Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Cyber Incident Leader

Domain 2Objective 3

Vulnerability and Threat Management GCIL Practice Questions (Page 2)

Part of the Incident Preparation and Prevention domain, which makes up ~20% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 3–5 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)

48questions here
10free pages
8concepts

Questions 6–10

  1. 6foundation · easy

    Which remediation action is most appropriate for a vulnerability that has no available patch?

    Select an answer first
  2. 7foundation · easy

    Which structured threat modeling methodology uses a data flow diagram to identify threats by examining how data moves through a system?

    Select an answer first
  3. 8expert · hard

    A security team is conducting a vulnerability assessment of a critical application. An authenticated scan has identified a SQL injection vulnerability in a legacy module. The team also has threat intelligence indicating that this specific vulnerability is being actively exploited in the wild. The application is scheduled for decommissioning in six months. The incident leader must decide how to handle this finding. Which approach is most appropriate?

    Select an answer first
  4. 9foundation · easy

    What is the primary purpose of a vulnerability assessment?

    Select an answer first
  5. 10expert · hard

    A multinational corporation operates in multiple regions with different data protection regulations. The security team receives threat intelligence from various sources, including government advisories, commercial feeds, and industry ISACs. The incident leader is responsible for integrating this intelligence into the vulnerability management program. The team has limited resources and cannot analyze all intelligence sources equally. Which approach should the incident leader take to maximize the value of threat intelligence integration?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCIL” is a trademark of its owner, used for identification only.