
EC-CouncilCertified Security Specialist
Domain 1Objective 2
Identification, Authentication, and Authorization ECSS Practice Questions (Page 3)
Part of the Network Defense Fundamentals and Controls domain, which makes up ~21% of our current practice bank.
46questions here
10free pages
9concepts
Questions 11–15
- 11
A company has multiple internal web applications, each with its own login page. Employees complain about remembering many passwords, and the IT team wants to reduce password fatigue while maintaining central control over access. Which solution best addresses this need?
Select an answer first - 12
A network administrator is configuring a shared folder on a Windows server. The folder contains marketing materials that should be readable by all employees but only writable by the 'Marketing' group. The administrator needs to enforce this policy at the file-system level. What should the administrator configure?
Select an answer first - 13
Which of the following is an example of the 'something you have' authentication factor?
Select an answer first - 14
An organization wants to allow employees to use their corporate credentials to access a third-party SaaS application without creating a separate account. Which approach should the organization implement?
Select an answer first - 15
In network security, what is the correct sequence and definition of the three processes that occur when a user attempts to access a protected resource?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.