GIAC GCFR Cert Guide PDF 100% Cover Real Exam Questions [Q36-Q59]

Share

GIAC GCFR Cert Guide PDF 100% Cover Real Exam Questions

Pass GCFR Exam - Real Questions and Answers

NEW QUESTION # 36
What logical AWS structure type is used to chain together accounts in a trust relationship which allows for single sign-on and cross-account management?

  • A. OU
  • B. Subscription
  • C. Organisation
  • D. Tenant

Answer: C


NEW QUESTION # 37
What is a best practice recommendation when using API keys for AWS access?

  • A. Define specific role permissions
  • B. Configure STS one-time tokens
  • C. Delete the account's default access keys
  • D. Enable MFA protection

Answer: C


NEW QUESTION # 38
AWS VPC Flow logs are enabled. What do these logs capture?

  • A. TLS Handshakes
  • B. Payload Bytes
  • C. Packet Metadata
  • D. TCP Checksums

Answer: C


NEW QUESTION # 39
What can be determine about the AVVS Access Key below?
AKIAVNKBKCM4I3VNZIS3

  • A. It is only in use for a single session
  • B. The key belongs to a user account
  • C. The key will only work internally
  • D. It is a service STS token

Answer: B


NEW QUESTION # 40
Which is a limitation when adding GPUs to Google cloud VMs?

  • A. Google limits the GPUs assigned to a single VM
  • B. They can only be added at VM creation
  • C. Preemptible VMs do not support GPU addition
  • D. They are only available in specific zones

Answer: D


NEW QUESTION # 41
In which scenario would an investigator collect NetFlow logs rather than PCAP logs?

  • A. For detailed network monitoring
  • B. To save on storage space
  • C. For deep packet inspection
  • D. To collect application layer data

Answer: B


NEW QUESTION # 42
What is the lowest level of GCP organization that consists of a logical grouping of services?

  • A. Unit
  • B. Folder
  • C. Project
  • D. Organization

Answer: C


NEW QUESTION # 43
An analyst successfully authenticated to Microsoft 365 using the following command. What would cause the analyst to be unable to search UAL events for a specific time period?
Ps> connect fxrhangeOnline userPrincipalName sysanalystatexanpteco.com

  • A. The tmdlets to search the UAl were not Imported into the session
  • B. The incorrect version of the FxhangeOnlineManagement module was installed
  • C. The ExchangeOnlineManagement module was not installed
  • D. The UAL cannot be searched when using Microsoft 365 PowerShell

Answer: A


NEW QUESTION # 44
An analyst is reviewing a case involving an actor who leveraged PowerShell Cloud Shell to achieve their goals. Where can the analyst And logs depleting this activity?

  • A. Network flow logs for the environment
  • B. Audit logs for the environment
  • C. .wget hsts file
  • D. .bash_history file

Answer: B


NEW QUESTION # 45
Which performance feature of an Amazon EC2 instance is configured to add additional resources based on set trigger points?

  • A. Burstable
  • B. Accelerated
  • C. Managed
  • D. Optimized

Answer: A


NEW QUESTION # 46
What is the maximum file size for Azure Page Blob storage?

  • A. 8TB
  • B. 10.25 TB
  • C. 7TB
  • D. 10.25 TB

Answer: A


NEW QUESTION # 47
An organization has optimized their S3 buckets to quick an their data collection across a global infrastructure. Which reflects the bucket URL root?

  • A. bucketname.s3.us-west-2.mazonaws.com
  • B. s3.us-west-2,amazonaws.com/bucketname
  • C. bucketname buttcetname.amazonaws.com
  • D. bucketname.s3-accelerate.amazonaws.com

Answer: D


NEW QUESTION # 48
Below is an extract from a Server Access Log showing a record for a request made to an AWS S3 bucket. What does the first field starting with "385f9e" represent?

  • A. Request ID
  • B. Cipher Suite
  • C. Host ID
  • D. Bucket Owner

Answer: A


NEW QUESTION # 49
What type of AWS log is the following snippet an example of?

  • A. Route 53 Query Log
  • B. VPC Flow Log
  • C. Load Balancer Log
  • D. Web Application firewall Log

Answer: B


NEW QUESTION # 50
What AWS service will allow an organization to set custom compliance metrics and force compliance on an organizational, sub-organizational, or individual account level?

  • A. Config
  • B. Cognllo
  • C. Inspector
  • D. Security Hub

Answer: A


NEW QUESTION # 51
An investigator is evaluating a client's Microsoft 365 deployment using the web portals and has identified that the Purview compliance portal states that the Unified Audit Logs are not enabled. Based on the additional Information gathered below, what is most likely the cause of this configuration message?
Subscription creation date: December 4, 2021 Number of administrators: 2 Number of non-administrative user accounts: 74 Last tenant administration change: December 4,2021

  • A. Tenant is configured to forward logs externally
  • B. License was downgraded lower than an E5 license
  • C. Explicitly been disabled by an administrator
  • D. Default configuration, service was never enabled

Answer: D


NEW QUESTION # 52
A cloud administrator needs to determine which user account allowed SSH Inbound from the internet on an Azure Network security group. Which type of log does the administrator need to examine?

  • A. Operating System
  • B. Subscription
  • C. Resource
  • D. Tenant

Answer: C


NEW QUESTION # 53
A threat actor conducts brute force attacks against SSH services to gain Initial access. This attack technique falls under which category of the Google Workspace MITRE ATT&CK matrix?

  • A. Credential access
  • B. Defense evasion
  • C. Collection
  • D. Discovery

Answer: A


NEW QUESTION # 54
Where are iOS Class keys stored?

  • A. Within the metadata of each file
  • B. In iCloud
  • C. Between the flash memory and the system area on the device
  • D. In effacable storage

Answer: A


NEW QUESTION # 55
What Pub/Sub component is used to forward GCP logs to their final location?

  • A. Publication
  • B. Log Sink
  • C. Subscription
  • D. Topic

Answer: B


NEW QUESTION # 56
Which AWS policy type specifies the maximum resource permissions for in organization or organizational unit (OU)?

  • A. Permission Boundaries
  • B. Session
  • C. Resource
  • D. Service Control

Answer: D


NEW QUESTION # 57
In Azure, which of the following describes a "Contributor"?

  • A. An object representing an entity
  • B. A collection of permissions such as read, write, and delete
  • C. A designation on a PKI certificate
  • D. A specification of who can access a resource group

Answer: B


NEW QUESTION # 58
An attacker successfully downloaded sensitive data from a misconfigured GCP bucket. Appropriate logging was not enabled. Where can an analyst find the rough time and quantity of the data downloaded?

  • A. Cloud Logging
  • B. C;loud Trace
  • C. Billing Section
  • D. Security Command Center

Answer: C


NEW QUESTION # 59
......

100% Free GCFR Daily Practice Exam With 82 Questions: https://prep4sure.examtorrent.com/GCFR-exam-papers.html