
GIAC Security Essentials
Domain 1Objective 1
Access Control & Password Management GSEC Practice Questions (Page 6)
Part of the Foundations of Security domain, which makes up ~11% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~10–18 in this domain), expect 3–6 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)
38questions here
8free pages
7concepts
Questions 26–30
- 26
An organization is implementing MFA for a high-security environment. The security team wants to prevent phishing and also ensure that the solution works for employees who do not have smartphones. Which MFA method is most appropriate?
Select an answer first - 27
What is the primary benefit of using a password manager for an organization?
Select an answer first - 28
A company is revising its password policy. They want to reduce the risk of credential stuffing attacks while minimizing user frustration. Which policy change is most effective?
Select an answer first - 29
A company wants to encourage employees to use unique passwords for each application. They are considering a password manager. Which feature is most important for securely storing credentials?
Select an answer first - 30
A new employee joins the finance department and needs access to the accounting system and the shared finance folder. The employee's manager requests that the employee have access to all finance-related resources. According to least privilege, what should the IT admin do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.