Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Security Essentials

Domain 4Objective 8

Windows Security Infrastructure GSEC Practice Questions (Page 8)

Part of the Endpoint and Platform Security domain, which makes up ~32% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~30–51 in this domain), expect 3–6 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)

46questions here
10free pages
12concepts

Questions 36–40

  1. 36application · medium

    A user reports that they can open a confidential file in the finance share but cannot modify it, even though their manager can. Both users are in the same AD group that has Modify permission on the folder. You check the file's security descriptor and find that the file's DACL grants the group Modify, but the file also has an explicit Deny Write ACE for the user. What is the most likely reason the user cannot modify the file?

    Select an answer first
  2. 37foundation · easy

    Which Windows encryption technology provides full-volume encryption for the system drive and requires a Trusted Platform Module (TPM) for the most secure configuration?

    Select an answer first
  3. 38expert · hard

    A company has a server that stores sensitive data. They want to encrypt the data at rest and also ensure that if the server is stolen, the data cannot be accessed by removing the disks. They also want to be able to recover the data if the server's motherboard fails. Which solution should they implement?

    Select an answer first
  4. 39expert · hard

    A security analyst is investigating a suspicious process that attempted to access a protected file. The analyst needs to determine whether the process had the necessary permissions and which security identifier (SID) was used for the access check. Which Windows component should the analyst examine?

    Select an answer first
  5. 40application · medium

    A laptop is used by a sales representative who travels frequently. The laptop contains sensitive customer data. The company requires that if the laptop is stolen, the data cannot be read by an attacker, even if the attacker removes the hard drive and connects it to another computer. Which technology should be used?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.