
GIAC Cloud Security Architecture and Design
Domain 5Objective 1
Implementing Zero Trust GCAD Practice Questions (Page 7)
Part of the Zero Trust and Governance domain, which makes up ~10% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 3–4 from this objective — we provide 49 practice questions to prepare you well beyond it. (estimate)
49questions here
10free pages
5concepts
Questions 31–35
- 31
A multinational company must comply with data residency regulations while implementing Zero Trust. They plan to use a cloud provider with regions in multiple countries. Which governance policy is most appropriate?
Select an answer first - 32
A company is adopting Zero Trust and wants to move from a traditional VPN-based remote access model to a more granular approach. They need to give remote employees access only to specific applications, not the entire network. Which implementation strategy should they use?
Select an answer first - 33
A company is implementing Zero Trust and wants to ensure that every access request is verified, even if the user is already authenticated. They also want to limit access to only the resources needed for each user's role. Which principle are they applying?
Select an answer first - 34
Which statement best describes the core principle of 'never trust, always verify' in a Zero Trust architecture?
Select an answer first - 35
A company wants to implement Zero Trust for remote workers accessing internal applications. They already have identity and device management. Which additional component is essential to enforce 'never trust, always verify'?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCAD” is a trademark of its owner, used for identification only.