Question 1
Which countermeasure uses a second factor to verify identity?
Correct Answer:
Two-factor authentication
Explanation:
Requiring a second factor for verification is about two-factor authentication. It strengthens identity checks by demanding two independent credentials from different categories, so access isn’t granted if only one factor is known or possessed. Typically this means something you know (a password) plus something you have (a hardware token, a mobile authenticator, or a code sent to your device) or something you are (biometric data). Even if the first factor is compromised, the second factor prevents entry. Other options don’t verify identity with a second factor: policies focus on rules and enforcement rather than authentication itself; anti-virus/anti-phishing defenses protect systems but don’t require a second form of proof to log in; change management deals with controlling system changes, not user authentication.
Question 2
Which backup method is typically offline, requiring the system downtime to perform the backup?
Correct Answer:
Cold Backup (Offline)
Explanation:
The concept here is how backups are performed with or without taking the system offline. A cold backup is the one that is typically offline and requires downtime. In a cold backup you power down the system (and its services) and then copy the entire data set to the backup storage. Because there are no active writes during the backup, you get a clean, consistent copy of the entire system state. This approach is often chosen during scheduled maintenance windows when downtime is acceptable. When the system is online, backups are done differently. A hot backup runs while the system is live, using mechanisms to maintain data consistency without shutting down services. A warm backup sits between online and offline, offering quicker backups with some service continuity but not a full offline outage. Snapshots create point-in-time copies, usually at the storage level, and can often be taken without shutting down the system, though certain applications may require quiescing for a consistent state.
Question 3
Which statement about MD5 is accurate?
Correct Answer:
Hashing algorithm used for digital signatures and password storage
Explanation:
MD5 is a cryptographic hash function that takes input data and produces a fixed-size 128-bit digest. It isn’t an encryption method—it doesn’t use keys and isn’t reversible. This makes it useful for creating a fingerprint of data to verify integrity, rather than for hiding information. The statement describes MD5 as a hashing algorithm used for digital signatures and password storage, which is accurate in concept. In digital signatures, a hash of the message is created and then signed with a private key, binding the signature to the content without signing the entire message. For passwords, the common approach is to hash the password and store the hash; during login, the provided password is hashed again and compared to the stored value. However, MD5 has significant weaknesses. It has known collision vulnerabilities, meaning two different inputs can produce the same hash, and SAMPLEits speed makes it easy to perform brute-force or rainbow-table attacks. Because of these issues, MD5 is no longer trusted for new systems. For signatures, stronger hashes (like SHA-256 or better) are preferred, and for passwords, salted, iterated hashing algorithms (such as bcrypt, scrypt, or Argon2) are recommended.
Question 4
Which of the following is a type of social engineering?
Correct Answer:
Human-based
Explanation:
Social engineering exploits human behavior rather than technical flaws. The form that fits this category best is human-based social engineering, which relies on direct interaction with people—such as impersonation, pretexting, or creating believable scenarios to coax someone into revealing a password or granting access. The attacker uses psychology—trust, authority, urgency—to override security awareness in a person. The other options describe how an attack is delivered or what it targets (machines, devices, or communications), rather than the core tactic of manipulating a person directly. Phishing, while it uses deception, is typically viewed as a channel-based technique that delivers social-engineering tricks electronically rather than the interpersonal manipulation itself.
Question 5
Which of the following describes a disadvantage of 802.11 as noted?
Correct Answer:
Disadvantages: security is lax and bandwidth suffers with more connections
Explanation:
Wireless networks like 802.11 rely on a shared radio channel in unlicensed spectrum, so two common drawbacks come into play. First, security can be lax because wireless signals travel through the air and can be intercepted by anyone in range; while encryption and better configurations help, the medium’s openness makes passive eavesdropping and access harder to prevent compared with wired networks. Second, bandwidth is shared among all devices on the same channel, so as more connections occur, the available airtime per device shrinks and throughput drops due to contention and backoff mechanisms. This combination—easier access for potential eavesdroppers and reduced efficiency as more devices contend for the same medium—captures the described disadvantage. The other statements don’t fit because 802.11 does not use copper cabling (that’s wired Ethernet), it does not require licensed spectrum (it uses unlicensed bands), and its bandwidth is not unlimited—it’s finite and degrades with interference and more users.
Question 1
Exam overview

About this Exam

Prepare with the EC-Council Certified Security Specialist (ECSS) Practice Test practice quiz. This question bank includes 10 questions covering backup, describes, countermeasure, council, and security. Use it to review important concepts, identify knowledge gaps, and build confidence for the related exam, course, or assessment.

More details

Additional Information

EC-Council Certified Security Specialist (ECSS) Practice Test

This practice set contains 10 questions from the matching question bank and focuses on backup, describes, countermeasure, council, and security. Work through each question carefully, review the provided solutions, and revisit topics that need more study before your next attempt.

This is an independent study resource intended for practice and review; it is not an official examination or an endorsement by any organization named in the title.

Quiz information

Frequently Asked Questions

The complete question count is available after full access is unlocked.
No fixed duration is currently configured for this quiz.
Question explanations are included where they are available in the quiz content, helping you review the reasoning after answering.
Yes. You can retake the practice test again as you continue studying during your available access period.
After your access is confirmed, you can continue into the complete practice exam from this quiz flow.
Unless explicitly stated otherwise, this page provides independent practice material for study and exam preparation and is not the official examination itself.
Keep studying

Related Questions