
GIAC Cloud Security Architecture and Design
Domain 1Objective 1
Cloud Identity GCAD Practice Questions (Page 5)
Part of the Identity and Access Management domain, which makes up ~29% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–23 in this domain), expect 3–5 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)
40questions here
8free pages
5concepts
Questions 21–25
- 21
A company uses a third-party identity provider (IdP) to authenticate users to a cloud application. The IdP supports SAML 2.0. The application is currently configured to accept only username/password authentication. What must be configured to enable SAML-based SSO?
Select an answer first - 22
In cloud architecture, what is the primary role of a cloud identity?
Select an answer first - 23
A company uses Microsoft Entra ID (Azure AD) as its cloud identity provider and maintains an on-premises Active Directory. Employees currently have separate passwords for cloud and on-premises resources. The company wants users to authenticate once and access both environments without maintaining two credentials. Which configuration should the administrator implement?
Select an answer first - 24
In a cloud environment, which entity typically acts as the identity provider when a user signs in to a third-party SaaS application using their corporate credentials?
Select an answer first - 25
What is the primary benefit of federated identity for an organization?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCAD” is a trademark of its owner, used for identification only.