
EC-CouncilCertified Cloud Security Engineer
Domain 3Objective 1
Data Security in Cloud CCSE Practice Questions (Page 3)
Part of the Cloud Data Security and Operations domain, which makes up ~19% of our current practice bank.
53questions here
11free pages
12concepts
Questions 11–15
- 11
Which of the following is an example of a fine-grained access control mechanism in cloud storage?
Select an answer first - 12
A company uses a cloud KMS to encrypt data. A security audit requires that encryption keys be rotated every 30 days and that keys used to encrypt data that has been deleted be destroyed. The company also needs to retain the ability to decrypt archived data that may be older than the key rotation period. Which key management strategy satisfies all requirements?
Select an answer first - 13
A company's RPO (recovery point objective) is 15 minutes and RTO (recovery time objective) is 1 hour for its critical database. The database is currently backed up once daily. The company wants to improve recovery capabilities without significantly increasing costs. Which strategy should be implemented?
Select an answer first - 14
What is the primary benefit of data tokenization compared to encryption?
Select an answer first - 15
A cloud security engineer is designing a data classification scheme for a new cloud environment. Which of the following is the primary purpose of classifying data?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCSE” is a trademark of its owner, used for identification only.