購入前に内容を確かめたい方のために、JPNTestでは2026年対応のGSNA問題集無料サンプルをご提供しています。GIAC Systems and Network Auditorに対応した368の問題の品質を、実際のPDFデモでご確認いただけます。
GIAC GSNA 試験概要:
| 認定ベンダー: | Global Information Assurance Certification (GIAC) |
|---|---|
| 試験名: | GIAC Systems and Network Auditor |
| 試験番号: | GSNA |
| 試験形式: | 多肢選択式問題, 監視付き試験 |
| 関連資格: | GIAC Management & Leadership Certification GIAC Certifications Portfolio |
| 合格点: | 72%(最近の試験仕様に基づく最低合格点) |
| 対応言語: | 英語 |
| 出題数: | 115 |
| 試験時間: | 180 分 |
| 認定の有効期間: | 4年間(CPEの獲得または再試験による更新) |
| 受験料: | N/A(現在、試験は一時停止中) |
| サンプル問題: | GIAC GSNA サンプル問題 |
| 受験方法: | Webベースの監視付き試験(ProctorU経由のリモートまたはPearson VUE経由のオンサイト) — 注:現在、認定は一時停止中であり、新規購入はできません |
| 前提条件: | 必須の前提条件はありません。関連する監査またはセキュリティの実務経験が推奨されます |
| 公式シラバスのURL: | https://www.giac.org/certifications/systems-network-auditor-gsna |
GIAC GSNA 試験シラバストピック:
| セクション | 目標 |
|---|---|
| 監査プロセス | |
| Windowsのロギングと継続的モニタリング | |
| Webアプリケーションの監査 | |
| 監査人のためのリスクアセスメント | |
| Webアプリケーションにおけるアクセス制御とデータ処理の監査 | |
| Windowsシステムおよびドメインの監査 | |
| UNIXおよびLinuxシステムの監査 | |
| UNIXおよびLinuxのロギングと継続的モニタリング | |
| エンタープライズネットワークの監査 |
GIAC Systems and Network AuditorのQ&A
「GSNA」は、Global Information Assurance Certification (GIAC)が実施する「GIAC Systems and Network Auditor」の試験コードです。この試験に合格すると、「GIAC Information Security」の認定を取得できます。認定レベルはプラクティショナーに位置づけられています。関連する認定としては、GIAC Management & Leadership Certification・GIAC Certifications Portfolioなどが挙げられます。JPNTestでは、GSNA試験対策として368の練習問題をご用意しています。
GSNA試験の出題数は115、制限時間は180 分です。限られた時間内で全問に取り組む必要があるため、1問にかけられる時間を常に意識し、難しい問題に長く留まりすぎないペース配分が求められます。本番で時間不足に慌てないよう、JPNTestのテストエンジンで制限時間つきの模擬試験に挑戦し、時間配分の感覚を体に覚えさせておくことをおすすめします。
GSNA試験の合格ラインは72%(最近の試験仕様に基づく最低合格点)、受験料はN/A(現在、試験は一時停止中)です。万が一不合格だった場合、再受験には改めて全額の受験料が必要になるため、費用面の負担も無視できません。受験前にJPNTestの368の練習問題で模擬試験に取り組み、安定して合格ラインを超えられることを確認してから本番に臨むと安心です。
必須の前提条件はありません。関連する監査またはセキュリティの実務経験が推奨されます
受験条件は変更される場合があります。最新かつ正確な情報は、GIACの公式ページで必ずご確認ください。
はい、ご購入前にJPNTestのGSNA問題集の無料サンプル(PDFデモ)をダウンロードして、問題の品質や形式をご確認いただけます。ご購入後は365日間の無料更新が付帯し、更新期間の終了後も50%割引で継続更新をご利用いただけるため、常に最新の出題傾向に沿った内容で学習を続けられます。
JPNTestでは「返金保証」制度をご用意しています。ご購入後60日以内にGSNA試験を受験して不合格となった場合、全額返金をご申請いただけます。なお、ご購入後3日以内の受験や、ダウンロード後に実際の受験をしていない場合、無料資料や期限切れのご注文は対象外となり、受験者氏名とお支払い者氏名が一致している必要があります。ご申請の際は、受験票(enrollment slip)の写しと公式スコアレポート(Score Report)のPDFを試験後2日以内にご提出いただき、受理後7日以内に手続きが完了します。返金をご希望でない場合は、同等価値の試験資料2点を無料でお受け取りいただき、元の製品の更新サービスを継続する選択肢もございます。
また、ご購入いただいた製品はお支払い完了後すぐにダウンロードでき、メールでも1分以内にお届けします。2時間以内に届かない場合はカスタマーサポートまでご連絡ください。インストール可能なパソコンの台数に制限はありません。
GSNA試験の出題範囲は、全部で9分野で構成されています。主な分野としては、「Windowsのロギングと継続的モニタリング」、「エンタープライズネットワークの監査」、「Webアプリケーションの監査」などが挙げられます。各分野の詳細なトピックと配点は、上記の試験大綱をご確認ください。JPNTestのGSNA練習問題は、これらの出題分野を幅広くカバーしています。
GIAC Systems and Network Auditor 認定 GSNA 試験問題:
問題 #1
You work as a Network Administrator for XYZ CORP. The company has a Windows-based network. You have been assigned the task to design the authentication system for the remote users of the company. For security purposes, you want to issue security tokens to the remote users. The token should work on the one-time password principle and so once used, the next password gets generated. Which of the following security tokens should you issue to accomplish the task?
