
GIAC Critical Controls Certification
Domain 5Objective 4
Malware Defenses GCCC Practice Questions (Page 2)
Part of the Security Operations and Monitoring domain, which makes up ~22% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~11–18 in this domain), expect 3–5 from this objective — we provide 50 practice questions to prepare you well beyond it. (estimate)
50questions here
10free pages
9concepts
Questions 6–10
- 6
What is application whitelisting?
Select an answer first - 7
Why is preserving evidence important during malware incident response?
Select an answer first - 8
A company is recovering from a ransomware attack. The ransomware encrypted files on multiple servers and left a ransom note. The incident response team has contained the infection and is now in the eradication and recovery phase. Which action is most important to prevent reinfection?
Select an answer first - 9
In a layered malware defense, what is the primary purpose of network controls such as firewalls and intrusion prevention systems?
Select an answer first - 10
A security architect is designing a defense-in-depth strategy against malware. The company has a mix of legacy systems that cannot be patched and modern systems that are regularly updated. Which combination of controls provides the most comprehensive protection?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCCC” is a trademark of its owner, used for identification only.