
EC-CouncilCertified Security Specialist
Domain 3Objective 1
Information Security Fundamentals ECSS Practice Questions (Page 1)
Part of the Ethical Hacking Fundamentals and Core Attacks domain, which makes up ~17% of our current practice bank.
50questions here
10free pages
10concepts
Questions 1–5
- 1
A company has a high rate of employees writing down passwords on sticky notes. The security team wants to reduce this behavior. Which control would be most effective?
Select an answer first - 2
An intrusion detection system (IDS) that alerts administrators when suspicious network activity occurs is an example of which type of security control?
Select an answer first - 3
An organization decides to accept the risk of a low-impact, low-probability security incident rather than spend money on additional controls. This decision is an example of:
Select an answer first - 4
A security guard checks employee badges at the entrance to a data center. This control is best classified as:
Select an answer first - 5
A bank processes wire transfers. A customer claims they never authorized a transfer, but the bank's system shows the transfer was initiated with the customer's valid credentials and a one-time passcode. The bank needs to prove to a regulator that the customer did authorize the transaction. Which security mechanism would best provide this proof?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.