
CrowdStrikeCertified Cloud Specialist (CCCS)
Domain 4Objective 3
4.3 Identify Potential Security Issues — Such as Malware Presence, High-Severity Common Vulnerabilities and Exposures (CVEs), Detected Leaked Secrets and Docker File Misconfigurations — from the Image Assessment Report CCCS Practice Questions (Page 5)
Part of the Pre-Runtime Protection domain, which makes up ~16% of our current practice bank.
27questions here
6free pages
6concepts
Questions 21–25
- 21
In an image assessment report, a CVE is listed with a CVSS score of 9.8. How should this finding be interpreted?
Select an answer first - 22
A security analyst opens the CrowdStrike image assessment report for a container image. Where in the report would the analyst find a summary of all detected security issues, such as malware, CVEs, and leaked secrets?
Select an answer first - 23
An image assessment report for a CI/CD runner image flags a hardcoded database password in an environment variable definition. The image is used by multiple pipelines. What is the most immediate action the team should take?
Select an answer first - 24
Which of the following is a common Dockerfile misconfiguration that would be flagged in an image assessment report?
Select an answer first - 25
What is the primary purpose of the CrowdStrike image assessment report?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CrowdStrike. “CCCS” is a trademark of its owner, used for identification only.