
EC-CouncilCertified Security Specialist
Domain 1Objective 3
Administrative Security Controls ECSS Practice Questions (Page 7)
Part of the Network Defense Fundamentals and Controls domain, which makes up ~21% of our current practice bank.
59questions here
12free pages
12concepts
Questions 31–35
- 31
What is the primary purpose of security auditing?
Select an answer first - 32
A small financial firm has a two-person IT team. The same administrator who creates user accounts also approves access requests and reviews audit logs. During a recent audit, the auditor flagged this arrangement as a control weakness. The firm wants to reduce the risk of unauthorized access without hiring additional staff. Which administrative control should the firm implement?
Select an answer first - 33
What is the key difference between a security procedure and a security guideline?
Select an answer first - 34
Which of the following is an example of a regulatory requirement that administrative controls must address?
Select an answer first - 35
Which of the following is a common component of a security awareness program?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.