
GIAC Security Essentials
Domain 1Objective 1
Access Control & Password Management GSEC Practice Questions (Page 8)
Part of the Foundations of Security domain, which makes up ~11% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~10–18 in this domain), expect 3–6 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)
38questions here
8free pages
7concepts
Questions 36–38
- 36
A developer proposes storing user passwords as unsalted SHA-256 hashes. The security team rejects this. Which alternative should they recommend?
Select an answer first - 37
Why do many password policies include a maximum password age (expiration) requirement?
Select an answer first - 38
How do password managers typically protect stored credentials?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to GSEC
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.