
GIAC Defensible Security Architect
Domain 3Objective 2
Network Encryption and Remote Access GDSA Practice Questions (Page 6)
Part of the Network Services and Encryption domain, which makes up ~23% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–18 in this domain), expect 4–6 from this objective — we provide 49 practice questions to prepare you well beyond it. (estimate)
49questions here
10free pages
8concepts
Questions 26–30
- 26
Which practice is essential for securely storing encryption keys in an enterprise environment?
Select an answer first - 27
Which statement accurately describes a key difference between symmetric and asymmetric encryption?
Select an answer first - 28
A hospital is deploying a new wireless network for medical devices that do not support WPA3-Enterprise. The security team requires strong encryption and per-device authentication to prevent rogue devices from joining. Which configuration provides the best security for these legacy devices?
Select an answer first - 29
A large e-commerce site is experiencing performance issues during peak traffic. The security team suspects that the TLS handshake is causing latency. They want to reduce the number of round trips required for the handshake while maintaining strong security. Which approach should they take?
Select an answer first - 30
A company is designing a remote access architecture for 5,000 employees. They need to support both site-to-site VPNs for branch offices and remote access for individual users. The security team wants to centralize authentication and policy management. Which architecture should they choose?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDSA” is a trademark of its owner, used for identification only.