
GIAC Public Cloud Security
Domain 2Objective 2
Cloud Identity and Access Management GPCS Practice Questions (Page 3)
Part of the Cloud Platform and Service Security domain, which makes up ~60% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~30–48 in this domain), expect 6–10 from this objective — we provide 59 practice questions to prepare you well beyond it. (estimate)
59questions here
12free pages
12concepts
Questions 11–15
- 11
Which IAM principal type is best suited to grant the same set of permissions to multiple users who share a common job function?
Select an answer first - 12
In cloud IAM, which component defines what actions a principal is allowed or denied to perform on specific resources?
Select an answer first - 13
A company wants to allow employees to access multiple cloud applications (SaaS and internal) with a single set of credentials. They also want to enforce MFA once per session. Which technology should they implement?
Select an answer first - 14
Which of the following is an example of a 'something you have' factor in MFA?
Select an answer first - 15
A company uses Okta as its identity provider (IdP) and wants employees to access an AWS account using their existing corporate credentials. The security team requires that access be granted only to users who have completed MFA in Okta. Which configuration should the cloud architect implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GPCS” is a trademark of its owner, used for identification only.