
GIAC Information Security Fundamentals
Domain 3Objective 4
Defensive Technologies and Emerging Intelligence GISF Practice Questions (Page 3)
Part of the Threats and Defenses domain, which makes up ~36% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~18–29 in this domain), expect 5–7 from this objective — we provide 54 practice questions to prepare you well beyond it. (estimate)
54questions here
11free pages
11concepts
Questions 11–15
- 11
Which of the following is a typical role of an intrusion prevention system (IPS) in a network?
Select an answer first - 12
A company discovered that a critical vulnerability exists in a third-party library used by its web application. The vendor has released a patch, but the patch requires a reboot of the server, which would cause downtime during business hours. The vulnerability is actively being exploited in the wild. What is the most appropriate immediate action?
Select an answer first - 13
A company's endpoints are infected with ransomware that encrypts files and demands payment. The company has backups, but the backups are also encrypted because they were stored on the same network share. Which control would have most effectively prevented this scenario?
Select an answer first - 14
A security operations center (SOC) receives alerts from multiple sources: firewall logs, IDS alerts, and endpoint detection logs. The analysts are overwhelmed by the volume of alerts and are missing critical incidents. Which control would most directly help the analysts prioritize and correlate these alerts?
Select an answer first - 15
What is threat intelligence?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISF” is a trademark of its owner, used for identification only.