
GIAC Cloud Security Essentials
Domain 4Objective 1
Secure Compute Deployment GCLD Practice Questions (Page 1)
Part of the Compute, Storage, and Containers domain, which makes up ~11% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~6–9 in this domain), expect 3–5 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)
31questions here
7free pages
7concepts
Questions 1–5
- 1
A security analyst is setting up monitoring for a fleet of VMs. The analyst wants to detect unauthorized SSH access attempts and also track changes to security group rules. Which combination of logs should be enabled?
Select an answer first - 2
A company has a policy that all production VMs must have a specific set of tags and must be backed up daily. The security team wants to enforce this policy automatically. What is the most effective approach?
Select an answer first - 3
A company is deploying a VM that will store sensitive data. The security team requires encryption at rest, but the operations team is concerned about the performance impact of encryption. The VM will be used for a high-I/O database. Which approach should be taken?
Select an answer first - 4
A company is deploying a VM that will store sensitive customer data. The compliance team requires that the data be encrypted at rest. The company uses a cloud provider that offers default encryption for volumes. What additional step should be taken to ensure the encryption keys are managed securely?
Select an answer first - 5
Which principle is best described as granting a compute instance only the permissions required to perform its intended function?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCLD” is a trademark of its owner, used for identification only.