CSCU - Certified Secure Computer User Mitigating Identity Theft Questions and Answers 1 — Questions and Answers
Question 1: You review your credit card statement and notice several transactions you did not make. After reporting the fraud to your credit card company, what is the MOST critical next step to protect yourself from further identity theft?
- File a police report in your local jurisdiction.
- Change the passwords for all of your online accounts.
- Contact one of the three major credit bureaus to place an initial fraud alert. (Correct answer)
- Shred all of your old financial documents.
Correct answer: Contact one of the three major credit bureaus to place an initial fraud alert.
The U.S. Federal Trade Commission (FTC) recommends that after discovering identity theft, your first step should be to contact one of the three major credit bureaus (Equifax, Experian, or TransUnion) to place a fraud alert. Once you alert one bureau, they are required by law to inform the other two. This makes it harder for an identity thief to open new accounts in your name as creditors must take extra steps to verify your identity.
Question 2: Which of the following is the primary function of a security freeze (or credit freeze) placed on your credit reports?
- It notifies you via text message every time one of your creditors reports a payment.
- It restricts access to your credit report, making it difficult for new lines of credit to be opened in your name. (Correct answer)
- It stops you from receiving pre-approved credit card offers in the mail.
- It erases negative payment history from your credit report after five years.
Correct answer: It restricts access to your credit report, making it difficult for new lines of credit to be opened in your name.
A security freeze is one of the most effective tools against identity theft. It locks down your credit report, and most creditors will not approve a new account without first viewing your credit history. This action directly prevents thieves from opening new lines of credit, even if they have your Social Security Number and other personal information.
Question 3: Which U.S. federal law gives consumers the right to receive one free copy of their credit report from each of the three main credit reporting agencies every 12 months?
- Gramm-Leach-Bliley Act (GLBA)
- Health Insurance Portability and Accountability Act (HIPAA)
- Children's Online Privacy Protection Act (COPPA)
- Fair and Accurate Credit Transactions Act (FACTA) (Correct answer)
Correct answer: Fair and Accurate Credit Transactions Act (FACTA)
The Fair and Accurate Credit Transactions Act (FACTA) of 2003 was passed to enhance consumer protections against identity theft. A key provision of this act mandates that the major credit reporting agencies provide consumers with a free copy of their own credit report upon request, once every 12 months, through a centralized source.
Question 4: A user regularly completes online quizzes on social media that reveal personal trivia, such as 'What was the name of your first pet?' or 'What is the name of the street you grew up on?'. What specific risk does this behavior create?
- It can publicly reveal the answers to common security and password recovery questions. (Correct answer)
- It directly exposes their Social Security Number to data brokers.
- It increases the amount of advertising spam they will receive.
- It automatically enrolls their profile in paid subscription services without consent.
Correct answer: It can publicly reveal the answers to common security and password recovery questions.
Many online services use personal questions like these to verify a user's identity or to allow them to reset a forgotten password. By sharing the answers publicly, even in what seems like a harmless quiz, users are providing identity thieves with the exact information needed to impersonate them and gain unauthorized access to their accounts.
Question 5: To prevent 'dumpster diving,' where thieves steal personal information from trash, which of the following is the MOST secure method for disposing of documents containing sensitive data?
- Tearing the documents into a few large pieces before discarding.
- Using a cross-cut or micro-cut shredder. (Correct answer)
- Placing the documents in a sealed, opaque trash bag.
- Soaking the documents in water until the ink becomes unreadable.
Correct answer: Using a cross-cut or micro-cut shredder.
A cross-cut or micro-cut shredder cuts paper into tiny, confetti-like pieces that are extremely difficult to reconstruct. Tearing documents by hand or using a simple strip-cut shredder can leave them vulnerable to being reassembled. While other methods offer some protection, cross-cut shredding is the industry-recommended standard for secure document destruction.
Question 6: You receive an unsolicited phone call from someone claiming to be with the IRS. They state that a warrant has been issued for your arrest due to tax fraud, but it can be voided if you immediately pay a fine using gift cards. This is a classic example of what type of scam?
- A mandatory IRS account verification process.
- A legitimate asset recovery procedure.
- A vishing (voice phishing) and impersonation attack. (Correct answer)
- A multi-level marketing scheme.
Correct answer: A vishing (voice phishing) and impersonation attack.
This scenario is a common vishing (voice phishing) attack. Scammers impersonate authority figures from organizations like the IRS or law enforcement to create a sense of fear and urgency. Legitimate government agencies will never demand immediate payment over the phone, especially using non-standard methods like gift cards, wire transfers, or cryptocurrency.
You review your credit card statement and notice several transactions you did not make.
After reporting the fraud to your credit card company, what is the MOST critical next step to protect yourself from further identity theft?