DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

GIAC GISF Exam Questions and Answers, GIAC Information Security Fundamentals | SPOTO

SPOTO's latest exam dumps on the homepage, with a 100% pass rate! SPOTO delivers authentic Cisco CCNA, CCNP study materials, CCIE Lab solutions, PMP, CISA, CISM, AWS, and Palo Alto exam dumps. Our comprehensive study materials are meticulously aligned with the latest exam objectives. With a proven track record, we have enabled thousands of candidates worldwide to pass their IT certifications on their first attempt. Over the past 20+ years, SPOTO has successfully placed numerous IT professionals in Fortune 500 companies.
Take other online exams

Question #1
You have successfully installed an IRM server into your environment. This IRM server will be utilized to protect the company's videos, which are available to all employees but contain sensitive data. You log on to the WSS 3.0 server with administrator permissions and navigate to the Operations section. What option should you now choose so that you can input the RMS server name for the WSS 3.0 server to use?
A. Self-service site management
B. Content databases
C. Information Rights Management
D. Define managed paths
View answer
Correct Answer: C
Question #2
John works as a Network Administrator for Perfect Solutions Inc. The company has a Linux-based network. The company is aware of various types of security attacks and wants to impede them. Hence, management has assigned John a project to port scan the company's Web Server. For this, he uses the nmap port scanner and issues the following command to perform idle port scanning: nmap -PN -p- -sI IP_Address_of_Company_Server He analyzes that the server's TCP ports 21, 25, 80, and 111 are open. Which of the follow
A. Audit policy
B. Antivirus policy
C. Non-disclosure agreement
D. Acceptable use policy
View answer
Correct Answer: A
Question #3
You are the project manager of SST project. You are in the process of collecting and distributing performance information including status report, progress measurements, and forecasts. Which of the following process are you performing?
A. Perform Quality Control
B. Verify Scope
C. Report Performance
D. Control Scope
View answer
Correct Answer: C
Question #4
John works as an Exchange Administrator for Apple Inc. The company has a Windows 2003 Active Directory domain-based network. The network contains several Windows Server 2003 servers. Three of them have been configured as domain controllers. John complains to the Network Administrator that he is unable to manage group memberships. Which of the following operations master roles is responsible for managing group memberships?
A. PDC emulator
B. Infrastructure master
C. Schema master
D. RID master
View answer
Correct Answer: B
Question #5
Which of the following is used to authenticate asymmetric keys?
A. Password
B. MAC Address
C. Digital signature
D. Demilitarized zone (DMZ)
View answer
Correct Answer: C
Question #6
Which of the following are the goals of the cryptographic systems? Each correct answer represents a complete solution. Choose three.
A. Availability
B. Authentication
C. Confidentiality
D. Integrity
View answer
Correct Answer: BCD
Question #7
How long are cookies in effect if no expiration date is set?
A. Fifteen days
B. Until the session ends
C. Forever
D. One year
View answer
Correct Answer: B
Question #8
Your company is covered under a liability insurance policy, which provides various liability coverage for information security risks, including any physical damage of assets, hacking attacks, etc. Which of the following risk management techniques is your company using?
A. Risk acceptance
B. Risk transfer
C. Risk avoidance
D. Risk mitigation
View answer
Correct Answer: B
Question #9
You are working as a project manager in your organization. You are nearing the final stages of project execution and looking towards the final risk monitoring and controlling activities. For your project archives, which one of the following is an output of risk monitoring and control?
A. Requested changes
B. Risk audits
C. Quantitative risk analysis
D. Qualitative risk analysis
View answer
Correct Answer: A
Question #10
You work as a security manager for Qualxiss Inc. Your Company involves OODA loop for resolving and deciding over company issues. You have detected a security breach issue in your company. Which of the following procedures regarding the breach is involved in the observe phase of the OODA loop?
A. Follow the company security guidelines
B. Decide an activity based on a hypothesis
C. Implement an action practically as policies
D. Consider previous experiences of security breaches
View answer
Correct Answer: A
Question #11
Kelly is the project manager of the NNQ Project for her company. This project will last for one year and has a budget of $350,000. Kelly is working with her project team and subject matter experts to begin the risk response planning process. When the project manager begins the plan risk response process, what two inputs will she need?
A. Risk register and power to assign risk responses
B. Risk register and the risk management plan
C. Risk register and the risk response plan
D. Risk register and the results of risk analysis
View answer
Correct Answer: B
Question #12
Which of the following statements are true about Dsniff? Each correct answer represents a complete solution. Choose two.
A. It is a virus
B. It contains Trojans
C. It is antivirus
D. It is a collection of various hacking tools
View answer
Correct Answer: BD
Question #13
You work as a Network Administrator for ABC Inc. The company has a secure wireless network. However, in the last few days, an attack has been taking place over and over again. This attack is taking advantage of ICMP directed broadcast. To stop this attack, you need to disable ICMP directed broadcasts. Which of the following attacks is taking place?
A. Smurf attack
B. Sniffer attack
C. Cryptographic attack
D. FMS attack
View answer
Correct Answer: A
Question #14
Which of the following is the most secure place to host a server that will be accessed publicly through the Internet?
A. A DNS Zone
B. An Intranet
C. A stub zone
D. A demilitarized zone (DMZ)
View answer
Correct Answer: D
Question #15
You have an antivirus program for your network. It is dependent upon using lists of known viruses. What is this type of scan called?
A. Fixed List
B. Host Based
C. Heuristic
D. Dictionary
View answer
Correct Answer: D

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number: