GSLC Exam Questions
575 real GSLC exam questions with expert-verified answers and explanations. Page 1 of 12.
- Question #1Security Program Management & Governance
Tomas is the project manager of the QWS Project and is worried that the project stakeholders will want to change the project scope frequently. His fear is based on the many open is...
change management planproject scopeissue logstakeholder management - Question #2Security Architecture & Engineering
Which of the following statements is true about the difference between worms and Trojan horses?
malwarewormsTrojan horsesmalicious code - Question #3Security Architecture & Engineering
Victor wants to use Wireless Zero Configuration (WZC) to establish a wireless network connection using his computer running on Windows XP operating system. Which of the following a...
wireless securityWZCrogue access pointwireless analyzer - Question #4Security Program Management & Governance
Olive is the program manager for her organization. She has created a request for proposal for a large portion of her program. In this work to be procured she has set several requir...
vendor screeningprocurementevaluation criteriaRFP - Question #5Security Architecture & Engineering
Which of the following PPP configuration options is used to increase the effective throughput on PPP connections by reducing the amount of data in the frame that must travel across...
PPPcompressionnetwork protocolthroughput optimization - Question #6Security Architecture & Engineering
Which of the following standards is used in wireless local area networks (WLANs)?
IEEE 802.11bWLANwireless standardsnetwork standards - Question #7Security Architecture & Engineering
Adrian knows the host names of all the computers on his network. He wants to find the IP addresses of these computers. Which of the following TCP/IP utilities can he use to find th...
TCP/IP utilitiesPINGTRACERThostname resolution - Question #8Security Program Management & Governance
The Project Procurement Management knowledge area focuses on which of the following processes? Each correct answer represents a complete solution. Choose two.
procurement managementcontract administrationcontract closureproject management - Question #9Security Architecture & Engineering
In which of the following attacks does an attacker create the IP packets with a forged (spoofed) source IP address with the purpose of concealing the identity of the sender or impe...
IP spoofingpacket manipulationnetwork attacksidentity concealment - Question #10Security Awareness & Training
An intruder is trying to get user passwords by pretending to be help desk staff. Which of the following types of security attacks do you think it is?
social engineeringimpersonationhelp desk attackpretexting - Question #11Security Operations & Incident Response Leadership
You work as a Network Administrator for Blue Well Inc. The company has a Windows Server 2008 domain-based network. All client computers on the network run Windows Vista Ultimate. A...
phishing filteremail securityWindows Mailspam filtering - Question #12Security Architecture & Engineering
You work as a Network Administrator for McNeil Inc. The company has a Windows Active Directorybased single domain single forest network. The functional level of the forest is Windo...
wireless securitysmart card authenticationEAPWPA - Question #13Security Architecture & Engineering
Which of the following tools works both as an encryption-cracking tool and as a keylogger?
keyloggerencryption crackingMagic Lanternsecurity tools - Question #14Security Architecture & Engineering
Which of the following statements about Encapsulating Security Payload (ESP) are true? Each correct answer represents a complete solution. Choose two.
ESPIPSecL2TPVPN protocols - Question #15Security Architecture & Engineering
John works as a professional Ethical Hacker. He has been assigned a project to test the security He injects the virus on the server and, as a result, the server becomes infected wi...
antivirus evasionpolymorphic virusmutation enginevirus signature - Question #16Security Program Management & Governance
You are a project manager of a construction project. You are documenting project purchasing decisions, specifying the approach, and identifying potential sellers. You are in which...
procurement planningproject purchasingseller identificationprocurement process - Question #17Security Architecture & Engineering
Which of the following is a virus that can redirect the disk head to read another sector instead of the one in which it resides?
stealth virusmalware typesdisk manipulationvirus evasion - Question #18Security Program Management & Governance
An organization has a standardized change management plan that all project managers must adhere to. A project manager has worked with the Change Control Board in his organization t...
change managementWBSscope changechange control board - Question #19Security Architecture & Engineering
John is a merchant. He has set up a LAN in his office. Some important files are deleted as a result of virus attack. John wants to ensure that it does not happen again. What will h...
antivirusmalware preventionvirus protectiondata security - Question #20Security Awareness & Training
Which of the following are types of social engineering attacks? Each correct answer represents a complete solution. Choose two.
social engineeringimpersonationtailgatingphysical security - Question #21Security Architecture & Engineering
Kerberos is a computer network authentication protocol that allows individuals communicating over a non-secure network to prove their identity to one another in a secure manner. Wh...
Kerberosauthentication protocolTGSclock synchronization - Question #22Security Operations & Incident Response Leadership
Which of the following tools can be used for stress testing of a Web server? Each correct answer represents a complete solution. Choose two.
stress testingweb serverinternet botsscripts - Question #23Security Architecture & Engineering
A user has opened a Web site that automatically starts downloading malicious code onto his computer. What should he do to prevent this? Each correct answer represents a complete so...
ActiveX controlsactive scriptingbrowser securitymalicious code - Question #24Security Program Management & Governance
Which of the following is a complete indexed set of records of the procurement process incorporated into the administrative closure process?
contract fileprocurementadministrative closureproject management - Question #25Security Architecture & Engineering
You work as a Network Administrator for NetTech Inc. The company has a Windows Server 2008 Active Directory-based single domain single forest network. The company's network is conn...
