Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Strategic Planning, Policy, and Leadership

Domain 3Objective 2

Understanding the Threats GSTRT Practice Questions (Page 2)

Part of the Business and Threat Context domain, which makes up ~26% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~18–31 in this domain), expect 9–16 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)

46questions here
10free pages
5concepts

Questions 6–10

  1. 6application · medium

    A non-profit environmental organization has been targeted by a series of distributed denial-of-service (DDoS) attacks and website defacements. The attacks appear to be coordinated and are accompanied by public statements criticizing the organization's advocacy work. Which threat actor category is most likely responsible?

    Select an answer first
  2. 7expert · hard

    A technology company is integrating threat intelligence from multiple sources, including open-source feeds, commercial feeds, and industry sharing groups. The team notices that the open-source feeds generate many false positives, while the commercial feeds are more accurate but expensive. The company has a limited security budget. What is the most effective strategy?

    Select an answer first
  3. 8foundation · easy

    In a structured threat analysis process, which step involves determining the potential damage a threat could cause to an organization?

    Select an answer first
  4. 9application · medium

    A security architect is using the STRIDE methodology to threat model a new online banking application. The team is analyzing the 'Elevation of Privilege' category. Which scenario best represents an Elevation of Privilege threat?

    Select an answer first
  5. 10application · medium

    A security operations center (SOC) is incorporating threat intelligence into its daily operations. The SOC receives a daily feed of indicators of compromise (IOCs) from a trusted source. The team wants to use this intelligence to improve its detection capabilities. Which action best leverages this threat intelligence?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSTRT” is a trademark of its owner, used for identification only.