
GIAC Defending Advanced Threats
Domain 3Objective 1
Administrative Access GDAT Practice Questions (Page 6)
Part of the Credential and Privilege Management domain, which makes up ~10% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 5–8 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)
40questions here
8free pages
7concepts
Questions 26–30
- 26
An organization is enforcing MFA for all administrative access. A helpdesk admin uses a legacy VPN client that does not support modern authentication protocols. The admin must still be able to perform remote administrative tasks securely. What is the most appropriate action?
Select an answer first - 27
A company is enforcing MFA for all administrative access. The helpdesk team uses a shared workstation to manage servers via RDP. Which MFA approach is most appropriate for this scenario?
Select an answer first - 28
A security audit reveals that a service account is a member of the Domain Admins group and is used by a web application to connect to a database. What is the primary risk associated with this configuration?
Select an answer first - 29
An organization wants to ensure that administrative access is reviewed regularly and revoked promptly when employees leave. Which policy and control combination is most effective?
Select an answer first - 30
A security engineer needs to allow a support technician to reset passwords for a specific OU only, and only during business hours. The technician should not have permanent rights. Which solution should the engineer implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDAT” is a trademark of its owner, used for identification only.