Limited-Time Offer: Enjoy 50% Savings! Ends in 00h 00m 00s Coupon code: 50OFF
Skip to content

Free GIAC Security Leadership GSLC Exam Questions

Page: 1 / 38 Total 567 questions

Want more questions? Get Premium Access.

Question 1

John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He is using the Linux operating system. He wants to use a wireless sniffer to sniff the We-are-secure network. Which of the following tools will he use to accomplish his task?

Correct Answer: B. Kismet

Question 2

When no anomaly is present in an Intrusion Detection, but an alarm is generated, the response is known as __________.

Correct Answer: D. False positive

Question 3

Which of the following is involved with the improvement of different courses of actions that include changes in schedule, resources, or contract?

Correct Answer: C. Contingency plan

Question 4

You work as the Network Administrator for a company that does a large amount of defense contract business. A high level of security, particularly regarding sensitive documents, is required. Which of the following are the steps you should take to secure network printers?

Each correct answer represents a complete solution. Choose two.

Correct Answer: B. Ensure that the printers hard drive is scanned for spyware.; C. Secure all remote administrative protocols such as telnet.

Question 5

In the image of the Screened Host Firewall Architecture given below, select the element that is commonly known as the access router.

A .

Correct Answer: A. Option A

Question 6

Which of the following tools works both as an encryption-cracking tool and as a keylogger?

Correct Answer: A. Magic Lantern

Question 7

Which of the following is a cryptographic approach employed by many cryptographic algorithms and cryptosystems?

Correct Answer: B. Public-key cryptography

Question 8

In which of the following Person-to-Person social engineering attacks does an attacker pretend to be an outside contractor, delivery person, etc., in order to gain physical access to the organization?

Correct Answer: D. Impersonation attack

Question 9

John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He finds that the We-are-secure server is vulnerable to attacks. As a countermeasure, he suggests that the Network Administrator should remove the IPP printing capability from the server. He is suggesting this as a countermeasure against __________.

Correct Answer: C. IIS buffer overflow

Question 10

Mark works as a Network Administrator for NetTech Inc. Several employees of the company work from the remote locations. The company provides a dial-up connection to employees to connect to the company's network using remote access service. Mark wants to implement call back feature for the employees who are dialing for long distance. Which of the following protocols will he use for remote access services to accomplish the task?

Correct Answer: D. PPP

Question 11

You work as a Security manager for Caterxiss Inc. The headquarters of your company is connected to the branch office in another state and a service partner in the same state. The network of the company is being attacked from the connected networks. You decide to analyze and then prevent the corporate headquarters network from these attacks using a Snort IDS.

What is the most appropriate spot on the network where you should set up an Intrusion detection system (IDS)?

A .

Correct Answer: A. Option A

Question 12

You are the project manager of the HQQ Project for your company. You are working with your project stakeholders to discuss the risks in the project that can adversely affect the project objectives. You are discussing the possibilities of causes for an identified risk event in your project. Your stakeholder is confused on the difference between causes and risk events. Which of the following is NOT an example of a cause for a project risk?

Correct Answer: C. Quality assurance programs within the company

Question 13

Which firewall architecture uses two NICs with a screening router inserted between the host and the untrusted network?

Correct Answer: C. Screened host

Question 14

Which of the following are used as a cost estimating technique during the project planning stage?

Each correct answer represents a complete solution. Choose three.

Correct Answer: A. Expert judgment; B. Function point analysis; D. Delphi technique

Question 15

Mark works as a Network Administrator for Perfect Inc. The company has both wired and wireless networks. An attacker attempts to keep legitimate users from accessing services that they require. Mark uses IDS/IPS sensors on the wired network to mitigate the attack. Which of the following attacks best describes the attacker's intentions?

Correct Answer: C. DoS attack