Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Certified Enterprise Defender

Domain 1Objective 2

Defensive Infrastructure and Tactics GCED Practice Questions (Page 5)

Part of the Network Defense and Monitoring domain, which makes up ~34% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~24–41 in this domain), expect 6–10 from this objective — we provide 41 practice questions to prepare you well beyond it. (estimate)

41questions here
9free pages
7concepts

Questions 21–25

  1. 21foundation · easy

    How does layering multiple defensive mechanisms enhance overall network security?

    Select an answer first
  2. 22application · medium

    A security analyst is reviewing alerts from the SIEM and notices that a workstation has been making connections to a known malicious IP address. The IP address is listed in the threat intelligence feed. The analyst also notices that the workstation has been sending large amounts of data to the IP address. What is the most appropriate immediate action?

    Select an answer first
  3. 23application · medium

    A small e-commerce company wants to protect its web application from common attacks. They currently have a firewall and an IDS. The security team wants to add another layer of defense without significant infrastructure changes. Which addition would most effectively enhance defense-in-depth for the web application?

    Select an answer first
  4. 24application · medium

    A manufacturing company's IT team is redesigning the network to better protect the production control system (PCS) from malware that might enter through the corporate email system. The PCS must remain reachable by a small group of engineers from the corporate LAN, but no other corporate users should be able to reach it. The team has a limited budget and wants to minimize changes to existing endpoints. Which approach best meets these requirements?

    Select an answer first
  5. 25expert · hard

    A security architect is designing a defense-in-depth strategy for a critical application. The application is internet-facing and processes sensitive customer data. The architect wants to ensure that even if the application is compromised, the attacker cannot easily pivot to the internal network. Which combination of controls provides the most effective defense-in-depth?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCED” is a trademark of its owner, used for identification only.