Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Security Leadership

Domain 2Objective 1

Managing System Security GSLC Practice Questions (Page 9)

Part of the Technical Security Management domain, which makes up ~27% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~19–32 in this domain), expect 4–6 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)

46questions here
10free pages
8concepts

Questions 41–45

  1. 41application · medium

    A multinational corporation must comply with the EU General Data Protection Regulation (GDPR) for personal data of EU residents. The company currently stores this data in a public cloud region located in the EU. The security team is evaluating whether this setup meets GDPR requirements. What is the most accurate assessment?

    Select an answer first
  2. 42expert · hard

    A university is deploying a new research computing cluster that will be used by faculty and students. The cluster will process sensitive research data. The security team must balance the need for security with the need for usability and collaboration. Which approach best achieves this balance?

    Select an answer first
  3. 43expert · hard

    A security manager is leading the response to a suspected data breach. The breach may have involved the exfiltration of customer data. The company's legal counsel has advised that the company may have a legal obligation to notify affected customers and regulators. The security team has identified the likely source of the breach but has not yet confirmed the full scope. What is the most appropriate action for the security manager to take?

    Select an answer first
  4. 44expert · hard

    A security manager is overseeing the migration of a legacy application from an on-premises data center to a public cloud environment. The application has a hard-coded service account with administrative privileges, and the team is planning to lift-and-shift the application without changes. The manager must ensure that the migration does not introduce new security risks. Which of the following is the most important action to take?

    Select an answer first
  5. 45application · medium

    A security manager is reviewing the access control for a shared network drive that contains project files. The manager wants to ensure that only project team members can access the files, and that the access is automatically revoked when a team member leaves the project. Which of the following is the most appropriate approach?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSLC” is a trademark of its owner, used for identification only.