GREM Certification exam preparation

in GIAC
Hi everyone,
I am looking to take GREM exam by the end of this year. My background is reverse engineering and malware forensic with more than 3 years experience in real life and dealing with real incidents everyday.
However, this is my first SANS so I am quite concerned about some points. It really appreciate if someone could help me to go through:
- Does GREM exam required a lots reading books and remembering definitions? Is it a practical exam or theory exam?
- With 3 years in reverse engineering and malware forensic, what should I do to prepare for the exam?
Really appreciate for your help. Looking forward to your response eagerly.
Regards,
Michael
I am looking to take GREM exam by the end of this year. My background is reverse engineering and malware forensic with more than 3 years experience in real life and dealing with real incidents everyday.
However, this is my first SANS so I am quite concerned about some points. It really appreciate if someone could help me to go through:
- Does GREM exam required a lots reading books and remembering definitions? Is it a practical exam or theory exam?
- With 3 years in reverse engineering and malware forensic, what should I do to prepare for the exam?
Really appreciate for your help. Looking forward to your response eagerly.
Regards,
Michael
Comments
I attempt to take the GREM without taking the course.
The knowledge question that you have mentioned is the theory question getting from the course book right? Can you tell me how many question or the ratio of knowledge questions will be appeared in the exam?
Furthermore, I heard that the SANS exam is required a wide knowledge. Can you suggest me how I should prepare for the exam? Do I need to and how do i create the index for the exam (if required)?
Thank you very much for your time and your help.
Currently Working On: Python, OSCP Prep
Next Up: OSCP
Studying: Code Academy (Python), Bash Scripting, Virtual Hacking Lab Coursework
I'm afraid not. The Exam is updated often, so even if I were to tell what every question that was on my exam, chances are a lot of the questions would have changed already. I also firmly believe the questions on the exam are pulled from a pool of possible questions from the SANS test server. This would explain why there is sometimes a 2 to 3 second delay when the exam is loading the next question, if the entire exam was downloaded to your test computer in one shot at the beginning of the exam, there shouldn't be any delay in loading the next question.
The "index" for the exam is just a index of the SANS course materials you possess when you take the course, There no reason why you couldn't just index the "Malware Analyst's Cookbook" for a quick reference on the exam or other malware books and other material. I guess you could just use the index in the back of the cookbook, but half the point of creating your own index, it helps you study for the exam. I haven't read the entire cookbook, but there is certainly useful information in it that will help you with the exam, but no assembler in it. You going to need a decent assembler book to understand it, so you can do static code analysis.