Hi Laura,
Yes, if you configure it per the above example you should be fine.
If you don't use a dedicated firewall for guest access (= the FW is also used for your internal network) make sure to create rules on the firewall to deny traffic from the guest VLAN to the intranet interfaces/resources.
-Ron