
CrowdStrikeCertified Cloud Specialist (CCCS)
Domain 5Objective 5
5.5 Identify Indicators of Attack (IOAs), Rogue Containers and Drift CCCS Practice Questions (Page 5)
Part of the Runtime Protection domain, which makes up ~18% of our current practice bank.
24questions here
5free pages
7concepts
Questions 21–24
- 21
Which of the following is a common method for detecting a rogue container?
Select an answer first - 22
Which of the following is an example of an Indicator of Attack (IOA) rather than an Indicator of Compromise (IOC)?
Select an answer first - 23
Which of the following is a signal that could indicate the presence of a rogue container?
Select an answer first - 24
A security analyst is investigating a container that has been flagged for drift. The container's image is immutable, but the analyst finds that a new file has been added to the container's filesystem. The analyst also notices that the container's process list includes a process that is not in the image's process list. Which conclusion is most accurate?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CCCS
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CrowdStrike. “CCCS” is a trademark of its owner, used for identification only.