GSLC Exam Questions
575 real GSLC exam questions with expert-verified answers and explanations. Page 7 of 12.
- Question #309Security Architecture & Engineering
Which type of repudiation states that the creator of the message denies ever creating the message even after creating it?
non-repudiationrepudiation of origindigital signaturesmessage integrity - Question #310Security Architecture & Engineering
Which of the following is a valid space efficiency of RAID 3?
RAID 3storage redundancyparityspace efficiency - Question #311Security Architecture & Engineering
Which of the following is the rating for gasoline or oil fires?
fire extinguisher classesClass B firephysical securityfire suppression - Question #312Security Architecture & Engineering
Which of the following RAID levels is supported by an operating system?
RAID 0storage redundancyoperating system supportdisk striping - Question #313Security Architecture & Engineering
Which of the following generates MD5 hashes to check the MD5 value for each file processed and compares it with other MD5 strings?
MD5 hashingfile integrityhash toolschecksum verification - Question #314Security Architecture & Engineering
Which of the following is the best encryption algorithm to encrypt and decrypt messages?
RSAencryption algorithmsasymmetric encryptioncryptography - Question #315Security Architecture & Engineering
Which of the following is a process of monitoring data packets that travel across a network?
packet sniffingnetwork monitoringtraffic analysispassive attacks - Question #316Security Architecture & Engineering
Which of the following is a type of encryption that uses a single key to encrypt and decrypt data?
symmetric encryptionsingle-key encryptioncryptography fundamentalskey management - Question #317Security Architecture & Engineering
Which of the following is a method of defeating a cryptographic scheme by trying a large number of possibilities?
brute force attackcryptanalysispassword attacksattack methods - Question #318Security Architecture & Engineering
Which of the following is a popular replacement for halon gas?
FM-200halon replacementfire suppressionphysical security - Question #319Security Architecture & Engineering
Which of the following is a DNS database resource record containing the host DNS name and the IPv6 address?
AAAA recordDNSIPv6name resolution - Question #320Security Architecture & Engineering
In Which of the following types of white box testing are the test cases designed based on data flow within the code?
data flow testingwhite box testingsoftware testingcode analysis - Question #321Security Architecture & Engineering
Which of the following is the default security level for the Internet zone?
browser security zonesInternet zonedefault security settingsendpoint security - Question #322Security Program Management & Governance
All of the following are the outputs of the Acquire Project Team process except for which one?
project team acquisitionPMI process outputsproject managemententerprise environmental factors - Question #323Security Program Management & Governance
In which technique are phases overlapped that would normally be done in sequence?
fast trackingschedule compressionproject managementphase overlap - Question #324Risk Management & Compliance
Which of the following is involved with the improvement of different courses of actions that include changes in schedule, resources, or contract?
contingency planningrisk responseschedule managementresource management - Question #325Security Architecture & Engineering
Which of the following is a software testing method that uses an internal perspective of the system to design test cases based on the internal structure?
white box testingsoftware testinginternal structuretest case design - Question #326Security Operations & Incident Response Leadership
Which field is NOT defined while creating rules for the Network Honeypot rulebase?
honeypotnetwork securityrulebase configurationintrusion detection - Question #327Security Architecture & Engineering
Which of the following is the encryption subsystem of the NTFS file system?
EFSNTFS encryptionfile system securityWindows security - Question #328Security Architecture & Engineering
Which of the following standards is also known as IEEE 802.11i?
WPA2IEEE 802.11iwireless securityWi-Fi standards - Question #329Security Operations & Incident Response Leadership
Which of the following is used to detect malicious activity such as port scans or even attempts for cracking into computers by monitoring network traffic?
NIDSintrusion detectionnetwork monitoringport scanning - Question #330Security Architecture & Engineering
Which wireless security protocol is also known as IEEE 802.11i?
WPA2IEEE 802.11iwireless protocolsencryption standards - Question #331Security Operations & Incident Response Leadership
Which of the following viruses infects Word 97 documents and the NORMAL.DOT file of Word 97 and Word 2000?
Melissa virusmacro virusWord 97malware history - Question #332Security Program Management & Governance
Which of the following colors is used for ultra secret information?
data classificationinformation handlingsecurity labelssensitivity levels - Question #333Security Operations & Incident Response Leadership
Which of the following encrypts its code differently with each infection or generation of infections?
polymorphic virusmalware evasioncode encryptionvirus types - Question #334Security Operations & Incident Response Leadership
Which of the following viruses replaces the boot sector data with its own malicious code?
