Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Information Security Fundamentals

Domain 4Objective 2

Identity, Access and Data Protection GISF Practice Questions (Page 3)

Part of the Cryptography and Identity domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 4–6 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)

38questions here
8free pages
8concepts

Questions 11–15

  1. 11application · medium

    A system administrator needs to grant a specific user read-only access to a file while denying all other users. The file system supports both ACLs and group policies. Which mechanism is the most direct and appropriate for this requirement?

    Select an answer first
  2. 12application · medium

    A system administrator wants to enforce a company policy that only members of the 'Finance' group can access the payroll folder. Which mechanism should they use?

    Select an answer first
  3. 13foundation · easy

    Which access control mechanism grants access based on a token or key held by the subject rather than a list on the object?

    Select an answer first
  4. 14foundation · easy

    Which data protection technique converts data into a fixed-length string that cannot be reversed to recover the original data?

    Select an answer first
  5. 15application · medium

    A multinational company processes personal data of EU citizens. They want to ensure compliance with GDPR. Which practice is most directly aligned with GDPR requirements?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISF” is a trademark of its owner, used for identification only.