GSLC Exam Questions
575 real GSLC exam questions with expert-verified answers and explanations. Page 4 of 12.
- Question #153Security Architecture & Engineering
Which of the following is the process of rewriting source and destination addresses of IP packets as they pass through a router or firewall?
SNATNATIP address translationfirewall architecture - Question #154Security Operations & Incident Response Leadership
Which of the following types of computers is used for attracting potential intruders?
honeypotdeception technologyintrusion detectionattacker luring - Question #155Security Architecture & Engineering
You work as a Network Administrator for Infonet Inc. The company has a Windows Server 2008 domain-based network. The network has three Windows Server 2008 member servers and 150 Wi...
netsh wlanWindows Server Corewireless LAN administrationnetwork commands - Question #156Security Architecture & Engineering
What is the major difference between a worm and a Trojan horse?
worm vs Trojanmalware classificationself-replicationmalware types - Question #157Metrics, Reporting & Future State
Roberta is the project manager of the KJL Project for her company. She is creating a chart that will help categorize the problems discovered during the quality control inspection p...
Pareto chartquality metricsdefect frequency rankingquality control - Question #158Risk Management & Compliance
Management has asked you to perform a risk audit and report back on the results. Bonny, a project team member asks you what a risk audit is. What do you tell Bonny?
risk auditrisk response effectivenessrisk monitoringrisk management process - Question #159Security Program Management & Governance
Which of the following techniques is based on a set of criteria that has been acquired in a specific knowledge area or product area?
expert judgmentknowledge-based estimationproject management techniquesdecision making - Question #160Security Operations & Incident Response Leadership
Which of the following evidences are the collection of facts that, when considered together, can be used to infer a conclusion about the malicious activity/person?
circumstantial evidenceforensic evidence typesincident investigationdigital forensics - Question #161Security Architecture & Engineering
Mark works as a Network Administrator for BlueWell Inc. While surfing the Internet, he enters a address?
DNSname resolutionnetwork protocols - Question #162Security Program Management & Governance
Managerial wisdom is the combination of knowledge as well as experience. It is the ability of the leaders to understand the members of the team. Which of the following are the char...
leadershipmanagerial wisdomteam management - Question #163Security Architecture & Engineering
According to the security requirements given in case study, which of the following security method should you implement to provide data security between NSILegal and NSIHR? (Click...
IPSecESPdata encryptionnetwork security - Question #164Security Operations & Incident Response Leadership
Which of the following statements about front door attack is true?
front door attackattack typesunauthorized access - Question #165Security Architecture & Engineering
Which of the following exists between the client and the server system to provide security and allows customized NAT traversal filters to be plugged into the gateway to support add...
application-level gatewayNAT traversalproxyfirewall - Question #166Security Operations & Incident Response Leadership
Which of the following terms describes an attempt to transfer DNS zone data?
DNS zone transferreconnaissancenetwork attacks - Question #167Security Architecture & Engineering
Which of the following tools can be used to detect the steganography?
steganographydetection toolsdata hiding - Question #168Security Architecture & Engineering
Which of the following is responsible for maintaining certificates in a public key infrastructure (PKI)?
PKICertificate Authoritydigital certificates - Question #169Security Architecture & Engineering
Which of the following is the method of hiding data within another media type such as graphic or document?
steganographydata hidingcryptography - Question #170Security Architecture & Engineering
Ryan wants to create an ad hoc wireless network so that he can share some important files with another employee of his company. Which of the following wireless security protocols s...
wireless securityWEPWPAad hoc network - Question #171Security Architecture & Engineering
You have just set up a wireless network for customers at a coffee shop. Which of the following are good security measures to implement? Each correct answer represents a complete so...
wireless securityWPApublic networkencryption - Question #172Security Architecture & Engineering
You are the Network Administrator for a company that does a large amount of defense contract business. A high level of security, particularly regarding sensitive documents, is requ...
printer securityremote administrationtelnetnetwork hardening - Question #173Security Architecture & Engineering
You work as a Network Administrator for Net Perfect Inc. The company's intranet Web site netperfect.com uses a digital certificate issued by the company's Enterprise Certificate Au...
digital certificatesPKIcertificate trustEnterprise CA - Question #174Security Awareness & Training
In which of the following Person-to-Person social engineering attacks does an attacker pretend to be an outside contractor, delivery person, etc., in order to gain physical access...
social engineeringimpersonationphysical accessperson-to-person attack - Question #175Risk Management & Compliance
How can you calculate the Annualized Loss Expectancy (ALE) that may occur due to a threat?
