
GIAC Continuous Monitoring Certification
Domain 7Objective 1
Network Data Encryption GMON Practice Questions (Page 6)
Part of the Data Protection domain, which makes up ~7% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~5–8 in this domain), expect 5–8 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)
52questions here
11free pages
9concepts
Questions 26–30
- 26
A company is setting up a remote access solution for employees working from home. They need to ensure that all traffic between the employee's laptop and the corporate network is encrypted and authenticated. Which technology is most appropriate?
Select an answer first - 27
A financial institution is required to encrypt all data in transit per PCI-DSS. They use TLS for web traffic and IPsec for internal network links. The security team is implementing a key management policy. Which practice is most important to ensure the confidentiality of the encryption keys?
Select an answer first - 28
A security team is planning to deploy a TLS inspection proxy to monitor encrypted traffic. They are concerned about performance impact and want to minimize latency for users. Which deployment strategy would best reduce the performance impact?
Select an answer first - 29
What is a common technique used to inspect encrypted traffic for security monitoring?
Select an answer first - 30
What is the purpose of a digital certificate in a TLS handshake?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GMON” is a trademark of its owner, used for identification only.