Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Cloud Security Essentials

Domain 1Objective 2

Understanding Shared Responsibility and Threat Informed Defense GCLD Practice Questions (Page 6)

Part of the Cloud Fundamentals and Shared Responsibility domain, which makes up ~24% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–19 in this domain), expect 3–5 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)

37questions here
8free pages
2concepts

Questions 26–30

  1. 26expert · hard

    A company is moving from an on-premises data center to a cloud provider's PaaS offering. The security team is concerned about losing visibility into network traffic. Which approach best addresses this concern while using PaaS?

    Select an answer first
  2. 27application · medium

    A company is migrating a legacy application from an on-premises data center to a cloud provider's infrastructure-as-a-service (IaaS) offering. The application runs on a virtual machine with a custom operating system image. Which security control remains the customer's responsibility after the migration?

    Select an answer first
  3. 28application · medium

    A threat intelligence report describes an adversary group that uses compromised service accounts to access cloud APIs and then creates snapshots of virtual machines to exfiltrate data. Which control is most directly informed by this threat pattern?

    Select an answer first
  4. 29expert · hard

    A security team is reviewing threat intelligence that shows an adversary group uses exposed cloud storage buckets to harvest sensitive data. The team must implement a control that balances security with the need for some buckets to be publicly accessible for a public website. Which control is most appropriate?

    Select an answer first
  5. 30application · medium

    A company is migrating a customer-facing web application to a cloud provider using a platform-as-a-service (PaaS) offering. The security team is updating the incident response runbook and needs to document which party is responsible for patching the operating system of the application host. According to the shared responsibility model, who is responsible for patching the OS?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCLD” is a trademark of its owner, used for identification only.