Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Defensible Security Architect

Domain 4Objective 1

Data-Centric Security GDSA Practice Questions (Page 11)

Part of the Data Protection and Governance domain, which makes up ~18% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 5–7 from this objective — we provide 55 practice questions to prepare you well beyond it. (estimate)

55questions here
11free pages
10concepts

Questions 51–55

  1. 51expert · hard

    A healthcare organization must retain medical records for 10 years, but after that, they must be destroyed. They also need to ensure that data is available for active research for the first 2 years, then moved to long-term storage. They are using a combination of Azure SQL Database and Azure Blob Storage. What is the most cost-effective and compliant approach?

    Select an answer first
  2. 52foundation · easy

    What is a key multi-tenant consideration when applying data-centric security in a public cloud?

    Select an answer first
  3. 53application · medium

    A healthcare organization uses a modern data lake with fine-grained access policies. The security team wants to ensure that only users with a current 'clinician' role and a 'treatment purpose' attribute can read patient records, and that any access attempt is logged for audit. Which access governance approach should they implement?

    Select an answer first
  4. 54expert · hard

    A company is evaluating whether to adopt a data-centric security architecture. The current architecture relies heavily on network segmentation and perimeter firewalls. The company's data is increasingly shared with external partners and stored in multiple cloud services. The CISO wants to reduce the risk of data exposure when a partner's environment is compromised. Which argument best supports the move to data-centric security?

    Select an answer first
  5. 55application · medium

    A multinational company is redesigning its security architecture. The CISO wants to ensure that data remains protected even when it is copied to a partner's cloud environment, and that security controls follow the data rather than relying solely on network boundaries. Which architectural approach best aligns with this goal?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to GDSA

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDSA” is a trademark of its owner, used for identification only.