GSEC › Web Communication Security
This GSEC domain covers securing data in transit and the web application layer: TLS/SSL configuration, HTTP headers, cookies, and common web attacks like XSS, SQL injection, and CSRF. Questions are scenario-based, asking you to interpret logs, headers, or handshake details and identify the weakness, attack type, or correct mitigation.
GSEC Web Communication Security — All 20 Questions
Every question in this domain with answers and detailed explanations.
Network Security Devices
Windows Security Infrastructure
macOS Security
Cryptography Application
Defense in Depth
Defensible Network Architecture
Access Control and Password Management
Cryptography
Endpoint Security
Windows Automation and Auditing
Networking and Protocols
Linux Fundamentals
Log Management and SIEM
Security Frameworks and CIS Controls
Container Security
Incident Handling and Response
Linux Security and Hardening
Windows Access Controls
Virtualization, Cloud, and AI Essentials
Vulnerability Scanning and Penetration Testing
Windows as a Service
Malicious Code and Exploit Mitigation
Windows Forensics
Wireless Network Security
Windows Services and MS Cloud