
GIAC Cyber Incident Leader
Domain 1Objective 5
Supply Chain Attacks GCIL Practice Questions (Page 1)
Part of the Attack Types and Vectors domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~17–26 in this domain), expect 3–5 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
5concepts
Questions 1–5
- 1
A hospital's electronic health record (EHR) system is provided by a vendor that uses a third-party cloud infrastructure. The cloud provider suffers a ransomware attack that encrypts the vendor's systems, making the EHR unavailable for several days. Which impact is most directly associated with this supply chain incident?
Select an answer first - 2
A large enterprise is updating its incident response plan to include supply chain attacks. They have a complex environment with multiple critical vendors. The security team is debating whether to include a tabletop exercise that simulates a compromised software update from a key vendor. The CISO is concerned about the time and resources required. What is the most compelling reason to conduct the tabletop exercise?
Select an answer first - 3
A company's incident response team is updating its playbook to include supply chain attack scenarios. The team wants to ensure that the playbook addresses coordination with external parties. Which element should be included in the playbook?
Select an answer first - 4
A regional hospital uses a third-party patient-billing platform. During a routine vendor audit, the hospital discovers that the vendor's software update server was compromised and is distributing a modified client that exfiltrates patient records. The hospital's security team wants to reduce the risk of this type of incident recurring. Which control is most directly aimed at preventing the distribution of tampered software updates?
Select an answer first - 5
A company's supply chain attack results in the theft of customer credit card data from a third-party payment processor. Which impact is most directly associated with this incident?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCIL” is a trademark of its owner, used for identification only.