
Systems Security Certified Practitioner
Domain 6Objective 2
6.2 - Understand Network Attacks (e.g., Distributed Denial of Service (DDoS), Man-In-The-Middle (MITM), Domain Name System (DNS) Cache Poisoning) SSCP Practice Questions (Page 1)
Part of the Network and Communication Security domain, which accounts for 16% of the SSCP exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–13 in this domain), expect 1–2 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)
31questions here
7free pages
9concepts
16%of the exam
Questions 1–5
- 1
An online gaming company is preparing for the launch of a new multiplayer title. The security team anticipates a large-scale DDoS attack targeting the game's authentication servers. The company wants to absorb volumetric attacks while keeping latency low for legitimate players. Which approach best balances these requirements?
Select an answer first - 2
Which of the following is a key countermeasure against man-in-the-middle (MITM) attacks?
Select an answer first - 3
A university's IT team discovers that the campus DNS resolver has been returning incorrect IP addresses for several popular websites. The team suspects DNS cache poisoning. The university wants to prevent this from recurring while minimizing disruption to the campus community. Which action should the team take first?
Select an answer first - 4
Which capability distinguishes a next-generation firewall (NGFW) from a traditional stateful firewall?
Select an answer first - 5
Which scenario best illustrates a man-in-the-middle (MITM) attack?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “SSCP” is a trademark of its owner, used for identification only.