
GIAC Strategic Planning, Policy, and Leadership
Domain 2Objective 2
Policy Management GSTRT Practice Questions (Page 6)
Part of the Policy and Program Management domain, which makes up ~45% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~32–54 in this domain), expect 8–14 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)
29questions here
6free pages
4concepts
Questions 26–29
- 26
Why is it important to have a formal process for maintaining security policies?
Select an answer first - 27
Which input is most relevant to a continuous improvement cycle for security policies?
Select an answer first - 28
A retail company's data-classification policy was recently updated to include a new category for customer payment data. The IT operations team has a procedure for granting database access that does not reference the new category. What is the most appropriate action?
Select an answer first - 29
What is the primary goal of a continuous improvement cycle for security policies?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to GSTRT
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSTRT” is a trademark of its owner, used for identification only.