
GIAC Cloud Security Essentials
Domain 3Objective 1
External Access and IAM Best Practices GCLD Practice Questions (Page 9)
Part of the Identity, Access, and Secrets domain, which makes up ~15% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 4–6 from this objective — we provide 44 practice questions to prepare you well beyond it. (estimate)
44questions here
9free pages
6concepts
Questions 41–44
- 41
A company wants to allow external users to access a cloud application using their existing social media accounts. The application needs to receive the user's email address and name to personalize the experience. Which federated identity approach should the company use?
Select an answer first - 42
Which protocol is commonly used in federated identity to exchange authentication and authorization data between an identity provider and a service provider using XML-based assertions?
Select an answer first - 43
A security analyst notices that an external user's temporary credentials are being used to access a cloud resource from an unusual geographic location. The analyst wants to detect and respond to such anomalies in the future. What should the analyst implement?
Select an answer first - 44
A company has a cloud application that should only be accessible to employees from the corporate office. The office uses a static public IP address. The company wants to enforce this restriction at the application level. Which IAM policy condition should be applied?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to GCLD
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCLD” is a trademark of its owner, used for identification only.