
GIAC Critical Controls Certification
Domain 6Objective 2
Email and Web Browser Protections GCCC Practice Questions (Page 7)
Part of the Application and Network Security domain, which makes up ~18% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 3–5 from this objective — we provide 55 practice questions to prepare you well beyond it. (estimate)
55questions here
11free pages
12concepts
Questions 31–35
- 31
How do content filters help enforce acceptable use policies (AUP) in an organization?
Select an answer first - 32
An organization is considering deploying DNS filtering to block malicious domains. They also want to ensure that DNS responses are not tampered with. Which combination of controls should they implement?
Select an answer first - 33
A user reports that they clicked a link in a phishing email and entered their credentials on a fake login page. The security team has already reset the user's password. What should the team do next to contain the incident?
Select an answer first - 34
A security team is evaluating an email gateway that uses sandboxing. The gateway detonates attachments in a virtual machine, but the sandbox has no internet access. The team is concerned about malware that checks for internet connectivity before executing. What should the team do to improve detection?
Select an answer first - 35
What is the primary security benefit of remote browser isolation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCCC” is a trademark of its owner, used for identification only.