
GIAC Cloud Security Architecture and Design
Domain 1Objective 3
Federated Access and SSO GCAD Practice Questions (Page 1)
Part of the Identity and Access Management domain, which makes up ~29% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–23 in this domain), expect 3–5 from this objective — we provide 60 practice questions to prepare you well beyond it. (estimate)
60questions here
12free pages
15concepts
Questions 1–5
- 1
What is the role of the service provider (SP) in a federated trust relationship?
Select an answer first - 2
What is a key strength of OpenID Connect (OIDC) over SAML 2.0?
Select an answer first - 3
A company wants to allow employees to sign in to the AWS Management Console using their corporate credentials. The company runs an on-premises Active Directory and wants to avoid storing corporate passwords in AWS. Which approach should the architect implement?
Select an answer first - 4
What is single logout (SLO) in an SSO environment?
Select an answer first - 5
A development team is building a microservices-based application that uses OpenID Connect for authentication. The API gateway receives a JWT from the client and needs to authorize the request. The gateway does not have network access to the identity provider. What should the gateway do to validate the JWT?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCAD” is a trademark of its owner, used for identification only.