GSEC Exam Questions
409 real GSEC exam questions with expert-verified answers and explanations. Page 6 of 9.
- Question #251
To update from a Windows Server Update Services (WSUS) server, users of the machine must have what rights, If any?
- Question #252
How many clients Is a single WSUS server designed to support when the minimum system requirements are met?
- Question #253
What does Authentication Header (AH) add to the packet in order to prevent an attacker from lying about the source?
- Question #254
What is needed for any of the four options for Azure AD multi-factor user authentication?
- Question #255
A Network Engineer is charged with maintaining and protecting a network with a high availability requirement. In addition to other defenses, they have chosen to implement a NIPS. H...
- Question #256
How is confidentiality disabled in the IPSec Encapsulated Security Payload protocol?
- Question #257
What Windows log should be checked to troubleshoot a Windows service that is falling to start?
- Question #258
Which Terraform command should be run immediately after creating a new configuration file for a cloud-based virtual machine?
- Question #259
Which of the following would be used to explicitly deny the traffic from a foreign IP address scanning the EC2 Instances in a VPC?
- Question #260
What does it mean if a protocol such as HTTP is stateless?
- Question #261
On an NTFS file system, what will happen when a conflict exists between Allow and Deny permissions?
- Question #262
What improvement could a company that is rated at a NIST Implementation Tier of 2: Risk Informed do to Increase their rating to a Tier 3: Repeatable?
- Question #263
A Windows administrator wants to automate local and remote management tasks in Active Directory. Which tool is most appropriate for this?
- Question #264
Analyze the screenshot below. In what order should the vulnerabilities be remediated?
- Question #265
What type of HTTP session tracking artifact is designed to expire once a user's web browser session is closed?
- Question #266
A VPC is created with a CIDR block of 10.22.0.0/16, which of the following private subnets could be Included?
- Question #267
Which of the following access control principles helps prevent collusion and detect abuse of access?
- Question #268
If an attacker compromised a host on a site's internal network and wanted to trick other machines into using that host as the default gateway, which type of attack would he use?
- Question #269
Which of the following logging tasks should be evaluated in real-time?
- Question #270
Which Linux command could a systems administrator use to determine if an attacker had opened up a new listening port on her system?
- Question #271
What is log, pre-processing?
- Question #272
Which of the following tasks is the responsibility of a Linux systems administrator who is deploying hardening scripts to his systems?
- Question #273
A web application requires multifactor authentication when a user accesses the application from a home office but does not require this when the user is in the office. What access...
- Question #274
Which of the following resources is a knowledge base of real-world observed adversary tactics and techniques?
- Question #275
Which AWS service integrates with the Amazon API Gateway to provision and renew TLS encryption needs for data in transit?
- Question #276
What is the purpose of notifying stakeholders prior to a scheduled vulnerability scan?
- Question #277
Which data format is shown in the following log entry?
- Question #278
Which of the following is a Personal Area Network enabled device?
- Question #279
What does PowerShell remoting use to authenticate to another host in a domain environment?
- Question #280
Training an organization on possible phishing attacks would be included under which NIST Framework Core guidelines?
- Question #281
What Amazon Web Services (AWS) term describes a grouping of at least one datacenter with redundant power, high speed connections to other data centres and the Internet?
- Question #282
Which Authenticates Assurance Level requires a hardware-based authenticates?
- Question #283
Which field in the IPv6 header is used for QoS. or specifying the priority of the packet?
- Question #284
What is a forensic examiner confirming when they create a cryptographic hash, such asMD5 or SHA1, of a file?
- Question #285
What advantage would an attacker have in attacking a web server using the SSL protocol?
- Question #286
Which of the four basic transformations in the AES algorithm involves the leftward circular movement of state data?
- Question #287
Which of the following processes Is used to prove a user Is who they claim to be based upon something they know, have, are, and/or their physical location?
- Question #288
What method do Unix-type systems use to prevent attackers from cracking passwords using pre- computed hashes?
- Question #289
What security advantage does the utilization of a switch as opposed to a hub offer for a secure network design?
- Question #290
An application developer would like to replace Triple DES in their software with a stronger algorithm of the same type. Which of the following should they use?
- Question #291
Analyze the following screenshot. What conclusion can be drawn about the user account shown?
- Question #292
Based on the iptables output below, which type of endpoint security protection has host 192.168.1.17 implemented for incoming traffic on TCP port 22 (SSH) and TCP port 23 (telnet)?
- Question #293
How does a default deny rule in a firewall prevent unknown attacks?
- Question #294
Which of the following is the key point to consider in the recovery phase of incident handling? Which of the following is the key point to consider in the recovery phase of inciden...
- Question #295
Critical information is encrypted within an application accessible only to a small group of administrators, with a separate group of administrators holding the decryption keys. Wha...
- Question #296
An attacker is able to trick an IDS into ignoring malicious traffic through obfuscation of the packet payload. What type of IDS error has occurred?
- Question #297
How can an adversary utilize a stolen database of unsalted password hashes?
- Question #298
Which of the following Microsoft services integrates SSO into Microsoft 365 by syncing with on- premises servers?
- Question #299
Which of the following utilities can be used to manage the Windows Firewall (WF) from the command line?
- Question #300
What is achieved with the development of a communication flow baseline?