
GIAC Cloud Security Automation
Domain 2Objective 2
Cloud Compliance as Code GCSA Practice Questions (Page 6)
Part of the Cloud Security Automation and Compliance domain, which makes up ~17% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 3–5 from this objective — we provide 50 practice questions to prepare you well beyond it. (estimate)
50questions here
10free pages
10concepts
Questions 26–30
- 26
A DevOps team is using GitLab CI to deploy a Kubernetes cluster with Helm charts. They need to validate that the Helm charts do not use privileged containers or mount the Docker socket before they are deployed to the cluster. What is the most efficient way to implement this check?
Select an answer first - 27
Why is version control important for managing compliance policies as code?
Select an answer first - 28
A company wants to adopt compliance as code to manage their security policies. They have a mix of on-premises and cloud resources. They want to use a single set of policies that can be tested and versioned. Which approach best aligns with compliance as code principles?
Select an answer first - 29
What is the purpose of scanning infrastructure as code (IaC) templates for compliance violations?
Select an answer first - 30
Why is it important to integrate compliance checks into CI/CD pipelines?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCSA” is a trademark of its owner, used for identification only.