Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Critical Controls Certification

Domain 1Objective 2

Service Provider Management GCCC Practice Questions (Page 6)

Part of the Foundations and Governance domain, which makes up ~10% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 3–4 from this objective — we provide 44 practice questions to prepare you well beyond it. (estimate)

44questions here
9free pages
7concepts

Questions 26–30

  1. 26application · medium

    A company is ending its relationship with an IT outsourcing provider. The provider has access to the company's Active Directory and email systems. The company's security team wants to ensure that the provider's access is revoked immediately upon contract termination. What should be done?

    Select an answer first
  2. 27application · medium

    A company is evaluating a new payment processing vendor. The vendor handles credit card data and will store it on its own systems. The company is subject to PCI DSS. What should the company do before signing the contract?

    Select an answer first
  3. 28application · medium

    A manufacturing company is contracting with a cloud backup provider. The provider will store production data, including intellectual property. The company's legal team wants to ensure that if the contract is terminated, the provider cannot retain copies of the data. Which clause is most important to include in the contract?

    Select an answer first
  4. 29application · medium

    A company's cloud infrastructure provider has detected a breach that may affect the company's data. The company has an incident response plan but no specific procedures for coordinating with the provider. What should the company do first?

    Select an answer first
  5. 30expert · hard

    A multinational corporation uses a managed detection and response (MDR) provider. The MDR contract requires the provider to notify the corporation within 15 minutes of detecting a critical incident. During a ransomware event, the MDR provider detects the incident but delays notification by 45 minutes because its internal team was validating the alert. The corporation's security team is reviewing the incident. What is the most appropriate action?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCCC” is a trademark of its owner, used for identification only.