Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Cloud Security Automation

Domain 5Objective 1

Edge Identity and Authentication GCSA Practice Questions (Page 3)

Part of the Identity, Secrets, and Supply Chain domain, which makes up ~18% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 3–5 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)

48questions here
10free pages
6concepts

Questions 11–15

  1. 11application · medium

    A company produces edge devices that run a custom Linux distribution. The security team wants to ensure that only approved software components are included in the device image and that the image has not been altered between build and deployment. Which supply chain security control should they implement?

    Select an answer first
  2. 12application · medium

    A company is deploying edge devices that process data locally and occasionally sync with the cloud. The devices need to authenticate to the cloud without relying on a stable internet connection. Which edge identity model best supports this intermittent connectivity?

    Select an answer first
  3. 13application · medium

    An energy company is deploying firmware updates to thousands of remote sensors. The sensors have limited compute power and cannot perform heavy cryptographic operations. The security team wants to ensure that only authentic firmware from the vendor is installed, and that the firmware has not been tampered with during transit. Which approach provides the strongest integrity and authenticity verification while respecting the sensors' constraints?

    Select an answer first
  4. 14foundation · easy

    Which practice is considered a best practice for storing secrets at the edge?

    Select an answer first
  5. 15application · medium

    A smart-city project deploys cameras and sensors that publish data to a message broker. The broker must authenticate each publisher and ensure that messages are not altered in transit. The devices are resource-constrained and cannot maintain long-lived TLS sessions. Which authentication mechanism is most appropriate for this edge-to-broker communication?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCSA” is a trademark of its owner, used for identification only.