
GIAC Public Cloud Security
Domain 2Objective 5
Securing Serverless Functions GPCS Practice Questions (Page 1)
Part of the Cloud Platform and Service Security domain, which makes up ~60% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~30–48 in this domain), expect 6–10 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
12concepts
Questions 1–5
- 1
What is the primary purpose of assigning a least-privilege IAM role to a serverless function?
Select an answer first - 2
An organization exposes an AWS Lambda function via Amazon API Gateway. Recently, a customer's misconfigured client began sending a high volume of requests, causing increased costs and near the account-level concurrency limit. The team wants to protect the function from abuse while minimizing impact on legitimate customers. What should they do?
Select an answer first - 3
Which service is designed to securely store and retrieve secrets like API keys and database credentials?
Select an answer first - 4
During an incident, a security analyst needs to determine what data a compromised AWS Lambda function may have exfiltrated. The function had access to a database and an S3 bucket. The analyst has CloudTrail and CloudWatch Logs available. What is the most effective way to reconstruct the function's actions?
Select an answer first - 5
A healthcare organization is deploying a serverless function that processes patient data. The data must be encrypted at rest and in transit, and the function must not retain data longer than necessary. What should the team implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GPCS” is a trademark of its owner, used for identification only.