
EC-CouncilCertified Cloud Security Engineer
Domain 2Objective 2
Application Security in Cloud CCSE Practice Questions (Page 5)
Part of the Cloud Platform and Application Security domain, which makes up ~19% of our current practice bank.
52questions here
11free pages
10concepts
Questions 21–25
- 21
Which monitoring activity is most effective for detecting a potential security incident in a cloud application?
Select an answer first - 22
A security operations team is monitoring a cloud-hosted API for suspicious activity. The team has set up logging and alerting, but is receiving too many false positives, which is causing alert fatigue. The team wants to reduce false positives while still detecting real threats. Which approach should be taken?
Select an answer first - 23
A healthcare application stores patient records in a cloud database. The compliance team requires that all data be encrypted at rest and that access to the data be logged for audit purposes. The application team also wants to protect sensitive fields, such as social security numbers, from being displayed to support staff who only need the last four digits. Which combination of controls should be implemented?
Select an answer first - 24
A financial services company is deploying a new application that processes customer transactions. The compliance team requires that all access to the application be logged and that logs be retained for at least seven years. The application team wants to ensure that only authorized personnel can access the logs. Which configuration should be implemented?
Select an answer first - 25
Which practice helps ensure that a cloud application meets regulatory compliance requirements?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCSE” is a trademark of its owner, used for identification only.