
GIAC Cloud Security Architecture and Design
Domain 2Objective 1
Centralizing Shared Network Services GCAD Practice Questions (Page 5)
Part of the Network Architecture and Security domain, which makes up ~24% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–19 in this domain), expect 3–5 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
12concepts
Questions 21–25
- 21
What is a primary benefit of centralizing DHCP management in a cloud environment?
Select an answer first - 22
Which cloud provider service is commonly used to centralize DNS in a cloud environment?
Select an answer first - 23
A security team is centralizing logs from multiple cloud accounts and on-premises systems. They need to ensure that logs are tamper-evident and that access to the log repository is strictly controlled. They also want to minimize the risk of an attacker deleting logs. Which architecture is most appropriate?
Select an answer first - 24
A financial institution is required to retain network logs for seven years and must ensure that logs cannot be altered by attackers. They are centralizing logging in Azure. What should they implement?
Select an answer first - 25
A large enterprise is centralizing DNS resolution for thousands of VMs across multiple VNets. They expect high query volume and need low latency. They also want to minimize operational overhead. Which DNS architecture should they choose?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCAD” is a trademark of its owner, used for identification only.