
GIAC Public Cloud Security
Domain 2Objective 3
Securing Cloud Application Service Platforms GPCS Practice Questions (Page 2)
Part of the Cloud Platform and Service Security domain, which makes up ~60% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~30–48 in this domain), expect 6–10 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)
37questions here
8free pages
7concepts
Questions 6–10
- 6
A company runs a legacy application service that uses an outdated runtime version. The security team wants to reduce the risk of known vulnerabilities while minimizing downtime. The application cannot be modified to use a newer runtime. What should the security team do?
Select an answer first - 7
A company's application service must communicate with an on-premises database over a private connection. The company wants to avoid exposing the database to the internet. What should the company implement?
Select an answer first - 8
Which practice best implements least privilege for a cloud application service that needs to read from a storage bucket?
Select an answer first - 9
In the shared responsibility model for a cloud application service platform such as a managed web app service, which security control is typically the responsibility of the cloud customer?
Select an answer first - 10
Which control is specifically designed to prevent sensitive data from being exfiltrated from a cloud application service?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GPCS” is a trademark of its owner, used for identification only.