
GIAC Security Essentials
Domain 3Objective 2
Cryptography Application GSEC Practice Questions (Page 1)
Part of the Cryptography and Communications domain, which makes up ~12% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~11–19 in this domain), expect 4–6 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)
42questions here
9free pages
8concepts
Questions 1–5
- 1
A company stores user passwords in a database. To reduce the risk of password disclosure if the database is breached, the security team decides to store only a salted hash of each password. Which property of cryptographic hash functions makes this approach effective?
Select an answer first - 2
A company is setting up a new web server for public-facing HTTPS. They want to ensure that clients can verify the server's identity without browser warnings. They also want to minimize the risk of certificate compromise. Which approach is most appropriate?
Select an answer first - 3
Which protocol is designed to secure IP communications by encrypting and authenticating each IP packet?
Select an answer first - 4
A security administrator discovers that a private key corresponding to a public certificate used for TLS has been compromised. What is the immediate action the administrator should take to prevent further misuse?
Select an answer first - 5
What is the primary function of a certificate authority (CA) in a PKI?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.