Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Information Security Fundamentals

Domain 1Objective 2

Managing and Mitigating Cyber Risk GISF Practice Questions (Page 6)

Part of the Foundations and Risk Management domain, which makes up ~22% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~11–18 in this domain), expect 4–6 from this objective — we provide 50 practice questions to prepare you well beyond it. (estimate)

50questions here
10free pages
6concepts

Questions 26–30

  1. 26foundation · easy

    An organization deploys an intrusion detection system (IDS) to monitor network traffic and alert security staff when suspicious activity is detected. Which category of security control does this represent?

    Select an answer first
  2. 27expert · hard

    A company has implemented a comprehensive security program with preventive, detective, and corrective controls. During a routine review, the security team discovers that the detective controls are generating a high number of false positives, causing alert fatigue among analysts. As a result, some real alerts are being missed. The team must decide how to adjust the controls. Which approach best addresses the issue while maintaining effective detection?

    Select an answer first
  3. 28foundation · easy

    Why is continuous monitoring of security controls important in a cyber risk management program?

    Select an answer first
  4. 29application · medium

    An e-commerce company wants to ensure that a security breach is detected quickly and that the business can recover with minimal data loss. Which combination of controls should they prioritize?

    Select an answer first
  5. 30expert · hard

    A financial institution is required by its regulator to perform a risk assessment that includes both quantitative and qualitative elements. The institution has a large portfolio of assets, including a core banking system, a customer portal, and internal workstations. The security team has limited time and budget. They must decide how to allocate effort. The core banking system has a high likelihood of a targeted attack and a high impact if compromised. The customer portal has a medium likelihood and medium impact. The workstations have a low likelihood but a high impact due to the sensitive data they access. Which approach best meets the regulatory requirement while managing limited resources?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISF” is a trademark of its owner, used for identification only.