Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Offensive AI Analyst

Domain 2Objective 4

Bypassing Defensive Controls GOAA Practice Questions (Page 3)

Part of the AI-Driven Offensive Operations domain, which makes up ~40% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~20–32 in this domain), expect 5–8 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)

40questions here
8free pages
5concepts

Questions 11–15

  1. 11expert · hard

    An organization's AI-based network intrusion detection system (NIDS) has been evaded by adversarial traffic. The security team is considering two mitigations: adversarial training and input sanitization. The team has limited computational resources and must choose one. Which consideration should guide the decision?

    Select an answer first
  2. 12application · medium

    After a red-team exercise, an organization discovers that its AI-based intrusion detection system can be evaded by adversarial network traffic. The security team wants to propose a mitigation that is practical and effective. Which mitigation should they recommend?

    Select an answer first
  3. 13expert · hard

    A security team has deployed an AI-based web application firewall that is vulnerable to adversarial SQL injection payloads. The team wants to mitigate the vulnerability without blocking legitimate queries that contain similar patterns. Which mitigation is most appropriate?

    Select an answer first
  4. 14expert · hard

    An organization's AI-based email filter has been evaded by adversarial emails. The security team is considering implementing input sanitization, which removes suspicious characters and normalizes text. However, the team is concerned that sanitization may reduce the filter's ability to detect legitimate phishing emails. Which approach best balances security and usability?

    Select an answer first
  5. 15application · medium

    A security team is planning a red-team exercise to test an AI-based phishing detection system. The team wants to evaluate the system's robustness against adversarial emails. Which step should be performed first?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GOAA” is a trademark of its owner, used for identification only.