
CrowdStrikeCertified Cloud Specialist (CCCS)
Domain 3Objective 2
3.2 Given a Use Case, Recommend an Image Assessment Policy and Exclusions CCCS Practice Questions (Page 1)
Part of the Cloud Security Policies and Rules domain, which makes up ~11% of our current practice bank.
18questions here
4free pages
6concepts
Questions 1–5
- 1
A team uses a custom base image that includes a known vulnerability in a development tool that is not used in production. What exclusion would be appropriate for this image assessment policy?
Select an answer first - 2
A large enterprise is adopting a strict image assessment policy that fails on any high-severity vulnerability. However, a critical internal application uses a base image that has a high-severity vulnerability in a component that is not used at runtime. The vulnerability cannot be patched without a major refactor. The team needs to pass assessment to meet a compliance deadline. What is the best course of action?
Select an answer first - 3
A multinational company operates in regions with different data privacy regulations. They have a single container registry that serves both regions. One region requires strict assessment with no exclusions for high-severity vulnerabilities, while the other allows exclusions with documented risk acceptance. How should they configure image assessment?
Select an answer first - 4
A company is required by a client to provide evidence that all container images in production have been assessed for vulnerabilities. They currently have a policy that only fails on critical vulnerabilities. The client requires that high-severity vulnerabilities be remediated or formally accepted. What should the company do?
Select an answer first - 5
What is the main trade-off when adding exclusions to an image assessment policy?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CrowdStrike. “CCCS” is a trademark of its owner, used for identification only.