
GIAC Public Cloud Security
Domain 1Objective 2
Securely Accessing Cloud Services GPCS Practice Questions (Page 9)
Part of the Cloud Security Fundamentals domain, which makes up ~21% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~11–17 in this domain), expect 6–9 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
6concepts
Questions 41–45
- 41
Which principle states that users and applications should be granted only the minimum permissions necessary to perform their job functions?
Select an answer first - 42
A company needs to automate the creation of cloud resources every time a new developer joins the team. The automation must run without human interaction and must be auditable. Which access method is most appropriate?
Select an answer first - 43
A cloud administrator must grant a third-party auditor read-only access to a specific storage bucket for one week. The auditor does not have an account in the company's IdP. Which approach is most appropriate?
Select an answer first - 44
A company's security policy requires that all administrative access to the cloud console be protected by a second factor. The identity provider (IdP) supports TOTP and WebAuthn. Administrators currently use only passwords. Which change directly satisfies the policy while maintaining usability?
Select an answer first - 45
A company is using a cloud provider's IAM system. A developer needs to grant a third-party vendor temporary access to a specific project. The vendor must not see other projects. Which approach is best?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GPCS” is a trademark of its owner, used for identification only.