
EC-CouncilCertified Security Specialist
Domain 1Objective 5
Technical Controls (firewalls, IDS/IPS, VPNs, SIEM) ECSS Practice Questions (Page 7)
Part of the Network Defense Fundamentals and Controls domain, which makes up ~21% of our current practice bank.
51questions here
11free pages
14concepts
Questions 31–35
- 31
A company wants to automatically block malicious traffic at the network perimeter without requiring manual intervention for every alert. They also need to maintain visibility into blocked attempts for later analysis. Which deployment best achieves this?
Select an answer first - 32
What is a primary use case for an IPsec VPN?
Select an answer first - 33
A security team is implementing a SIEM to meet a compliance requirement that mandates log retention for one year. The SIEM must also provide real-time alerting for suspicious activity. The team is concerned about storage costs. Which configuration best balances compliance and cost?
Select an answer first - 34
A remote employee needs to access internal resources securely from a public Wi-Fi network. The employee's device is company-managed and has a VPN client installed. Which VPN type should be used to ensure the connection is encrypted and authenticated?
Select an answer first - 35
A security analyst needs to monitor traffic on a critical internal subnet and automatically block malicious packets without disrupting legitimate traffic. The solution must be able to drop packets that match known attack signatures. Which control should be deployed?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.