EC-Council Certified Security Specialist Exam Prep
Free practice questions

Free ECSS Practice Questions

10 exam-style questions with answers and explanations, straight from our 1,035-question bank. Tap an answer to check yourself. When you're ready, take the scored version in the free practice test.

Start the free practice test → ★★★★★4.9/5 from 2,400+ candidates · No signup

The ECSS exam has 100 questions and runs 3 hours.

These 10 free ECSS questions are organized by exam domain, so you can see how each part of the EC-Council Certified Security Specialist blueprint is tested. Reveal the answer and explanation under each question.

Domain 1: Information Security Fundamentals

Question 1

An administrator is hardening a server and wants to replace an insecure remote-administration protocol that transmits credentials in cleartext. Which protocol should be DISABLED, and what is its port?

Show answer & explanation

Correct answer: A - Telnet on port 23

Question 2

A defense contractor enforces access based on security clearance levels and data classification labels that individual users cannot alter. Which access control model is in use?

Show answer & explanation

Correct answer: C - Mandatory Access Control (MAC)

Question 3

A security team deploys a system that sits inline with network traffic, inspects packets against known signatures, and automatically drops malicious traffic before it reaches internal hosts. This describes a(n):

Show answer & explanation

Correct answer: A - Network Intrusion Prevention System (NIPS)

Question 4

A company needs a firewall that can make filtering decisions based on the application-layer content of traffic and act as an intermediary between internal clients and external servers. Which firewall type is MOST appropriate?

Show answer & explanation

Correct answer: C - Proxy (application-layer) firewall

Question 5

During a wireless security review, an analyst must recommend the configuration that provides the STRONGEST protection for a corporate WLAN. Which option should be selected?

Show answer & explanation

Correct answer: D - WPA3 with SAE

Question 6

A candidate is asked to classify cryptographic algorithms. Which of the following is an ASYMMETRIC (public-key) algorithm rather than a symmetric cipher or a hash function?

Show answer & explanation

Correct answer: C - RSA

Question 7

To create a digital signature, a sender generates a hash of the message and then encrypts that hash. Which key is used to encrypt the hash, and which security service does this PRIMARILY provide?

Show answer & explanation

Correct answer: A - The sender's private key - providing non-repudiation

Domain 2: Ethical Hacking & Attack Techniques

Question 8

An ethical hacker has completed reconnaissance and scanning. According to the five phases of hacking, which phase comes NEXT?

Show answer & explanation

Correct answer: B - Gaining access

Question 9

A piece of malware spreads across a network by exploiting a vulnerability on its own, without attaching to a host file and without any user action. This behavior identifies it as a:

Show answer & explanation

Correct answer: D - Worm

Question 10

During a penetration test, an analyst queries a Windows target to extract a list of shared folders, user accounts, and group memberships. This active information-gathering step is BEST described as:

Show answer & explanation

Correct answer: B - Enumeration

The rest of the ECSS blueprint

The ECSS exam also covers these domains. Drill them in the full free practice test:

That's 10 of 1,035

The full bank has 1,025 more ECSS questions with explanations.

Continue in the free practice test →

View plans