
GIAC Strategic Planning, Policy, and Leadership
Domain 3Objective 2
Understanding the Threats GSTRT Practice Questions (Page 3)
Part of the Business and Threat Context domain, which makes up ~26% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~18–31 in this domain), expect 9–16 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
5concepts
Questions 11–15
- 11
A regional utility company has experienced a series of targeted phishing emails that reference recent board decisions and internal project code names. The emails originate from a known cyber-espionage group with ties to a foreign government. The company's leadership asks the security team to prioritize defensive actions. Which threat actor category and motivation best describe this situation?
Select an answer first - 12
A large e-commerce company is using threat modeling to assess its new payment processing system. The team has limited resources and must prioritize threats. They have identified several threats, including a SQL injection vulnerability, a distributed denial of service (DDoS) risk, and a potential insider threat. Which approach should they use to prioritize these threats?
Select an answer first - 13
A government agency is conducting a threat analysis for its citizen portal. The agency has identified that a foreign nation-state actor has the capability to exploit a known vulnerability in the portal. The vulnerability is not yet patched. The agency has limited resources and must decide whether to patch the vulnerability or implement a compensating control. What is the most important factor in this decision?
Select an answer first - 14
A non-profit environmental organization discovers that its website has been defaced with political messages and its email server has been used to send propaganda. The organization has no financial assets that would attract cybercriminals. Which threat actor category and motivation is most likely responsible?
Select an answer first - 15
Which motivation is most commonly associated with organized criminal groups conducting ransomware attacks?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSTRT” is a trademark of its owner, used for identification only.