A. Bluetooth tokens
B. Virtual tokens
C. Single sign-on software tokens
D. Event-based tokens
問題 #2
Which of the following statements is true about the Digest Authentication scheme?
A. In this authentication scheme, the username and password are passed with every request, not just when the user first types them.
B. It uses the base64 encoding encryption scheme.
C. The password is sent over the network in clear text format.
D. A valid response from the client contains a checksum of the username, the password, the given random value, the HTTP method, and the requested URL.
E. Explanation:
The Digest Authentication scheme is a replacement of the Basic Authentication scheme. This authentication scheme is based on the challenge response model. In Digest authentication, the password is never sent across the network in clear text format but is always transmitted as an MD5 digest of the user's password. In this way, the password cannot be determined with the help of a sniffer. How does it work? In this authentication scheme, an optional header allows the server to specify the algorithm used to create the checksum or digest (by default, the MD5 algorithm). The Digest Authentication scheme provides the challenge using a randomly chosen value. This randomly chosen value is a server-specified data string which may be uniquely generated each time a 401 response is made. A valid response contains a checksum (by default, the MD5 checksum) of the username, the password, the given random value, the HTTP method, and the requested URL. In this way, the password is never sent in clear text format. Drawback: Although the password is not sent in clear text format, an attacker can gain access with the help of the digested password, since the digested password is really all the information needed to access the web site.
問題 #3
John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He is using a tool to crack the wireless encryption keys. The description of the tool is as follows: Which of the following tools is John using to crack the wireless encryption keys?
A. PsPasswd
B. AirSnort
C. Kismet
D. Cain
問題 #4
eBox Platform is an open source unified network server (or a Unified Network Platform) for SMEs. In which of the following forms can eBox Platform be used?
A. Unified Communications Server
B. Network Infrastructure Manager
C. Sandbox
D. Gateway
問題 #5
What will be the output of the following command? echo $(date %M) > date.txt
A. The current time (Minutes) will be written in the date.txt file.
B. It will create a variable $(date %M).
C. It will print a string "date %M".
D. The current time (Month) will be written in the date.txt file.
解説:
| 問題 #1 正解: D | 問題 #2 正解: D | 問題 #3 正解: B | 問題 #4 正解: A、B、D | 問題 #5 正解: A |
439 お客様のコメント



