
GIAC Security Leadership
Domain 2Objective 3
Managing Cloud Security GSLC Practice Questions (Page 6)
Part of the Technical Security Management domain, which makes up ~27% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~19–32 in this domain), expect 4–6 from this objective — we provide 49 practice questions to prepare you well beyond it. (estimate)
49questions here
10free pages
7concepts
Questions 26–30
- 26
When evaluating a cloud service provider's security posture, which document provides the most direct evidence of independent security assessments?
Select an answer first - 27
A company's cloud environment has been breached. The incident response team has identified that the attacker used a compromised service account to access sensitive data. The team needs to contain the breach and prevent further access. The service account is used by multiple applications. What should the team do first?
Select an answer first - 28
A company is negotiating a contract with a cloud provider. The provider's standard terms include a limitation of liability that caps damages at the amount paid for services. The company's legal team wants to ensure that the provider is liable for security breaches. Which contractual change is most important?
Select an answer first - 29
Which administrative control is essential for maintaining least privilege in a cloud environment?
Select an answer first - 30
Which cloud service model provides the customer with the most control over the operating system, runtime, and applications?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSLC” is a trademark of its owner, used for identification only.