Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Strategic Planning, Policy, and Leadership

Domain 3Objective 2

Understanding the Threats GSTRT Practice Questions (Page 9)

Part of the Business and Threat Context domain, which makes up ~26% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~18–31 in this domain), expect 9–16 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)

46questions here
10free pages
5concepts

Questions 41–45

  1. 41expert · hard

    A multinational corporation has experienced a data breach. The investigation reveals that the attacker used credentials obtained from a phishing campaign. The attacker then moved laterally and exfiltrated sensitive data. The company's threat intelligence team has identified that the attack matches the TTPs of a known criminal group. Which threat actor category and motivation is most likely?

    Select an answer first
  2. 42expert · hard

    A large e-commerce company is conducting a threat analysis for its payment processing system. The system handles millions of transactions daily. The threat modeling team has identified a potential vulnerability in the payment API that could allow an attacker to manipulate transaction amounts. The company has limited security resources and must prioritize remediation efforts. The team has access to threat intelligence indicating that similar APIs in the retail sector have been actively exploited by financially motivated criminal groups. Which approach best balances the need to address the vulnerability with the company's resource constraints?

    Select an answer first
  3. 43application · medium

    A government contractor has observed a series of cyber incidents that appear to be coordinated and highly sophisticated, targeting specific projects related to national defense. The attacks have not been publicly claimed, and the techniques used are not widely known. Which threat actor category is most likely responsible?

    Select an answer first
  4. 44foundation · easy

    Which type of threat intelligence provides context about specific threat actors, their tactics, techniques, and procedures (TTPs)?

    Select an answer first
  5. 45application · medium

    A financial services firm is conducting a threat analysis for its new mobile banking application. The threat modeling team has identified a vulnerability in the API that could allow unauthorized fund transfers. They are now assessing the likelihood and impact of this threat being exploited. Which approach best aligns with a structured threat analysis process?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSTRT” is a trademark of its owner, used for identification only.