PKIroot CAoffline CAcertificate authority - Question #26Security Architecture & Engineering
Your Web server crashes at exactly the point where it reaches 1 million total visits. You discover the cause of the server crash is malicious code. Which description best fits this...
logic bombmalwaretrigger-based attackmalicious code - Question #27Security Program Management & Governance
Which of the following processes is described in the statement below? "It is a process of developing an approximation of the costs of the resources needed to complete project activ...
cost estimatingproject managementresource costsproject activities - Question #28Security Architecture & Engineering
Which of the following statements about Encapsulating Security Payload (ESP) is true?
ESPIPSecdata encryptiondata integrity - Question #29Security Architecture & Engineering
Which of the following layers of TCP/IP model is used to move packets between the Internet Layer interfaces of two different hosts on the same link?
TCP/IP modellink layernetwork layerspacket routing - Question #30Security Operations & Incident Response Leadership
Which of the following is a signature-based intrusion detection system (IDS) ?
IDSSnortsignature-based detectionintrusion detection - Question #31Security Architecture & Engineering
Which of the following viruses/worms uses the buffer overflow attack?
buffer overflowCode Red wormvulnerability exploitationmalware - Question #32Security Architecture & Engineering
Wired Equivalent Privacy (WEP) is a security protocol for wireless local area networks (WLANs). It has two components, authentication and encryption. It provides security equivalen...
WEPRC4 encryptioninitialization vectorwireless security - Question #33Security Architecture & Engineering
Which of the following types of attacks cannot be prevented by a firewall? Each correct answer represents a complete solution. Choose all that apply.
firewall limitationsphishingshoulder surfingURL obfuscation - Question #34Security Architecture & Engineering
Which of the following protocols provides mail forwarding and information storing features?
IMAPemail protocolsmail forwardingmail storage - Question #35Security Architecture & Engineering
You are responsible for the security computers in college labs. Since a number of students have significant computer skills, you wish to make security impossible to breach through...
BIOS securitypre-boot authenticationphysical securitypassword protection - Question #36Security Program Management & Governance
Rick is the project manager for TTM project. He is in the process of procuring services from vendors. He makes a contract with a vendor in which he precisely specify the services t...
firm fixed pricecontract typesprocurementvendor management - Question #37Security Operations & Incident Response Leadership
Which of the following tools provides a visual diagram of a network?
network mappernetwork topologynetwork visualizationnetwork tools - Question #38Security Architecture & Engineering
Against which of the following does SSH provide protection? Each correct answer represents a complete solution. Choose two.
SSHpassword sniffingIP spoofingnetwork security - Question #39Security Program Management & Governance
Which of the following techniques is based on a set of criteria that has been acquired in a specific knowledge area or product area?
expert judgmentestimation techniquesproject managementknowledge areas - Question #40Security Architecture & Engineering
Which of the following applications work as mass-emailing worms? Each correct answer represents a complete solution. Choose two.
mass-emailing wormsNimdaI LOVE YOU virusmalware classification - Question #41Security Architecture & Engineering
Which of the following wireless security features provides the best wireless security mechanism?
wireless securityWPA802.1Xauthentication - Question #42Security Program Management & Governance
Dawn is the project manager of the HQQ Project and she believes the project work is done. She has prepared the final project report, which includes information on the financial per...
project managementscope managementWBSproject charter - Question #43Security Architecture & Engineering
GSM uses either A5/1 or A5/2 stream cipher for ensuring over-the-air voice privacy. Which of the following cryptographic attacks can be used to break both ciphers?
GSMstream cipherciphertext-only attackcryptanalysis - Question #44Security Operations & Incident Response Leadership
PsPasswd is a tool used by network administrators to change an account password on the local or remote system. Which of the following are the command syntaxes used by the PsPasswd...
PsPasswdpassword managementremote administrationtool syntax - Question #45Security Architecture & Engineering
Which of the following types of attacks occurs when an attacker successfully inserts an intermediary software or program between two communicating hosts?
man-in-the-middle attacknetwork attacksattack typesintermediary - Question #46Risk Management & Compliance
Maria works as a Risk Analysis Manager for Gentech Inc. She starts a new IT project. Which of the following phases of her project development process is most suitable for including...
risk analysisproject initiationrisk management lifecycleIT project - Question #47Security Operations & Incident Response Leadership
You are concerned about possible hackers doing penetration testing on your network as a prelude to an attack. What would be most helpful to you in finding out if this is occurring?
firewall logspenetration testing detectionnetwork monitoringlog analysis - Question #48Security Awareness & Training
Which of the following attacks can be mitigated by providing proper training to the employees in an organization?
social engineeringemployee trainingsecurity awarenesshuman factors - Question #49Security Architecture & Engineering
Which of the following statements about a certification authority (CA) is true?
PKIcertificate authoritydigital certificatesdigital signatures - Question #50Security Architecture & Engineering
You are responsible for securing the network at a law firm. You are concerned about printer security. What steps should you take to prevent printer security breaches? Each correct...
printer securityendpoint securitySSH hardeningnetwork devices