All Practice Exams

100+ Free ICDL IT Security Practice Questions

Pass your ICDL South Africa — IT Security Module exam on the first try — instant access, no signup required.

✓ No registration✓ No credit card✓ No hidden fees✓ Start practicing immediately
100+ Questions
100% Free

Loading practice questions...

2026 Statistics

Key Facts: ICDL IT Security Exam

36 questions

Official ICDL IT Security certification test length

ICDL Foundation standard module test specifications

45 minutes

Time allowed for Workforce module certification tests

ICDL Foundation standard module test specifications

75% pass mark

Candidates need 27 out of 36 marks to pass

ICDL Foundation standard module test specifications

7 categories

Security Concepts; Malware; Network Security; Access Control; Secure Web Use; Communications; Secure Data Management

ICDL IT Security Syllabus Version 2

Syllabus 2

Current IT Security module syllabus version on ICDL South Africa

ICDL South Africa — IT Security

Workforce module

IT Security sits in the ICDL Workforce Good Practice track alongside modules like Online Collaboration

ICDL Foundation Workforce programme

ATC delivery

Tests are taken at ICDL Accredited Test Centres, not a single national exam venue

ICDL South Africa — Get Started

100

Free original practice MCQs on OpenExamPrep across all syllabus categories

OpenExamPrep

ICDL IT Security is a South African ICDL Workforce module testing everyday cyber-security skills — malware, networks, access control, safe browsing, and data protection — at Accredited Test Centres. The live exam has 36 MCQs in 45 minutes; you need 75% (27/36) to pass. This free 100-question bank gives extra multiple-choice practice across all seven official syllabus categories.

Sample ICDL IT Security Practice Questions

Try these sample questions to test your ICDL IT Security exam readiness. Each question includes a detailed explanation. Start the interactive quiz above for the full 100+ question experience with AI tutoring.

1In ICDL IT Security terminology, what is the key difference between data and information?
A.Data are raw facts and figures; information is data that has been processed into a meaningful context
B.Data always exist on paper; information exists only digitally
C.Data are confidential; information is always public
D.Data refer to malware samples; information refers to anti-virus updates
Explanation: The syllabus distinguishes data (raw facts, figures, symbols) from information (data organised or processed to convey meaning). Understanding this distinction underpins why protecting processed business records matters.
2Which pair of terms does the ICDL IT Security syllabus explicitly associate with unlawful access to computer systems?
A.Phishing and pharming only
B.Backup and restore
C.SSID and MAC filtering
D.Cybercrime and hacking
Explanation: Skill set 1.1 requires candidates to understand the terms cybercrime and hacking as threats to data and systems in daily ICT use.
3Which of the following is recognised in the syllabus as a malicious or accidental threat to data from external organisations?
A.Compressing files to save disk space
B.Setting a desktop wallpaper
C.A supplier suffering a breach that exposes shared customer records
D.Increasing monitor brightness for ergonomics
Explanation: The syllabus lists threats from individuals, service providers, and external organisations — including third-party breaches that compromise shared data.
4Which extraordinary circumstance is named in the IT Security syllabus as a threat to data availability?
A.Changing a Wi-Fi password
B.Flooding that destroys on-site servers
C.Routine scheduled software updates
D.Printing a monthly report
Explanation: Fire, floods, war, and earthquakes are cited as extraordinary circumstances that can destroy or block access to data, reinforcing the need for backups and physical security.
5Which three characteristics form the foundation of information security named in the ICDL syllabus?
A.Confidentiality, integrity, and availability
B.Speed, cost, and colour depth
C.Upload, download, and bandwidth
D.Hardware, software, and firmware
Explanation: The CIA triad — confidentiality, integrity, availability — is the basic information-security model in skill set 1.2.1 of the IT Security syllabus.
6Why does the syllabus emphasise protecting personal information?
A.To increase social media follower counts
B.To improve printer output quality
C.To shorten operating-system boot time
D.To reduce risks such as identity theft, fraud, and loss of privacy
Explanation: Skill set 1.2.2 links personal-information protection to avoiding identity theft, fraud, and maintaining privacy — core motivations for everyday security habits.
7Which workplace scenario illustrates why organisational information on computers must be protected?
A.Installing a new screen saver
B.Renaming desktop icons for clarity
C.Preventing fraudulent use of customer payment data after a laptop theft
D.Choosing a larger monitor for spreadsheets
Explanation: The syllabus cites preventing theft, fraudulent use, accidental data loss, and sabotage as reasons to protect workplace information on computers and devices.
8Which principle is identified in the syllabus as part of common data and privacy protection practice?
A.Sharing passwords to improve teamwork
B.Proportionality — collecting only data that is adequate for the stated purpose
C.Opacity — hiding all privacy policies from users
D.Unlimited retention — keeping all data forever
Explanation: Transparency, legitimate purposes, and proportionality are named data/privacy principles. Proportionality limits collection to what is necessary for the purpose.
9What is social engineering in the context of the ICDL IT Security module?
A.Manipulating people into revealing information or granting access rather than exploiting software flaws alone
B.Designing ergonomic office furniture
C.Configuring RAID storage arrays
D.Writing spreadsheet formulas
Explanation: Social engineering exploits human trust — leading to unauthorised access, information gathering, or fraud — and is distinct from purely technical attacks.
10Which method is listed in the syllabus as a social-engineering technique?
A.Full disk encryption
B.MAC address filtering
C.Data compression
D.Phishing
Explanation: Phone calls, phishing, and shoulder surfing are named social-engineering methods that trick users into divulging credentials or sensitive information.

