
GIAC Cloud Security Architecture and Design
Domain 5Objective 1
Implementing Zero Trust GCAD Practice Questions (Page 2)
Part of the Zero Trust and Governance domain, which makes up ~10% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 3–4 from this objective — we provide 49 practice questions to prepare you well beyond it. (estimate)
49questions here
10free pages
5concepts
Questions 6–10
- 6
A security team is implementing Zero Trust and wants to use continuous monitoring to detect compromised accounts. They have a SIEM but lack automated response capabilities. Which enhancement is most aligned with Zero Trust?
Select an answer first - 7
When planning incremental Zero Trust implementation, what is a recommended first step?
Select an answer first - 8
An organization is at the 'Initial' stage of the Zero Trust maturity model. They have a flat network, no device inventory, and rely on VPN for remote access. They want to move to the 'Advanced' stage within a year but have limited budget and staff. Which incremental step should they take first to maximize security improvement?
Select an answer first - 9
A company is implementing Zero Trust and wants to protect its applications from unauthorized access. They want to ensure that only authenticated and authorized users can reach the application, and they want to hide the application's IP address. Which component should they use?
Select an answer first - 10
What does a Zero Trust maturity model help an organization determine?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCAD” is a trademark of its owner, used for identification only.