
GIAC Defensible Security Architect
Domain 5Objective 1
Cloud-Based Security Architecture GDSA Practice Questions (Page 8)
Part of the Cloud Security Architecture domain, which makes up ~10% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 5–8 from this objective — we provide 62 practice questions to prepare you well beyond it. (estimate)
62questions here
13free pages
14concepts
Questions 36–40
- 36
Which cloud deployment model is characterized by infrastructure that is shared by several organizations with common interests, such as a specific industry or compliance requirement?
Select an answer first - 37
Which data protection technique replaces sensitive data with a non-sensitive equivalent that can be reversed only with a secure key?
Select an answer first - 38
Which capability is typically provided by a CSPM tool?
Select an answer first - 39
What is the primary function of a Cloud Security Posture Management (CSPM) tool?
Select an answer first - 40
A startup is deploying a containerized application on Google Cloud using Google Kubernetes Engine (GKE). They want to minimize their responsibility for patching the underlying nodes while still being able to configure network policies. Which GKE mode should they use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDSA” is a trademark of its owner, used for identification only.