ALESLEAROrisk quantification - Question #176Risk Management & Compliance
Which of the following processes is described in the statement below? "It is the process of implementing risk response plans, tracking identified risks, monitoring residual risk, i...
risk monitoringrisk controlrisk responseproject risk management - Question #177Security Operations & Incident Response Leadership
Which of the following viruses infects multiple targets?
malwarevirus typesmultipartite virus - Question #178Security Awareness & Training
You work as a technician for Secure Net Inc. You receive an e-mail from your software vendor. The e-mail contains information about a critical fix that needs to be installed on you...
social engineeringphishingpretextingemail attack - Question #179Security Operations & Incident Response Leadership
In which of the following malicious hacking steps does email tracking come under?
reconnaissancehacking methodologyemail trackingfootprinting - Question #180Security Program Management & Governance
You are a project manager for a recycling company. You are in the process of reviewing proposals from sellers for recycling equipment. You notice the scope statement states the com...
project managementscope statementresource planningcompliance requirements - Question #182Security Architecture & Engineering
Which of the following types of security will be the cause of concern if the server has been stolen from the organization's premises?
physical securityserver theftasset protectionphysical controls - Question #183Security Architecture & Engineering
Which of the following firewalls inspects the actual contents of packets?
application-layer firewalldeep packet inspectionfirewall typespacket filtering - Question #184Security Operations & Incident Response Leadership
Your Company is receiving false and abusive e-mails from the e-mail address of your partner company. When you complain, the partner company tells you that they have never sent any...
email spoofingidentity forgerycyber crimenetwork attacks - Question #185Security Operations & Incident Response Leadership
Which of the following tools can be used to automate the MITM attack?
MITM attackAirjackwireless attack toolsattack automation - Question #186Security Program Management & Governance
You have been hired as a project manager for a project. The initial project planning predicts a benefitcost ratio (BCR) of the project as 3.5. What does this figure mean?
benefit-cost ratioBCRcost-benefit analysisproject financial metrics - Question #187Security Architecture & Engineering
You are concerned about rogue wireless access points being connected to your network. What is the best way to detect and prevent these?
rogue access pointswireless securitysite surveysWLAN detection - Question #188Security Architecture & Engineering
Which of the following applications would NOT be considered an OLTP application?
OLTPOLAPfraud detectionapplication classification - Question #189Risk Management & Compliance
John is a black hat hacker. FBI arrested him while performing some email scams. Under which of the following US laws will john be charged?
CFAA18 U.S.C. 1030cybercrime lawemail fraud - Question #190Security Architecture & Engineering
Jacob is worried about sniffing attacks and wants to protect his SMTP transmissions from this attack. What can he do to accomplish this?
SMTP securitySSL/TLSsniffing protectionemail encryption - Question #191Security Operations & Incident Response Leadership
This is a Windows-based tool that is used for the detection of wireless LANs using the IEEE 802.11a, 802.11b, and 802.11g standards. The main features of these tools are as follows...
NetStumblerwireless scanning802.11WLAN tools - Question #192Security Operations & Incident Response Leadership
The Klez worm is a mass-mailing worm that exploits a vulnerability to open an executable attachment even in Microsoft Outlook's preview pane. The Klez worm gathers email addresses...
Klez wormmalware analysisWindows registryWAB - Question #193Security Operations & Incident Response Leadership
You are working on your computer system with Linux Operating system. After working for a few hours, the hard disk goes to the inactive state (sleep). You try to restart the system...
SMART modelhard disk monitoringpreventive maintenancesystem reliability - Question #194Security Operations & Incident Response Leadership
In which of the following techniques does an attacker change the address of the phishing site in such a manner that it can bypass filters or other application defenses that have be...
URL obfuscationphishingIP filter bypasssocial engineering - Question #195Security Architecture & Engineering
John works as a Security Administrator for Enet Inc. He uses a 4 digits personal identification number (PIN) to access the computer and a token is used to perform offline checking...
brute force attackPIN authenticationoffline tokenauthentication security - Question #196Security Operations & Incident Response Leadership
You work as a Network Administrator in a company. The NIDS is implemented on the network. You want to monitor network traffic. Which of the following modes will you configure on th...
promiscuous modeNIDSnetwork monitoringNIC configuration - Question #197Security Architecture & Engineering
IP blocking is a technique that prevents the connection between a server/website and certain IP addresses or ranges of addresses. Which of the following tools use this technique? E...
IP blockingFail2Banportsentryhost-based security tools - Question #198Security Architecture & Engineering
You work as a Network Administrator for PassGuide Inc. You have been assigned a task to provide the right authentications to users. Which method that uses a KDC will you use to acc...
KerberosKDCauthentication protocolsidentity management - Question #199Security Program Management & Governance
Rick is a project manager of a construction project. He is aggregating the estimated costs of individual activities or work packages to establish a cost baseline. In which of the f...
project cost managementcost baselinecost estimationwork packages - Question #200Security Operations & Incident Response Leadership
You check the logs on several clients and find that there is traffic coming in on an odd port (port 1872). All clients have the Windows XP firewall turned on. What should you do to...
Windows firewallfirewall exceptionsport blockingtraffic management - Question #201Security Architecture & Engineering
Which of the following attacks is any form of cryptanalysis where the attacker can observe the operation of a cipher under several different keys whose values are initially unknown...
cryptanalysisrelated-key attackcipher attackssymmetric encryption - Question #202Security Awareness & Training
NIST Special Publication 800-50 is a security awareness program. It is designed for those people who are currently working in the information technology field and want information...
NIST SP 800-50security awareness programtraining program designtraining material development - Question #203Security Architecture & Engineering
You are responsible for securing the network at a law firm. They are particularly interested in ensuring that sensitive documents are not disclosed to outside parties. In securing...
printer securityphysical device hardeningdata leakagewireless printer vulnerabilities