
GIAC Red Team Professional
Domain 1Objective 1
Adversary Emulation Fundamentals GRTP Practice Questions (Page 10)
Part of the Red Team Operations and Infrastructure domain, which makes up ~38% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~27–46 in this domain), expect 7–12 from this objective — we provide 47 practice questions to prepare you well beyond it. (estimate)
47questions here
10free pages
7concepts
Questions 46–47
- 46
During an emulation, the red team discovers that a specific technique they planned to use is blocked by a security control. The threat actor is known to use that technique, but the control is effective against it. The team has limited time and wants to test the SOC's response. What should they do?
Select an answer first - 47
A red team is asked to emulate a specific threat actor for a client. The client has a strict rule: no techniques that could cause data loss. The threat actor is known to use a wiper malware in its final stage. The team has a sandbox environment that fully replicates the production environment. What is the best approach?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to GRTP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GRTP” is a trademark of its owner, used for identification only.