Skip to content

Vendor

SANS exams

See which Quizra question sets are currently listed for this vendor, then open the exact exam you are preparing for.

Exams
1
Questions
533

Question sets

Open the exam you're preparing for

Certification paths

How the certifications fit together

Applied Knowledge

100% CyberLive VM-based exams that feed the portfolio path.

  • GIAC Experienced Cybersecurity Specialist CertificationGX-CSHands-on VM exam.
  • GIAC Experienced Intrusion Analyst CertificationGX-IAApplied Knowledge intrusion analysis.
  • GIAC Experienced Incident Handler CertificationGX-IHApplied Knowledge incident handling.
  • GIAC Experienced Penetration Tester CertificationGX-PTApplied Knowledge pentesting.
  • GIAC Experienced Forensic Analyst CertificationGX-FAApplied Knowledge forensic analysis.
  • GIAC Experienced Forensics ExpertGX-FENewest Applied Knowledge forensics credential.

Cyber Defense

Foundational defense, detection, and blue-team operations.

  • GIAC Information Security FundamentalsGISFEntry-level security literacy.
  • GIAC Security EssentialsGSECCore hands-on security baseline.
  • GIAC Certified Enterprise DefenderGCEDAdvanced defender track.
  • GIAC Certified Incident HandlerGCIHIncident handling and attacker behavior.
  • GIAC Certified Detection AnalystGCDASIEM and detection engineering.
  • GIAC Security Operations CertifiedGSOCSOC leadership and automation.
  • GIAC Strategic OSINT AnalystGSOAHands-on OSINT investigations.

Offensive Operations

Pentesting, exploit research, and adversary emulation.

  • GIAC Penetration Tester CertificationGPENEnterprise penetration testing.
  • GIAC Web Application Penetration TesterGWAPTWeb application pentesting.
  • GIAC Exploit Researcher and Advanced Penetration TesterGXPNAdvanced exploit research and pen testing.
  • GIAC Red Team ProfessionalGRTPRed team operations end to end.

Cloud Security

Vendor-neutral cloud defense, architecture, and response.

  • GIAC Public Cloud SecurityGPCSVendor-neutral cloud security.
  • GIAC Cloud Security AutomationGCSACloud security automation and DevSecOps.
  • GIAC Cloud Penetration TesterGCPNCloud penetration testing.
  • GIAC Cloud Security Architecture and DesignGCADCloud security architecture and zero trust.
  • GIAC Cloud Threat DetectionGCTDCloud threat detection.
  • GIAC Cloud Forensics ResponderGCFRCloud forensics and response.

Digital Forensics and Incident Response

Host, mobile, malware, and threat intel investigations.

  • GIAC iOS and macOS ExaminerGIMEApple device forensics.
  • GIAC Certified Forensic AnalystGCFAAdvanced IR and forensics.
  • GIAC Cyber Threat IntelligenceGCTIThreat intelligence analysis.
  • GIAC Reverse Engineering Malware CertificationGREMMalware reverse engineering.
  • GIAC Advanced Smartphone Forensics CertificationGASFSmartphone forensics.

Leadership

Security management, policy, risk, and incident leadership.

  • GIAC Critical Controls CertificationGCCCCIS Controls and risk management.
  • GIAC Security LeadershipGSLCSecurity leadership.
  • GIAC Information Security Professional CertificationGISPBroad security leadership and CISSP alternative.
  • GIAC Cyber Incident LeaderGCILCyber incident leadership.

Artificial Intelligence

AI security, offensive AI, and GenAI/LLM protection.

  • GIAC AI Security Automation EngineerGASAEAI security automation.
  • GIAC Offensive AI AnalystGOAAOffensive AI.
  • GIAC AI Platform SecurityGAIPSGenAI and LLM application security.

Portfolio

Build GSP and GSE from stackable certs.

  • GIAC Security ProfessionalGSP3 Practitioner plus 2 Applied Knowledge certifications.
  • GIAC Security ExpertGSE6 Practitioner plus 4 Applied Knowledge certifications.

What changed

The timeline

  1. 1999

    GIAC founded: GIAC was founded to validate the skills of information security professionals inside the SANS ecosystem.

  2. 2000

    First technical cert: GIAC says it launched the first true technical information security certification in 2000.

  3. 2026

    Focus-area catalog: GIAC now groups certifications into Offensive Operations, Cyber Defense, Cloud Security, Digital Forensics and Incident Response, Leadership, and AI.

  4. 2026

    Applied Knowledge line: The Applied Knowledge line is 100% CyberLive and stacks into the GSP and GSE portfolio path.

  5. 2026

    Portfolio path: GIAC positions Practitioner and Applied Knowledge certifications as stackable building blocks for GSP and GSE.

  6. 2026

    AI suite announced: The AI focus page says four AI-focused credentials will launch through 2026.

  7. 2026

    GSOA launched: SANS and GIAC launched Strategic OSINT Analyst for hands-on open-source intelligence investigations.

  8. 2026

    GCAD launched: SANS and GIAC launched Cloud Security Architecture and Design for secure cloud architecture and zero-trust design.

  9. September 9, 2025

    AI Career Framework added to GIAC AI cert launch

  10. September 15, 2026

    SEC504 adopts the Dynamic Approach to Incident Response

Choose the exam you're actually preparing for.

Open an exam page to see whether a sample is available and review the current access choices. Answers and explanations appear with the question when included.

View SEC504