
GIAC Security Essentials
Domain 1Objective 2
Defense in Depth GSEC Practice Questions (Page 7)
Part of the Foundations of Security domain, which makes up ~11% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~10–18 in this domain), expect 3–6 from this objective — we provide 55 practice questions to prepare you well beyond it. (estimate)
55questions here
11free pages
9concepts
Questions 31–35
- 31
What is the primary purpose of network segmentation in a defense-in-depth strategy?
Select an answer first - 32
A company is migrating to a cloud-based infrastructure. The security team must ensure that data is protected in transit and at rest, and that only authorized users can access resources. They also want to reduce the risk of credential theft. Which combination of controls is most effective?
Select an answer first - 33
What is the primary purpose of a mantrap in physical security?
Select an answer first - 34
A company wants to protect its customer database. Which combination of controls best demonstrates defense-in-depth?
Select an answer first - 35
A financial institution is required to protect customer data both at rest and in transit. The security architect must choose a set of controls that satisfies compliance while minimizing performance impact on the database. Which approach is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.