Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC AI Security Automation Engineer

Domain 4Objective 1

Automating Offensive Workflows GASAE Practice Questions (Page 6)

Part of the Offensive and Defensive Automation domain, which makes up ~22% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~15–26 in this domain), expect 8–13 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)

45questions here
9free pages
8concepts

Questions 26–30

  1. 26application · medium

    After compromising a Windows machine in a red team exercise, an operator needs to automate privilege escalation and lateral movement to a domain controller. The operator wants to use native Windows tools to avoid detection and ensure the automation runs only during a specific maintenance window. Which approach is most appropriate?

    Select an answer first
  2. 27application · medium

    A penetration testing team is automating exploitation of a web application in a staging environment. They need to run a series of exploit modules against a specific target, but only if the target is confirmed vulnerable to a prerequisite condition. They also need to stop the entire pipeline if any exploit causes the target to become unresponsive. Which approach best satisfies these requirements?

    Select an answer first
  3. 28foundation · easy

    What is a fundamental ethical requirement before running automated offensive security workflows?

    Select an answer first
  4. 29application · medium

    During an authorized red team exercise, an operator needs to automate post-exploitation actions on a compromised Linux host. The actions include privilege escalation via sudo misconfiguration, lateral movement using SSH keys, and data exfiltration over HTTPS. The operator wants to minimize the chance of detection and ensure the workflow stops if any step fails. Which approach best satisfies these requirements?

    Select an answer first
  5. 30application · medium

    A red team is automating a phishing simulation that includes a payload download. The team wants to ensure the automation does not accidentally target employees outside the authorized scope and that it stops immediately if a target is not on the approved list. What is the best way to implement this safety control?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GASAE” is a trademark of its owner, used for identification only.