
CrowdStrikeCertified Cloud Specialist (CCCS)
Domain 3Objective 1
3.1 Given a Use Case, Configure CSPM Policies CCCS Practice Questions (Page 2)
Part of the Cloud Security Policies and Rules domain, which makes up ~11% of our current practice bank.
14questions here
3free pages
4concepts
Questions 6–10
- 6
A company has a single AWS account with multiple VPCs. They have a CSPM policy that detects VPC Flow Logs being disabled. The security team wants to apply this policy to the VPCs in the 'production' VPC group only, but the CSPM platform only supports assignment at the account level. What is the best way to achieve the desired scoping?
Select an answer first - 7
A company uses CrowdStrike CSPM to monitor its multi-cloud environment (AWS, Azure, GCP). They want a single policy that detects unencrypted storage resources across all three clouds. The policy should flag S3 buckets without default encryption, Azure storage accounts without encryption, and GCP buckets without encryption. What is the best way to configure this?
Select an answer first - 8
After configuring a CSPM policy, what is the primary way to validate that it is working correctly?
Select an answer first - 9
A company uses CrowdStrike CSPM to monitor GCP. They have a policy that flags Cloud Storage buckets with 'uniform bucket-level access' disabled. The security team finds that the policy generates too many low-priority alerts and wants to reduce noise while still catching the most critical cases. Which configuration change best addresses this?
Select an answer first - 10
After deploying a new CSPM policy to detect AWS S3 buckets with 'server-side encryption with AWS KMS' (SSE-KMS) not enabled, you run a validation test. You create a test bucket with SSE-KMS enabled and another without encryption. The policy flags both buckets. What is the most likely cause?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CrowdStrike. “CCCS” is a trademark of its owner, used for identification only.