
GIAC Information Security Fundamentals
Domain 4Objective 1
Foundations of Cryptography and Digital Trust GISF Practice Questions (Page 8)
Part of the Cryptography and Identity domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 4–6 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
7concepts
Questions 36–40
- 36
What property of a cryptographic hash function makes it suitable for detecting data tampering?
Select an answer first - 37
A company's IT policy requires that encryption keys be stored separately from the encrypted data. Which of the following is the primary reason for this practice?
Select an answer first - 38
Two remote offices need to establish a secure communication channel. They plan to use a pre-shared key (PSK) for symmetric encryption. What is the primary risk of using a PSK?
Select an answer first - 39
A user attempts to connect to a secure website and receives a warning that the certificate is not trusted. The certificate is not expired and the domain matches. What should the user do first?
Select an answer first - 40
A software vendor distributes a signed update file. The vendor's support team tells you to verify the digital signature before installation. What does successfully verifying the signature prove?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISF” is a trademark of its owner, used for identification only.