GIAC · 2026 Edition
A complete preparation guide, edited by Johnson Ajibi, a network and security engineer with 12+ years' experience. Covers the exam format,all 26 blueprint domains, a week-by-week study plan, and proven tips for passing first time.
2–4 months
Prep time
Intermediate
Difficulty
60–90
Exam questions
700/1000
Pass mark
Exam code
GSEC
Full name
GIAC Security Essentials
Vendor
GIAC
Duration
90 minutes
Questions
~0 items
Passing score
700/1000 (scaled)
Domains covered
26 blueprint domains
Recommended experience
Foundational IT knowledge recommended
Typical prep time
2–4 months
Domain percentage weights are not currently available for this exam. The checklist below is still useful for planning your study.
Phase 1
Network Security Devices
Tip: Start with the official Network Security Devices objectives, then practise questions on it.
Phase 2
Windows Security Infrastructure
Tip: Cover the Windows Security Infrastructure objectives, then answer practice questions to confirm you can apply them.
Phase 3
macOS Security
Tip: Cover the macOS Security objectives, then answer practice questions to confirm you can apply them.
Phase 4
Cryptography Application
Tip: Cover the Cryptography Application objectives, then answer practice questions to confirm you can apply them.
Phase 5
Defense in Depth
Tip: Cover the Defense in Depth objectives, then answer practice questions to confirm you can apply them.
Phase 6
Defensible Network Architecture
Tip: Cover the Defensible Network Architecture objectives, then answer practice questions to confirm you can apply them.
Phase 7
Access Control and Password Management
Tip: Cover the Access Control and Password Management objectives, then answer practice questions to confirm you can apply them.
Phase 8
Cryptography
Tip: Cover the Cryptography objectives, then answer practice questions to confirm you can apply them.
Phase 9
Endpoint Security
Tip: Cover the Endpoint Security objectives, then answer practice questions to confirm you can apply them.
Phase 10
Windows Automation and Auditing
Tip: Cover the Windows Automation and Auditing objectives, then answer practice questions to confirm you can apply them.
Phase 11
Networking and Protocols
Tip: Cover the Networking and Protocols objectives, then answer practice questions to confirm you can apply them.
Phase 12
Linux Fundamentals
Tip: Cover the Linux Fundamentals objectives, then answer practice questions to confirm you can apply them.
Phase 13
Log Management and SIEM
Tip: Cover the Log Management and SIEM objectives, then answer practice questions to confirm you can apply them.
Phase 14
Security Frameworks and CIS Controls
Tip: Cover the Security Frameworks and CIS Controls objectives, then answer practice questions to confirm you can apply them.
Phase 15
Container Security
Tip: Cover the Container Security objectives, then answer practice questions to confirm you can apply them.
Phase 16
Incident Handling and Response
Tip: Cover the Incident Handling and Response objectives, then answer practice questions to confirm you can apply them.
Phase 17
Linux Security and Hardening
Tip: Cover the Linux Security and Hardening objectives, then answer practice questions to confirm you can apply them.
Phase 18
Windows Access Controls
Tip: Cover the Windows Access Controls objectives, then answer practice questions to confirm you can apply them.
Phase 19
Virtualization, Cloud, and AI Essentials
Tip: Cover the Virtualization, Cloud, and AI Essentials objectives, then answer practice questions to confirm you can apply them.
Phase 20
Vulnerability Scanning and Penetration Testing
Tip: Cover the Vulnerability Scanning and Penetration Testing objectives, then answer practice questions to confirm you can apply them.
Phase 21
Windows as a Service
Tip: Cover the Windows as a Service objectives, then answer practice questions to confirm you can apply them.
Phase 22
Malicious Code and Exploit Mitigation
Tip: Cover the Malicious Code and Exploit Mitigation objectives, then answer practice questions to confirm you can apply them.
Phase 23
Windows Forensics
Tip: Cover the Windows Forensics objectives, then answer practice questions to confirm you can apply them.
Phase 24
Web Communication Security
Tip: Cover the Web Communication Security objectives, then answer practice questions to confirm you can apply them.
Phase 25
Wireless Network Security
Tip: Cover the Wireless Network Security objectives, then answer practice questions to confirm you can apply them.
Phase 26
Windows Services and MS Cloud
Tip: Finish with Windows Services and MS Cloud, then re-test your weakest earlier domain before a mock exam.
Study the official exam blueprint — weight percentages tell you exactly where to invest prep time.
Practise scenario-based questions regularly — every modern cert exam is scenario-heavy.
Use spaced repetition to retain what you've learned (Courseiva does this automatically).
Book your exam date once you're scoring 80%+ consistently on practice tests.
Review explanations for every wrong answer, not just the question — the 'why' is what makes it stick.
Apply everything in this guide with adaptive practice questions, detailed answer explanations, and domain analytics.