law for commercial encryption that involves national security, social and public interests and has security authentication functions.

218
multiple-choice questions According to the "Cryptozoology Law", the principles that should be adhered to in cryptography work include ().

A. Management according to law
B.United responsibility
C. Serve the overall situation
D. Innovate and develop

219
multiple choice questions

According to the "Cryptozoology Law", the following statements about my country's cryptography work management system are correct: ( )

A. The national cryptography management department is responsible for managing cryptography work across the country.
B. Local cryptography management departments at or above the county level are responsible for managing cryptography work
in their own administrative regions. C. State agencies and units involved in cryptography work are responsible for their own agencies, The password work of this unit or this system

D. The password protection department is responsible for the password work in this industry and field.

220
multiple-choice questions According to the "Cryptozoology Law", the information that commercial passwords can be used to protect includes ( ).

A. Top secret information
B. Business secret information
C. Personal privacy information
D. Work secret information that is not a state secret

221
Multiple-choice questions: The following cryptographic illegal and criminal acts prohibited by the "Cryptozoology Law" are ( ).

A. Jia accessed his user's password protection system without authorization
B. Li intercepted his girlfriend's encrypted communications in order to find evidence of cheating
C. Zhang privately encrypted his roommate's graduation thesis and anonymously demanded a ransom for decryption
D. Ji Provided payment and settlement services for the encryption extortion carried out by Chu

222
multiple-choice questions According to the "Cryptozoology Law", the functions and roles of industry associations in the field of commercial cryptography include ( ).

A. Provide information, technology, training and other services to commercial cryptography practitioners
B. Guide and urge commercial cryptography practitioners to carry out commercial cryptography activities in accordance with the law
C. Strengthen industry self-discipline and promote industry integrity through industry self-discipline conventions and other means

D. Carry out fee-based testing and certification for commercial cryptography practitioners

223
multiple-choice questions: According to the "Cryptozoology Law", what are the contents of the interim and ex-post supervision system of the cryptography management department ().

A. Establish a unified commercial encryption supervision and management information platform and release supervision information to the society
B. Carry out various daily supervision activities
C. Carry out random inspection activities
D. Connect supervision information with the social credit system

224
multiple-choice questions According to the "Cryptozoology Law", the institutional setting of the national cryptography management department is incorrect ( ).

A. National and provincial levels
B. National, provincial and districted city levels

C. National, provincial, districted city and county levels
D. National, provincial, districted city, county and township levels.

225
multiple-choice questions According to the "Cryptozoology Law", the goals of building China's commercial cryptography market system include ( ).

A. Unification
B. Openness
C. Competition
D. Orderly

226
multiple-choice questions According to the "Cryptozoology Law", the following are commercial cryptography practitioners ( ).

A. A foreign-invested commercial encryption R&D enterprise
B. A state-owned commercial encryption production enterprise
C. A commercial encryption service enterprise controlled by a natural person
D. A mixed-ownership commercial encryption sales enterprise

227
multiple choice questions

According to the "Cryptozoology Law", my country's attitude toward foreign-invested commercial cryptography companies includes: ( ).

A. People's governments at all levels and their relevant departments should abide by the principle of non-discrimination.
B. Treat commercial cryptography research, production, sales, service, import and export and other units, including foreign-invested enterprises, equally in accordance with the law. C.
Encourage based on the principle of non-discrimination in the process of foreign investment. Cooperation in commercial cryptography technology shall be carried out under the principle of voluntariness and business rules.
D. Administrative agencies and their staff shall not use administrative means to force foreign-invested commercial cryptography enterprises to transfer commercial cryptography technology.

228
multiple-choice questions China actively promotes participation in international standardization activities for commercial encryption. According to the "Cryptozoology Law", the following entities that can participate in the formulation of international standards for commercial encryption are ( ).

A. Enterprise
B. Social group
C. Educational institution
D. Scientific research institution

229
multiple-choice questions According to the provisions of the "Cryptozoology Law", the state encourages commercial cryptography practitioners to improve the protection capabilities of commercial cryptography and safeguard the legitimate rights and interests of users. The standards adopted are ( ).

