GIAC GCFW Exam Overview:
| Certification Vendor: | GIAC (Global Information Assurance Certification) |
|---|---|
| Exam Name: | GIAC Certified Firewall Analyst (GCFW) |
| Exam Number: | GCFW |
| Passing Score: | 72% |
| Exam Price: | $999 USD |
| Exam Duration: | 180 minutes |
| Related Certifications: | GIAC Security Essentials (GSEC) GIAC Certified Intrusion Analyst (GCIA) GIAC Certified Perimeter Protection Analyst (GPPA) |
| Available Languages: | English |
| Exam Format: | Scenario-based, Multiple Choice, Open Book |
| Real Exam Qty: | 80-100 |
| Certificate Validity Period: | 4 years |
| Recommended Training: | SANS SEC522: Defensible Perimeter Design & Firewall Administration |
| Exam Registration: | Pearson VUE Scheduling GIAC Official Registration |
| Sample Questions: | GIAC GCFW Sample Questions |
| Exam Way: | Web-based proctored exam: Remote via ProctorU or Onsite via Pearson VUE |
| Pre Condition: | No mandatory prerequisites; network security experience or SANS SEC522 training recommended |
| Official Syllabus URL: | https://www.giac.org/certifications/certified-firewall-analyst-gcfw |
GIAC GCFW Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Topic 1: Logging, Monitoring & Troubleshooting | 15% | - Troubleshooting connectivity and policy issues - Log analysis and traffic pattern review - Alert configuration and incident detection |
| Topic 2: Firewall Architecture & Deployment | 25% | - Network zones and defense-in-depth - Firewall types and design principles - DMZ architecture and implementation |
| Topic 3: Security Hardening & Compliance | 15% | - Firewall system hardening - Compliance and audit requirements - Policy lifecycle management |
| Topic 4: Firewall Technologies & Inspection | 20% | - Next-Generation Firewall (NGFW) features - Stateful vs stateless filtering - Deep packet inspection (DPI) |
| Topic 5: Access Control & Rule Management | 25% | - NAT, PAT, and address translation - Rule creation, ordering, and optimization - User and application control policies |
GIAC Certified Firewall Analyst Sample Questions:
You are configuring a public access wireless connection. Which of the following is the best way to secure this connection?
- A. Using MAC filtering
- B. Implementing anti virus
- C. Not broadcasting SSID
- D. Using WPA encryption
John works as the Security Manager in PassGuide Inc. He wants to protect his network from a variant of the Denial-of-Service (DoS) attack. When the rulebase is enabled for protection, the IDP engine checks the traffic that exceeds the traffic thresholds. Which of the following rulebases is used for this purpose?
- A. Traffic Anomalies rulebase
- B. Exempt rulebase
- C. Backdoor rulebase
- D. SYN Protector rulebase
Adam works as a professional Computer Hacking Forensic Investigator. A project has been assigned to him to investigate computer of an unfaithful employee of SecureEnet Inc. Suspect's computer runs on Windows operating system. Which of the following sources will Adam investigate on a Windows host to collect the electronic evidences?
Each correct answer represents a complete solution. Choose all that apply.
- A. Slack spaces
- B. Swap files
- C. Allocated cluster
- D. Unused and hidden partition
Which of the following tools uses PDA and barcode technologies in order to enable effective identification, control, and reporting of items in a site?
- A. Biometric device
- B. Baseline audit
- C. Vulnerability scanner
- D. Smart card
Which of the following is known as DNS spoofing?
- A. Social engineering
- B. Malicious cache poisoning
- C. Trojan horse
- D. Smurf attack

We're so confident of our products that we provide no hassle product exchange.


By Adela


