Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Cloud Security Automation

Domain 3Objective 3

Runtime Security in Container Orchestration GCSA Practice Questions (Page 1)

Part of the Container Orchestration Architecture and Security domain, which makes up ~19% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–15 in this domain), expect 3–4 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)

37questions here
8free pages
6concepts

Questions 1–5

  1. 1application · medium

    A security operations center (SOC) is monitoring a Kubernetes cluster for runtime threats. They notice an unusual spike in outbound network traffic from a single pod. Which runtime security tool would be most effective at detecting this anomaly and providing real-time alerts?

    Select an answer first
  2. 2application · medium

    A security architect is designing a runtime security strategy for a Kubernetes cluster that runs a mix of stateful and stateless applications. They want to ensure that any anomalous behavior is detected and that the security team is notified. Which approach should they take?

    Select an answer first
  3. 3foundation · easy

    In the context of container orchestration, what is the primary purpose of runtime security?

    Select an answer first
  4. 4foundation · easy

    What is the purpose of a runtime security policy in a container orchestration environment?

    Select an answer first
  5. 5foundation · easy

    Which activity is an example of runtime security in a Kubernetes cluster?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCSA” is a trademark of its owner, used for identification only.