
GIAC Security Essentials
Domain 2Objective 1
Defensible Network Architecture GSEC Practice Questions (Page 7)
Part of the Network Security domain, which makes up ~17% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~16–27 in this domain), expect 4–7 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
8concepts
Questions 31–35
- 31
A security team is implementing zero trust and wants to detect anomalous behavior within their micro-segmented environment. They have a SIEM and want to baseline normal traffic patterns. Which approach best supports this?
Select an answer first - 32
A company is adopting a zero trust model. They want to implement micro-segmentation to limit lateral movement. Which approach best aligns with zero trust principles?
Select an answer first - 33
An organization wants to implement zero trust principles in its data center. They want to limit lateral movement even if a workload is compromised. Which approach best aligns with zero trust?
Select an answer first - 34
A security analyst needs to detect an attacker moving laterally from the DMZ to the internal network. Which monitoring approach is most effective?
Select an answer first - 35
A company wants to provide remote access to its internal file shares for employees using personal laptops. They require strong authentication and want to ensure that if a laptop is compromised, the internal network is not directly exposed. Which solution best meets these requirements?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.