A. Recommended national standards
B. Industry standards

C. Group standards
D. Enterprise standards

230
multiple-choice questions According to the "Cryptozoology Law", the following situations violate the market access system for commercial cryptography products and services: ( ).

A. Selling commercial encryption products listed in the catalog of key network equipment and special network security products without testing and certification by a qualified institution B.
Providing commercial encryption products listed in the catalog of critical network equipment and special network security products without passing the testing and certification
C. Providing commercial encryption services using key network equipment and special network security products, without certification by a commercial password certification agency. D.
Providing commercial encryption services using key network equipment and special network security products, but failing certification.

231
Multiple choice questions According to the "Cryptozoology Law", the commercial cryptography products that should be included in the catalog of key network equipment and network security products according to law include ( ).

A. Involving national security
B. Involving national economy and people’s livelihood
C. Involving social and public interests

D. Involving personal privacy

232
multiple-choice questions According to the "Cryptozoology Law", a scientific research institution has included critical information infrastructure that needs to be protected by commercial encryption in accordance with relevant national regulations. The following correct expressions are ( ).

A. The scientific research unit does not need to use commercial passwords for protection, but it needs to explain the reasons to the competent authority.
B. The scientific research unit can carry out the security assessment of commercial cryptography applications on its own.
C. The scientific research unit can entrust a commercial cryptography testing agency to carry out the security assessment of commercial cryptography applications.

D. For confidentiality reasons, the scientific research institution has the right to refuse to conduct security assessment of commercial password applications.

233
multiple-choice questions According to the "Cryptozoology Law", the applicable objects of China's commercial cryptography export control include ( ).

A. Involving national security
B. Involving social and public interests

C. Involving mass consumption
D. Involving China’s international obligations

234
multiple-choice questions The "Cryptozoology Law" stipulates that the import and export supervision list of commercial cryptography includes ().

A. "Commercial Encryption Import Permit List"
B. "Commercial Encryption Export Control List"

C. "Commercial Encryption Import Review List"
D. "Commercial Encryption Import and Export Supervision Catalog"

235
Multiple-choice questions Commercial cryptography certification agencies should obtain relevant qualifications in accordance with the law. According to the "Regulations on Certification and Accreditation" and "Regulations on the Management of Commercial Cryptography", the conditions they should meet include ( ).

A. Have a fixed location and necessary facilities
B. Have a management system that meets the certification and accreditation requirements
C. Have more than 10 full-time certification personnel in the corresponding field
D. Have technical capabilities such as testing and inspection that are suitable for commercial password authentication activities

236
multiple-choice questions According to the Cryptozoology Law, the cryptography management department and relevant departments have established an interim and ex-post supervision system for commercial encryption, and promoted the connection between interim and ex-post supervision with the social credit system, thereby strengthening the self-discipline and social supervision of commercial encryption units. Among them, the supervision system during and after the event includes ( ).

A. Administrative permission
B. Subsequent review
C. Daily supervision
D. Random inspection

237
multiple-choice questions According to the "Cryptozoology Law", the following commercial cryptography practitioners are commercial cryptography ( ) units.

A. Scientific research
B. Production and sales
C. Service
D. Import and export

238
multiple-choice questions According to the "Cryptozoology Law", the following practices that comply with the non-discrimination principle of commercial cryptography include ( ).

A. Treat commercial cryptography practitioners, including foreign-invested enterprises, equally
in accordance with the law B. Carry out commercial cryptography technology cooperation based on the principle of voluntariness and business rules
C. Do not use administrative means to force the transfer of commercial cryptography technology

D. Use administrative means to force the transfer of commercial encryption technology

239
Multiple choice questions According to the "Cryptozoology Law", the commercial cryptography standards formulated by the national cryptography management department in accordance with their duties do not belong to ( ).

A. National standards
B. Industry standards
C. Group standards
D. Enterprise standards

240
multiple-choice questions According to the "Cryptozoology Law", the following statement about commercial encryption enterprise standards is correct ( ).

A. Enterprise standards are standards formulated by enterprises using independent innovation technologies
. B. Enterprise standards should be no lower than the relevant technical requirements of mandatory national standards
. C. If an enterprise implements its own enterprise standards, the enterprise standards shall be binding on it.

