Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Cloud Security Essentials

Domain 1Objective 3

Frameworks for Built-In Security GCLD Practice Questions (Page 4)

Part of the Cloud Fundamentals and Shared Responsibility domain, which makes up ~24% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–19 in this domain), expect 3–5 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)

33questions here
7free pages
3concepts

Questions 16–20

  1. 16expert · hard

    A company is using a serverless function (FaaS) to process sensitive data. They are using the CSA Cloud Controls Matrix to assess their security responsibilities. The provider manages the runtime and platform, but the customer writes the function code. Which control is MOST likely to be the customer's responsibility?

    Select an answer first
  2. 17application · medium

    An organization is migrating a legacy application to the cloud and must comply with a regulation that requires encryption of data at rest. They plan to use a cloud provider's managed database service. Which control should the organization implement to meet this requirement, considering the shared responsibility model?

    Select an answer first
  3. 18application · medium

    A cloud security architect is selecting a framework to guide the continuous monitoring of a multi-cloud environment. The framework should provide a common language for describing security outcomes and support iterative improvement cycles. Which framework is best suited for this purpose?

    Select an answer first
  4. 19application · medium

    A security team is using the CIS Critical Security Controls to evaluate their cloud deployment. They want to implement a control that helps identify and remediate known vulnerabilities in their container images. Which CIS Control is most directly applicable?

    Select an answer first
  5. 20foundation · easy

    In the context of cloud shared responsibility, which security control is typically the responsibility of the cloud customer, even when using a framework like NIST or CIS?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCLD” is a trademark of its owner, used for identification only.