[Free] 2017(Sep) CollectDumps Dumpsleader GIAC GISF Dumps with VCE and PDF 11-20

CollectDumps 2017 Sep GIAC Official New Released GISF
100% Free Download! 100% Pass Guaranteed!

GIAC Information Security Fundamentals

Question No: 11 – (Topic 1)

You are the project manager of SST project. You are in the process of collecting and distributing performance information including status report, progress measurements, and forecasts. Which of the following process are you performing?

  1. Perform Quality Control

  2. Verify Scope

  3. Report Performance

  4. Control Scope

Answer: C

Question No: 12 – (Topic 1)

John works as a Network Administrator for Perfect Solutions Inc. The company has a

Linux-based network. The company is aware of various types of security attacks and wants to impede them. Hence, management has assigned John a project to port scan the company#39;s Web Server. For this, he uses the nmap port scanner and issues the following command to perform idle port scanning:

nmap -PN -p- -sI IP_Address_of_Company_Server

He analyzes that the server#39;s TCP ports 21, 25, 80, and 111 are open.

Which of the following security policies is the company using during this entire process to mitigate the risk of hacking attacks?

  1. Audit policy

  2. Antivirus policy

  3. Non-disclosure agreement

  4. Acceptable use policy

Answer: A

Question No: 13 – (Topic 1)

Which of the following protocols provides secured transaction of data between two computers?

  1. SSH

  2. FTP

  3. Telnet

  4. RSH

Answer: A

Question No: 14 – (Topic 1)

A firewall is a combination of hardware and software, used to provide security to a network. It is used to protect an internal network or intranet against unauthorized access from the Internet or other outside networks. It restricts inbound and outbound access and can analyze all traffic between an internal network and the Internet. Users can configure a firewall to pass or block packets from specific IP addresses and ports. Which of the following tools works as a firewall for the Linux 2.4 kernel?

  1. IPChains

  2. OpenSSH

  3. Stunnel

  4. IPTables

Answer: D

Question No: 15 – (Topic 1)

Which of the following concepts represent the three fundamental principles of information security?

Each correct answer represents a complete solution. Choose three.

  1. Privacy

  2. Availability

  3. Integrity

  4. Confidentiality

Answer: B,C,D

Question No: 16 – (Topic 1)

You work as a Software Developer for Mansoft Inc. You create an application. You want to use the application to encrypt data. You use the HashAlgorithmType enumeration to specify the algorithm used for generating Message Authentication Code (MAC) in Secure Sockets Layer (SSL) communications.

Which of the following are valid values for HashAlgorithmType enumeration? Each correct answer represents a part of the solution. Choose all that apply.

  1. MD5

  2. None

  3. DES

  4. RSA

  5. SHA1

  6. 3DES

Answer: A,B,E

Question No: 17 – (Topic 1)

John works as a professional Ethical Hacker. He has been assigned a project to test the security of www.we-are-secure.com. He wants to test the effect of a virus on the We-are- secure server. He injects the virus on the server and, as a result, the server becomes infected with the virus even though an established antivirus program is installed on the server. Which of the following do you think are the reasons why the antivirus installed on the server did not detect the virus injected by John?

Each correct answer represents a complete solution. Choose all that apply.

  1. The virus, used by John, is not in the database of the antivirus program installed on the ser ver.

  2. The mutation engine of the virus is generating a new encrypted code.

  3. John has created a new virus.

  4. John has changed the signature of the virus.

Answer: A,B,C,D

Question No: 18 – (Topic 1)

Which of the following types of virus is capable of changing its signature to avoid detection?

  1. Stealth virus

  2. Boot sector virus

  3. Macro virus

  4. Polymorphic virus

Answer: D

Question No: 19 – (Topic 1)

Which of the following protocols can help you get notified in case a router on a network fails?

  1. SMTP

  2. SNMP

  3. TCP

  4. ARP

Answer: B

Question No: 20 – (Topic 1)

Computer networks and the Internet are the prime mode of Information transfer today. Which of the following is a technique used for modifying messages, providing Information and Cyber security, and reducing the risk of hacking attacks during communications and message passing over the Internet?

  1. Cryptography

  2. OODA loop

  3. Risk analysis

  4. Firewall security

Answer: A

100% Free Download!
Download Free Demo:GISF Demo PDF
100% Pass Guaranteed!
Download 2017 CollectDumps GISF Full Exam PDF and VCE

CollectDumps ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No

2017 CollectDumps IT Certification PDF and VCE