
GIAC Information Security Professional
Domain 3Objective 1
Identity and Access Management (IAM) GISP Practice Questions (Page 8)
Part of the Access, Testing, and Development domain, which makes up ~31% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~29–50 in this domain), expect 10–17 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
8concepts
Questions 36–40
- 36
What is the primary purpose of separation of duties (SoD) in IAM governance?
Select an answer first - 37
In a Linux operating system, what does the permission value '755' represent for a file?
Select an answer first - 38
What is the primary benefit of single sign-on (SSO) for users?
Select an answer first - 39
A company wants to implement MFA for its VPN. Employees have company-issued laptops with TPM chips. Which MFA method is most appropriate?
Select an answer first - 40
A company has a network file server that stores sensitive documents. The security team wants to implement access control so that only users in the 'Finance' group can access the 'Financial Reports' folder, and they want to ensure that this policy is enforced by the operating system, not by individual file owners. Which access control implementation should be used?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISP” is a trademark of its owner, used for identification only.