Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS)

GIAC Offensive AI Analyst

GOAA

The GIAC Offensive AI Analyst (GOAA) certification validates your ability to apply practical, real-world offensive artificial intelligence techniques to modern cybersecurity challenges. It is designed for SOC analysts, red teamers, and security professionals who need to emulate sophisticated adversaries using AI-driven tactics like deepfake-enabled phishing, automated vulnerability discovery, and AI-powered attack simulations. Earning GOAA proves you can close the gap between AI-enhanced attackers and traditional defenders.

383 practice questions · Updated 2026-07-30

3Domains
10Objectives
55Concepts
383Questions

GOAA Curriculum

Every domain, objective, and concept the GOAA exam measures.

Artificial Intelligence Fundamentals

6 concepts · 48 questions
  1. Define AI
  2. Identify AI subfields
  3. Explain machine learning basics
  4. Explain deep learning basics
  5. Recognize AI applications
  6. Understand AI limitations

Social Engineering Fundamentals

5 concepts · 44 questions
  1. Social Engineering Attack Cycle
  2. Psychological Triggers
  3. Attack Vectors
  4. Human Factors
  5. Defensive Strategies

Creating Phishing Emails with AI

4 concepts · 18 questions
  1. AI-Powered Phishing Email Generation
  2. Crafting Effective Phishing Prompts
  3. Detecting AI-Generated Phishing Emails
  4. Ethical and Legal Considerations

Using AI for OSINT

7 concepts · 46 questions
  1. OSINT Fundamentals
  2. AI-Powered Data Collection
  3. Entity Extraction and Correlation
  4. Sentiment and Behavioral Analysis
  5. Pattern Recognition and Anomaly Detection
  6. Automated Reporting and Visualization
  7. Ethical and Legal Considerations
  1. Network Scanning Fundamentals
  2. Port Scanning Techniques
  3. Service and Version Detection
  4. Vulnerability Scanning Basics
  5. AI-Enhanced Scanning
  6. Interpreting Scan Results

Using AI for Web Exploitation

5 concepts · 30 questions
  1. AI-assisted vulnerability discovery
  2. AI-driven payload generation
  3. Automated exploitation workflows
  4. Evasion of detection mechanisms
  5. Analysis of AI-generated attack results

Bypassing Defensive Controls

5 concepts · 40 questions
  1. Adversarial Input Generation
  2. Model Evasion Techniques
  3. Defensive Control Bypass Strategies
  4. Red-Teaming AI Defenses
  5. Countermeasure Evaluation

Malware Fundamentals

6 concepts · 41 questions
  1. Malware Types
  2. Malware Lifecycle
  3. Malware Delivery Mechanisms
  4. Malware Persistence Techniques
  5. Malware Evasion Techniques
  6. Malware Analysis Basics

Creating Malicious Software with AI

5 concepts · 32 questions
  1. AI-Driven Malware Generation
  2. Adversarial Machine Learning in Malware
  3. Deepfake Creation Techniques
  4. Deepfake Detection Methods
  5. Ethical and Legal Implications

Audio, Image, and Video Deepfakes

6 concepts · 48 questions
  1. Deepfake Fundamentals
  2. Audio Deepfake Generation
  3. Image Deepfake Generation
  4. Video Deepfake Generation
  5. Deepfake Detection Techniques
  6. Ethical and Legal Implications
Ready to practice?Test your knowledge with exam-style questions or take an intelligent quiz tailored to your level.

Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for GOAA, so none is invented.