
GIAC Continuous Monitoring Certification
Domain 4Objective 3
Patching & Secure Baseline Configurations GMON Practice Questions (Page 7)
Part of the Configuration and Vulnerability Management domain, which makes up ~21% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~15–25 in this domain), expect 5–8 from this objective — we provide 54 practice questions to prepare you well beyond it. (estimate)
54questions here
11free pages
10concepts
Questions 31–35
- 31
What is a secure baseline configuration?
Select an answer first - 32
What is the primary purpose of configuration management tools like Ansible or Group Policy?
Select an answer first - 33
A vulnerability scan identifies a missing patch on a server that is part of a PCI-DSS compliant environment. The patch is rated medium severity and has no known exploit. The compliance team requires all medium vulnerabilities to be remediated within 30 days. What is the best action?
Select an answer first - 34
What is a key input for continuously improving the patch management process?
Select an answer first - 35
A company uses Ansible to manage its Linux servers. The security team wants to ensure that all servers have the same secure baseline configuration and that any changes are automatically reverted. Which Ansible approach best achieves this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GMON” is a trademark of its owner, used for identification only.