
GIAC Information Security Fundamentals
Domain 2Objective 3
Securing Connected and Cloud-Based Environments GISF Practice Questions (Page 8)
Part of the Network and Systems Security domain, which makes up ~28% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~14–22 in this domain), expect 5–7 from this objective — we provide 54 practice questions to prepare you well beyond it. (estimate)
54questions here
11free pages
8concepts
Questions 36–40
- 36
Which of the following is a governance framework specifically designed to help organizations manage cloud computing risks and controls?
Select an answer first - 37
A multinational company stores personal data of EU citizens in a public cloud. They want to ensure compliance with GDPR. Which action is most directly required?
Select an answer first - 38
A city is deploying smart parking meters that connect to a central management system via public cellular networks. The meters collect payment data. Which security measure is ESSENTIAL to protect payment data in transit?
Select an answer first - 39
A company operates in a country with strict data sovereignty laws. They want to use a cloud provider for processing but must ensure data does not leave the country. Which approach is most appropriate?
Select an answer first - 40
A company stores sensitive data in a cloud database. They want to protect the data even if the database administrator's credentials are compromised. Which control is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISF” is a trademark of its owner, used for identification only.