
GIAC Defending Advanced Threats
Domain 3Objective 1
Administrative Access GDAT Practice Questions (Page 2)
Part of the Credential and Privilege Management domain, which makes up ~10% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 5–8 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)
40questions here
8free pages
7concepts
Questions 6–10
- 6
A company wants to enforce a policy that administrative passwords must be unique and not reused across systems. Which control is most effective?
Select an answer first - 7
What is the primary purpose of regularly rotating administrative credentials?
Select an answer first - 8
During a review, the security team discovers that a service account with Domain Admin privileges has been used to log in interactively to a file server. The team needs to detect and investigate such usage in the future. Which control should be implemented?
Select an answer first - 9
A security architect is designing MFA for a hybrid environment where administrators access both on-premises and cloud resources. The solution must support phishing-resistant MFA and provide a consistent experience. Which approach is most appropriate?
Select an answer first - 10
Which policy should be enforced when an administrator leaves the organization?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDAT” is a trademark of its owner, used for identification only.