D. Enterprise standards can be directly upgraded to national standards

241
Multiple Choice Questions According to the "Cryptozoology Law", the following statement about the national standard for commercial cryptography is correct ( ).

A. Divided into mandatory standards and recommended standards
B. There is currently no mandatory national standard for commercial encryption
C. Enterprise standards should be higher than the relevant technical requirements of national standards and industry standards
D. Mandatory national standards must be implemented

242
Multiple Choice Questions According to the "Cryptozoology Law", the following statement about the international standards for commercial cryptography is correct ( ).

A. The state promotes participation in international standardization activities for commercial encryption
B. Foreign encryption standards can be directly applied to domestic
C. Countries can adopt international standards based on national conditions.
D. Enterprises can participate in international standardization activities

243
multiple-choice questions According to the "Cryptozoology Law", the commercial cryptography standard system includes ( ).

A. National standards
B. Group standards

C.Personal standards
D.Industry standards

244
multiple-choice questions According to the "Cryptozoology Law", the following statement about the catalog of key network equipment and network security-specific products is correct ( ).

A. The catalog is based on the management system established in Article 23 of the "Cybersecurity Law"
B. Establish different directories based on the "Cryptocurrency Law" and the "Network Security Law"
C. The catalog is released in batches according to needs.
D. "General Security Requirements for Critical Network Equipment" is a mandatory national standard.

245
multiple choice questions

According to the Cryptozoology Law, with regard to commercial encryption products listed in the catalog of key network equipment and network security products, which of the following statements is correct ( ).

A. Generally, they are products involving national security, national economy and people's livelihood, social public interests and sensitive personal information.
B. They should be tested and certified by qualified institutions before they can be sold or provided.
C. Commercial cryptography services that use catalog products also need to be certified by commercial cryptography services. Qualified service certification
D. "General Security Requirements for Critical Network Equipment" and "Implementation Rules for Security Certification of Critical Network Equipment and Special Network Security Products" provide specific requirements for testing and certification.

246
Multiple Choice Questions According to the Cryptozoology Law, regarding state secret information transmitted in wired and wireless communications, and information systems that store and process state secret information, which of the following statements is incorrect ( ).

A. Core passwords and common passwords should be used in accordance with laws, regulations and regulations
B. Commercial passwords can be used for temporary transmission and storage when necessary.
C. Use AES 256 for encryption protection.
D. Improve the level of intensification and security by purchasing public clouds and deploying cryptography technology.

247
multiple-choice questions According to the "Cryptozoology Law", the following cryptographic activities that belong to core cryptography and ordinary cryptography work organizations are ( ).

A. Crypto research
B. Crypto production and service

C. Password import and export
D. Password use and destruction

248
multiple-choice questions According to the "Cryptozoology Law", cryptography organizations engaged in core passwords and ordinary passwords are required to () ensure the security of core passwords and ordinary passwords.

A. Establish and improve a safety management system
B. Adopt strict confidentiality measures
C. Form a confidentiality responsibility system that can be assessed and evaluated

D. Purchase commercial encryption products listed in the catalog of key network equipment and network security products

249
Multiple choice questions According to the "Cryptozoology Law", ( ) is not a subject that guides, supervises and inspects the core cryptography and ordinary cryptography work of cryptography work institutions in accordance with the law.

A. National secrecy department
B. Password management department
C. State market supervision and administration department
D. State civil affairs department

250
multiple choice questions

The "Cryptography Law" clarifies core passwords, ordinary password leak cases or specific situations in which cryptography agencies violate relevant security requirements include ( ).

A. Cases of leakage of core passwords and ordinary passwords occurred.
B. Failure to immediately take countermeasures when core passwords and ordinary passwords were discovered to be leaked or major issues and risks affecting the security of core passwords and ordinary passwords were discovered.

C. Failure to immediately issue early warning notices to the public when core passwords or common passwords are discovered to be leaked or major issues or risks affecting the security of core passwords or common passwords are discovered
D. If core passwords or common passwords are discovered to be leaked or major issues or risks affecting the security of core passwords or common passwords are discovered, failure to report them to the confidentiality administrative department or password management department in a timely manner

Guess you like

Origin blog.csdn.net/weixin_48701521/article/details/133379479