
GIAC Information Security Fundamentals
Domain 4Objective 2
Identity, Access and Data Protection GISF Practice Questions (Page 7)
Part of the Cryptography and Identity domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 4–6 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)
38questions here
8free pages
8concepts
Questions 31–35
- 31
An administrator needs to enforce a policy that all users in the 'marketing' department can access the marketing file share, but no other users can. The company uses Active Directory. Which mechanism should the administrator use to enforce this access control decision?
Select an answer first - 32
Which data classification level typically includes information that if disclosed could cause serious damage to an organization?
Select an answer first - 33
A company has a file server with a complex set of permissions. They want to ensure that a new employee in the marketing department gets the same access as other marketing employees, but they also want to avoid manually setting permissions for each new hire. Which mechanism is most efficient?
Select an answer first - 34
Which of the following is an example of a possession factor for authentication?
Select an answer first - 35
In information security, which term describes the act of verifying that a claimed identity is valid?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISF” is a trademark of its owner, used for identification only.