SANS SEC401 MODULE QUIZZES ACTUAL
EXAM PAPER 2026 QUESTIONS WITH
ANSWERS GRADED A+
>> SANS SEC401
Answer: SANS Institute Security Essentials course — foundational
cybersecurity certification
>> GIAC GSEC
Answer: GIAC Security Essentials Certification — credential earned after
SANS SEC401
>> SANS Institute
Answer: Leading cybersecurity training organization — courses lead to
GIAC certifications
>> CIA Triad
Answer: Confidentiality, Integrity, Availability — foundational information
security model
>> Confidentiality
Answer: Preventing unauthorized disclosure of information
>> Integrity
Answer: Ensuring data is accurate and has not been tampered with
>> Availability
, Answer: Ensuring authorized users can access systems and data when
needed
>> Authentication
Answer: Verifying identity of a user, device, or entity
>> Authorization
Answer: Granting appropriate permissions after authentication
>> Accountability
Answer: Tracking actions to a specific user or entity — non-repudiation
>> Non-repudiation
Answer: Inability to deny having performed an action — digital signatures
provide this
>> Least privilege
Answer: Grant only minimum access needed to perform a function
>> Separation of duties
Answer: Dividing critical tasks among multiple people — prevents fraud
>> Defense in depth
Answer: Multiple layers of security controls — no single point of failure
>> Access control
Answer: Restricting access to resources based on identity and authorization
>> Discretionary Access Control (DAC)
Answer: Owner controls access to their own resources
EXAM PAPER 2026 QUESTIONS WITH
ANSWERS GRADED A+
>> SANS SEC401
Answer: SANS Institute Security Essentials course — foundational
cybersecurity certification
>> GIAC GSEC
Answer: GIAC Security Essentials Certification — credential earned after
SANS SEC401
>> SANS Institute
Answer: Leading cybersecurity training organization — courses lead to
GIAC certifications
>> CIA Triad
Answer: Confidentiality, Integrity, Availability — foundational information
security model
>> Confidentiality
Answer: Preventing unauthorized disclosure of information
>> Integrity
Answer: Ensuring data is accurate and has not been tampered with
>> Availability
, Answer: Ensuring authorized users can access systems and data when
needed
>> Authentication
Answer: Verifying identity of a user, device, or entity
>> Authorization
Answer: Granting appropriate permissions after authentication
>> Accountability
Answer: Tracking actions to a specific user or entity — non-repudiation
>> Non-repudiation
Answer: Inability to deny having performed an action — digital signatures
provide this
>> Least privilege
Answer: Grant only minimum access needed to perform a function
>> Separation of duties
Answer: Dividing critical tasks among multiple people — prevents fraud
>> Defense in depth
Answer: Multiple layers of security controls — no single point of failure
>> Access control
Answer: Restricting access to resources based on identity and authorization
>> Discretionary Access Control (DAC)
Answer: Owner controls access to their own resources