
GIAC Defensible Security Architect
Domain 1Objective 2
Zero Trust Endpoints GDSA Practice Questions (Page 1)
Part of the Zero Trust Architecture domain, which makes up ~24% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–19 in this domain), expect 4–6 from this objective — we provide 50 practice questions to prepare you well beyond it. (estimate)
50questions here
10free pages
8concepts
Questions 1–5
- 1
What type of data is typically collected for endpoint visibility?
Select an answer first - 2
Which of the following is an example of an automated response to a compromised endpoint?
Select an answer first - 3
What is the purpose of automated remediation for non-compliant endpoints?
Select an answer first - 4
A hospital's IT team wants to segment its network so that an infected infusion pump cannot reach the electronic health record (EHR) system or other medical devices. The pumps are on a separate VLAN, but the team is concerned about lateral movement within the VLAN. Which control should be added?
Select an answer first - 5
A security operations center (SOC) is implementing a zero trust endpoint monitoring strategy. They want to ensure they have visibility into endpoint activities and can detect anomalies. Which of the following are essential components of this strategy? (Select all that apply.)
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDSA” is a trademark of its owner, used for identification only.