GCCC

Practice GCCC Exam

Is it difficult for you to decide to purchase GIAC GCCC exam dumps questions? CertQueen provides FREE online GIAC Critical Controls Certification (GCCC) GCCC exam questions below, and you can test your GCCC skills first, and then decide whether to buy the full version or not. We promise you get the following advantages after purchasing our GCCC exam dumps questions.
1.Free update in ONE year from the date of your purchase.
2.Full payment fee refund if you fail GCCC exam with the dumps

 

 Full GCCC Exam Dump Here

Latest GCCC Exam Dumps Questions

The dumps for GCCC exam was last updated on Jun 09,2026 .

Viewing page 1 out of 4 pages.

Viewing questions 1 out of 20 questions

Question#1

Which of the following actions produced the output seen below?

A. An access rule was removed from firewallrules.txt
B. An access rule was added to firewallrules2.txt
C. An access rule was added to firewallrules.txt
D. An access rule was removed from firewallrules2.txt

Question#2

Dragonfly Industries requires firewall rules to go through a change management system before they are configured. Review the change management log.

Which of the following lines in your firewall ruleset has expired and should be removed from the configuration?

A. access-list outbound permit tcp host 10.1.1.7 any eq smtp
B. access-list outbound deny tcp any host 74.125.228.2 eq www
C. access-list inbound permit tcp 8.8.0.0 0.0.0.255 10.10.12.252 eq 8080
D. access-list inbound permit tcp host 8.8.207.97 host 10.10.12.100 eq ssh

Question#3

If an attacker wanted to dump hashes or run wmic commands on a target machine, which of the following tools would he use?

A. Mimikatz
B. OpenVAS
C. Metasploit

Question#4

An organization has implemented a control for penetration testing and red team exercises conducted on their network. They have compiled metrics showing the success of the penetration testing (Penetration Tests), as well as the number of actual adversary attacks they have sustained (External Attacks).

Assess the metrics below and determine the appropriate interpretation with respect to this control.

A. The blue team is adequately protecting the network
B. There are too many internal penetration tests being conducted
C. The methods the red team is using are not effectively testing the network
D. The red team is improving their capability to measure network security

Question#5

Kenya is a system administrator for SANS. Per the recommendations of the CIS Controls she has a dedicated host (kenya- adminbox / 10.10.10.10) for any administrative tasks. She logs into the dedicated host with her domain admin credentials.
Which of the following connections should not exist from kenya-adminbox?

A. 10.10.245.3389
B. Mail.jane.org.25
C. Firewall_charon.jane.org.22
D. 10.10.10.33.443

Exam Code: GCCC         Q & A: 93 Q&As         Updated:  Jun 09,2026

 

 Full GCCC Exam Dumps Here