Valid GCFR Test Answers & GIAC GCFR Exam PDF
GIAC GCFR Certification Real 2024 Mock Exam
NEW QUESTION # 19
Which of the following is available with the free tier of service for CloudTrail?
- A. Single trail of management events delivered to Amazon
- B. Access to CloudTrail Insights to detect anomalies
- C. Default trail maintained by AWS for more than 90 days
- D. Access to data-related API Cloud Trail events
Answer: A
NEW QUESTION # 20
An investigator confirms that phishing emails sent to users in an organization ate not being sent to their Gmall Spam folder. What is a possible cause for this?
- A. The default setting for enhanced pre-delivery message scanning was changed
- B. A third party application needs to be installed to detect phishing emails
- C. The security sandbox default configuration setting was changed
- D. Compliance based rules need to be configured to detect phishing emails
Answer: A
NEW QUESTION # 21
Microsoft.Key Vault is an example of which component of Azure's structure?
- A. Resource manager
- B. Resource group
- C. Resource provider
- D. Resource
Answer: C
NEW QUESTION # 22
A client was responsible for their environment's OS, then they delegated this responsibility to their cloud provider. Which of the following migrations could describe this scenario?
- A. On-prern to UdS
- B. PaaS to SaaS
- C. SaaStoOn-prem
- D. IaaS to PaaS
Answer: D
NEW QUESTION # 23
A data exfiltration investigation of a GCP storage bucket is limited to the information logged by default in the Cost Table of Google's Cloud Billing. What information will investigators be able to gather?
- A. Timeframes of file downloads
- B. Filenames of downloaded files
- C. Usernames associated with file downloads
- D. IP addresses associated with file downloads
Answer: A
NEW QUESTION # 24
What can be inferred about the ARN below?
arn:aws:!am::457787814323:user/giac
- A. giac's Is limited to roles defined under a single AWS organization
- B. giac's is a user In the AWS account 457787814323
- C. giac's user's access key 10 is 457787814323
- D. giac's access Is testf kted to resources owned by AWS tenant 457787814323
Answer: B
NEW QUESTION # 25
What logical AWS structure type is used to chain together accounts in a trust relationship which allows for single sign-on and cross-account management?
- A. Tenant
- B. OU
- C. Organisation
- D. Subscription
Answer: C
NEW QUESTION # 26
An organization has optimized their S3 buckets to quick an their data collection across a global infrastructure. Which reflects the bucket URL root?
- A. bucketname.s3-accelerate.amazonaws.com
- B. s3.us-west-2,amazonaws.com/bucketname
- C. bucketname.s3.us-west-2.mazonaws.com
- D. bucketname buttcetname.amazonaws.com
Answer: A
NEW QUESTION # 27
Below is an extract from a Server Access Log showing a record for a request made to an AWS S3 bucket. What does the first field starting with "385f9e" represent?
- A. Host ID
- B. Cipher Suite
- C. Bucket Owner
- D. Request ID
Answer: D
NEW QUESTION # 28
Which AWS policy type specifies the maximum resource permissions for in organization or organizational unit (OU)?
- A. Permission Boundaries
- B. Service Control
- C. Resource
- D. Session
Answer: B
NEW QUESTION # 29
Which cloud service provider produces sampled flow logs?
- A. GCP
- B. AWS
- C. Azure
Answer: A
NEW QUESTION # 30
Using the SOF-ELK instance at 10.0.1.7:5601, inspect the netflow logs related to the ip 5.62.19.62.
Which of the ports seen in the netflow logs associated with the ip 5.62.19.62 has the lowest count?
Hint: Use a wide time frame such as 20 years to ensure all the relevant data is in the scope.
- A. 0
- B. 1
- C. 2
- D. 3
- E. 4
- F. 5
- G. 6
- H. 7
- I. 8
- J. 9
Answer: C
NEW QUESTION # 31
Which Azure binary large object type is usually used to store virtual hard drive files?
- A. Block
- B. Append
- C. Page
Answer: C
NEW QUESTION # 32
What 1$ a drawback of analyzing a snapshot outside of AWS?
- A. Incomplete data
- B. Incompatible image format
- C. Low latency
- D. Long download time
Answer: D
NEW QUESTION # 33
Use Kibana to analyze the Azure AD sign-in logs in the azure-* index. On March 31st, 2021, what is the timestamp of the earliest failed login attempt for the account dcr0ss5pymtechlabs.com?
ViewVM
- A. 19:21:34
- B. 18:11:45
- C. 18:11:07
- D. 01:04:24
- E. 19:01:27
- F. 18:12:04
- G. 19:02:06
- H. 01:02:56
- I. 19:02:12
- J. 19:35:31
Answer: C
NEW QUESTION # 34
What Pub/Sub component is used to forward GCP logs to their final location?
- A. Log Sink
- B. Subscription
- C. Topic
- D. Publication
Answer: A
NEW QUESTION # 35
......
GCFR Exam Questions and Valid GCFR Dumps PDF: https://certkiller.passleader.top/GIAC/GCFR-exam-braindumps.html