
GIAC Security Essentials
Domain 6Objective 1
Data Loss Prevention and Mobile Device Security GSEC Practice Questions (Page 10)
Part of the Data Protection and Emerging Technologies domain, which makes up ~12% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~11–19 in this domain), expect 4–6 from this objective — we provide 53 practice questions to prepare you well beyond it. (estimate)
53questions here
11free pages
10concepts
Questions 46–50
- 46
When creating a DLP policy, what three types of conditions are commonly used to define rules?
Select an answer first - 47
A DLP administrator is configuring a policy to detect source code exfiltration. The source code contains unique identifiers and proprietary function names. The administrator wants to detect both exact copies and modified versions of the code. Which detection technique is most appropriate?
Select an answer first - 48
A DLP administrator is configuring a policy for a law firm that handles highly confidential client documents. The policy currently blocks any email containing a document fingerprint match. However, the firm's attorneys frequently send redacted versions of these documents to opposing counsel. The redacted documents still trigger the fingerprint match because the fingerprinting algorithm is based on the entire document. What should the administrator do to allow legitimate redacted documents while still blocking full documents?
Select an answer first - 49
What is the primary purpose of a Data Loss Prevention (DLP) system?
Select an answer first - 50
What is a key difference between BYOD and COPE strategies?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.