MBR virusboot sectormalware typesvirus infection - Question #335Security Architecture & Engineering
Which of the following is a read-only copy of a zone and obtains its resource records from other name servers?
stub zoneDNSzone typesname server - Question #336Risk Management & Compliance
Which of the following is not a man-made threat?
threat classificationnatural threatsman-made threatsrisk identification - Question #337Security Architecture & Engineering
Which of the following is a method of defeating a cryptographic scheme by trying a large number of possibilities?
brute force attackcryptographic attackpassword crackingattack methods - Question #338Security Architecture & Engineering
Which of the following is the best encryption algorithm to encrypt and decrypt messages?
RSAencryption algorithmscryptographyalgorithm comparison - Question #339Security Architecture & Engineering
Which of the following is a type of encryption that uses a single key to encrypt and decrypt data?
symmetric encryptionsingle keyencryption typescryptography fundamentals - Question #340Security Architecture & Engineering
Which of the following is a cryptographic approach employed by many cryptographic algorithms and cryptosystems?
public-key cryptographyasymmetric cryptographycryptosystemskey management - Question #341Security Operations & Incident Response Leadership
Which of the following is a process of monitoring data packets that travel across a network?
packet sniffingnetwork monitoringtraffic analysisnetwork security - Question #342Security Architecture & Engineering
What does noise in a power line indicate?
power line noiseelectrical interferencephysical securitypower quality - Question #343Security Architecture & Engineering
Which of the following is a model that uses a predefined set of access privileges for an object of the system?
mandatory access controlMACaccess privilegesaccess control models - Question #344Security Architecture & Engineering
Which of the following is NOT a principle and practice of the 'Minimize the number of highconsequence targets' principle?
least privilegeseparation of dutiessecurity principlesminimize attack surface - Question #345Security Program Management & Governance
In which of the following does a project manager assign certain points towards various categories to judge the vendors?
vendor managementprocurementweighting systemproject management - Question #346Risk Management & Compliance
Which of the following is used to indicate that the project team has decided not to change the project management plan to deal with a risk or is unable to identify any other suitab...
risk acceptancerisk responserisk managementproject risk - Question #347Security Architecture & Engineering
Which of the following is a physical or logical subnetwork that contains and exposes external services of an organization to a larger network, usually the Internet?
DMZnetwork segmentationperimeter securitynetwork architecture - Question #348Security Architecture & Engineering
All of the following steps should be taken to prevent a Web server from IIS buffer overflow attacks except for which one?
IISbuffer overflowweb server hardeningvulnerability management - Question #349Security Architecture & Engineering
What do spikes in a power line indicate?
power spikeselectrical hazardsphysical securitypower quality - Question #350Security Operations & Incident Response Leadership
All of the following are the password cracking attacks performed by the cain tool except for which one?
password crackingCain toolbrute forcedictionary attack - Question #351Security Awareness & Training
In which type of person-to-person attack does an attacker pretend to be someone else?
impersonationsocial engineeringperson-to-person attackhuman manipulation - Question #352Security Architecture & Engineering
Which of the following uses a variable-length Initialization Vector (IV), where the encrypted data begins?
DES-CBCinitialization vectorblock cipher modessymmetric encryption - Question #353Security Architecture & Engineering
Which of the following port numbers is used by the LDAP protocol when it is secured?
LDAPport 636LDAPSdirectory services - Question #354Security Operations & Incident Response Leadership
Which is a computer system on the Internet that is expressly set up to attract and trap people who attempt to penetrate other people's computer systems?
honeypotdeception technologyintrusion detectionthreat trapping - Question #355Security Program Management & Governance
Which of the following is an input of the close procurements process?
close procurementsproject management planprocurement processinputs and outputs - Question #356Security Program Management & Governance
Which of the following is a structured review of the procurement process originated at the Plan Procurements process?
procurement auditingprocurement processvendor managementquality assurance - Question #357Security Architecture & Engineering
Which of the following contains information that is read by a Web application whenever a user visits a site?
cookiesweb applicationbrowser storagesession management - Question #358Security Program Management & Governance
Which of the following can be performed to verify the effectiveness of a quality management system?
quality auditsquality management systemprocess verificationproject quality