About the ICDL IT Security Exam

The ICDL IT Security module (also marketed globally as Cyber Security) is a Workforce-level certification offered in South Africa through ICDL Accredited Test Centres under the ICDL Foundation programme. It teaches concepts and skills for the secure use of ICT in daily life: protecting information and data, defending computers and networks from malware, using firewalls and wireless security, managing passwords and access control, browsing the web safely, securing email and social communications, and backing up or securely disposing of data and devices. The official certification test contains 36 multiple-choice questions over 45 minutes with a pass mark of 75% (27/36), aligned to ICDL IT Security Syllabus Version 2. Candidates add the module to their ICDL Profile alongside Base modules such as Computer Essentials and Online Essentials or other Workforce specialisations.

Assessment

Single automated ICDL Workforce module certification test with 36 multiple-choice questions worth one mark each, combined with practical and hotspot-style tasks in the live test environment at an Accredited Test Centre.

Time Limit

45 minutes for the official certification test.

Passing Score

75% — candidates must score at least 27 out of 36 marks to pass, per ICDL Foundation standard module test specifications.

Exam Fee

Fees are not set centrally by ICDL South Africa. Training, testing, and candidate registration costs vary by Accredited Test Centre; contact your local centre for the current module price. (ICDL South Africa, operating under the international ICDL Foundation digital skills certification programme)

ICDL IT Security Exam Content Outline

20%

Security Concepts

Data vs information, cybercrime threats, CIA triad, privacy principles, social engineering, identity theft, macro settings, encryption advantages and limits, and password-protecting documents and archives.

15%

Malware

Malware definitions, trojans, viruses, worms, ransomware, spyware, anti-virus limits, updates, scheduled scans, obsolete software risks, quarantine, and vendor resolution resources.

14%

Network Security

Network types, connection security implications, administrator roles, personal firewalls, WEP/WPA/WPA2, SSID hiding, MAC filtering, hotspot security, and wireless attack types.

12%

Access Control

User names, passwords, PINs, encryption, MFA, OTPs, biometrics, network account hygiene, password policies, and password managers.

12%

Secure Web Use

Autocomplete and privacy data cleanup, HTTPS for banking, website authenticity, pharming, and parental or Internet filtering controls.

14%

Communications

Email encryption and signatures, phishing, social network privacy and dangers, IM/VoIP confidentiality, mobile app stores, permissions, and lost-device response.

13%

Secure Data Management

Physical security, backup frequency and locations, restore testing, permanent deletion vs ordinary delete, and secure destruction methods.

How to Pass the ICDL IT Security Exam

What You Need to Know

  • Passing score: 75% — candidates must score at least 27 out of 36 marks to pass, per ICDL Foundation standard module test specifications.
  • Assessment: Single automated ICDL Workforce module certification test with 36 multiple-choice questions worth one mark each, combined with practical and hotspot-style tasks in the live test environment at an Accredited Test Centre.
  • Time limit: 45 minutes for the official certification test.
  • Exam fee: Fees are not set centrally by ICDL South Africa. Training, testing, and candidate registration costs vary by Accredited Test Centre; contact your local centre for the current module price.

Keys to Passing

  • Complete 500+ practice questions
  • Score 80%+ consistently before scheduling
  • Focus on highest-weighted sections
  • Use our AI tutor for tough concepts

ICDL IT Security Study Tips from Top Performers

1Download the official IT Security Syllabus Version 2 PDF from icdl.org.za and tick off each knowledge item as you study.
2Work through ICDL sample part-tests to see how theory MCQs are phrased, then use this bank for broader category coverage.
3Practise configuring a personal firewall and reviewing Wi-Fi security settings on a home router or mobile hotspot.
4Review phishing examples and social-engineering techniques — they appear across email, web, and personal-security categories.
5Set up a simple backup to an external drive or cloud folder and practise restoring a test file.
6Take timed 45-minute practice sessions with 36 questions to simulate the official test length and pace.

Frequently Asked Questions

How many questions are on the official ICDL IT Security test?

The certification test contains 36 multiple-choice questions, each worth one mark, delivered in a 45-minute session at an ICDL Accredited Test Centre.

What score do I need to pass ICDL IT Security?

The pass mark is 75%, which means at least 27 correct answers out of 36 marks, following ICDL Foundation standard specifications for Workforce modules.

Where do I take the exam in South Africa?

You sit the test at an ICDL Accredited Test Centre. ICDL South Africa provides a centre finder at icdl.org.za; each centre sets its own training and testing fees.

Which syllabus version does this practice cover?

Questions are aligned to ICDL IT Security Syllabus Version 2, the version referenced on ICDL South Africa and ICDL Global module pages with seven categories from Security Concepts through Secure Data Management.

Is IT Security a Base or Workforce module?

IT Security is an ICDL Workforce / Standard module in the Good Practice track, complementing Base modules such as Computer Essentials and Online Essentials toward a broader ICDL Profile.

Are these the official ICDL exam questions?

No. These are original OpenExamPrep multiple-choice items for extra drill. ICDL publishes separate sample tests on its website; live certification tests also include practical tasks not fully replicated here.