
Dell Zero Trust Design
Domain 7Objective 1
Design Zero Trust for the Cloud ZERO-TRUST-DESIGN Practice Questions (Page 1)
Part of the Zero Trust for the Cloud domain, which accounts for 4% of the ZERO-TRUST-DESIGN exam.
23questions here
5free pages
7concepts
4%of the exam
Questions 1–5
- 1
A company runs serverless functions on AWS Lambda. They want to enforce Zero Trust by ensuring that each function can only access the specific resources it needs, and that the function's code is scanned for vulnerabilities before deployment. Which combination of controls should they implement?
Select an answer first - 2
A company uses a multi-cloud environment with workloads in AWS and Azure. The security team wants to continuously monitor for misconfigurations, such as publicly accessible storage buckets and overly permissive security groups. They also want to receive alerts when a workload deviates from the company's security baseline. Which solution should they implement?
Select an answer first - 3
What is the primary goal of Cloud Security Posture Management (CSPM) in a Zero Trust environment?
Select an answer first - 4
A company uses a multi-tier application in a cloud environment. They want to implement micro-segmentation to limit lateral movement in case of a breach. They have identified that the web tier needs to communicate with the application tier on port 8080, and the application tier needs to communicate with the database tier on port 3306. Which configuration should they implement?
Select an answer first - 5
Which technology is commonly used to enforce micro-segmentation in a cloud environment?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “ZERO-TRUST-DESIGN” is a trademark of its owner, used for identification only.