
GIAC Cyber Incident Leader
Domain 1Objective 5
Supply Chain Attacks GCIL Practice Questions (Page 8)
Part of the Attack Types and Vectors domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~17–26 in this domain), expect 3–5 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
5concepts
Questions 36–40
- 36
A software development company uses a build server that automatically pulls open-source libraries from a public repository. The security team wants to detect if a library has been tampered with before it is integrated into a product. Which control is most effective for this purpose?
Select an answer first - 37
A government agency discovers that a software library used by its internal web application was tampered with at the open-source repository level. The agency's incident response plan does not currently address supply chain incidents. Which action should the incident response team take first to improve coordination with external parties?
Select an answer first - 38
A large enterprise has a mature incident response program, but its supply chain incident response plan has not been tested. The enterprise relies on a critical software vendor for its ERP system. During a tabletop exercise, the team discovers that the vendor's update server was compromised and malicious updates were deployed to the enterprise's ERP environment. The team must decide the first response action. The enterprise has a regulatory requirement to report significant incidents to a national authority within 72 hours. Which action should the team take first?
Select an answer first - 39
A company's incident response team is updating its playbook. They want to add a section specifically for handling a supply chain attack where a critical software vendor is compromised. Which element is most important to include in this new section?
Select an answer first - 40
What is the defining characteristic of a supply chain attack?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCIL” is a trademark of its owner, used for identification only.