
GIAC Critical Controls Certification
Domain 5Objective 4
Malware Defenses GCCC Practice Questions (Page 3)
Part of the Security Operations and Monitoring domain, which makes up ~22% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~11–18 in this domain), expect 3–5 from this objective — we provide 50 practice questions to prepare you well beyond it. (estimate)
50questions here
10free pages
9concepts
Questions 11–15
- 11
Which type of analysis involves executing malware to observe its runtime behavior?
Select an answer first - 12
A company wants to implement application whitelisting on its user workstations. The workstations run a wide variety of applications, and users frequently install new software. The security team is concerned about administrative overhead and user productivity. Which approach balances security and usability?
Select an answer first - 13
A security team receives a suspicious file from a user. They want to analyze its behavior without risking the production network. They decide to run it in a sandbox. Which additional step would improve the analysis?
Select an answer first - 14
A user receives an email with an attachment that, when opened, installs a backdoor and connects to a remote command-and-control server. Which malware category and infection vector does this describe?
Select an answer first - 15
What is the primary goal of vulnerability management in the context of malware defense?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCCC” is a trademark of its owner, used for identification only.