
GIAC Cloud Security Architecture and Design
Domain 1Objective 4
Conditional Access Policies GCAD Practice Questions (Page 2)
Part of the Identity and Access Management domain, which makes up ~29% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–23 in this domain), expect 3–5 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
7concepts
Questions 6–10
- 6
What is the effect of a Conditional Access policy that uses the 'Block access' control?
Select an answer first - 7
What is the first step in the Conditional Access policy evaluation process?
Select an answer first - 8
An administrator is reviewing the sign-in logs to determine why a user was not prompted for MFA. The user's sign-in risk is low, and the user is accessing the app from a trusted location. The conditional access policy requires MFA for all users, but the policy is configured to exclude trusted locations. What is the most likely reason the user was not prompted for MFA?
Select an answer first - 9
An organization wants to allow users to access a cloud app from unmanaged devices, but they want to restrict what users can do with the data once it is accessed. Specifically, they want to prevent users from copying sensitive data from the app to personal storage. The app supports Azure AD conditional access and has integration with Microsoft Cloud App Security (MCAS). Which access control should be configured in the conditional access policy?
Select an answer first - 10
Which tool or report is used to monitor the effectiveness of Conditional Access policies?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCAD” is a trademark of its owner, used for identification only.