
GIAC Cloud Threat Detection
Domain 3Objective 3
Cloud Vulnerability Analysis GCTD Practice Questions (Page 3)
Part of the Cloud Threat Detection and Response domain, which makes up ~25% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 4–7 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
8concepts
Questions 11–15
- 11
Which framework provides a structured set of security controls specifically designed for cloud service providers and customers to assess cloud security posture?
Select an answer first - 12
A security team has a vulnerability management program that includes scanning, prioritization, remediation, and verification. However, the team is struggling with recurring vulnerabilities that reappear after remediation. What is the most likely root cause and what should be done?
Select an answer first - 13
Which cloud misconfiguration is most likely to result in a data breach if a storage bucket is set to 'public-read'?
Select an answer first - 14
A cloud administrator discovers that an Azure storage account has a network rule that allows access from 'All networks' instead of specific virtual networks. The storage account contains backup files that are not publicly accessible. What is the primary risk of this misconfiguration?
Select an answer first - 15
When reporting a cloud vulnerability to non-technical stakeholders, which approach is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCTD” is a trademark of its owner, used for identification only.